Privacy policy

Timecrumbs keeps your activity on your computer.

Timecrumbs records a lot about your workday so it can build your timesheet. This page explains exactly what, where it goes, and what never leaves your PC.

Effective October 7, 2026.

Who we are

Timecrumbs is published by Firmware, LLC, an Idaho limited liability company, 1606 W Hays St, Boise, ID 83702 ("we", "us"). Questions about privacy go to support@timecrumbs.com.

The short version

  • Everything Timecrumbs records about your activity is stored only on your computer. We don't receive it, and we have no server that could.
  • Timecrumbs has no user accounts and sends no usage analytics, crash reports, or telemetry.
  • It goes online for four things only: reading your calendar and sending confirmed entries to your billing system (each only if you connect one), checking for updates, and checking your license.
  • If you connect your own AI app, it reads your Timecrumbs record when you ask it, or on a schedule you set up in that app, and your AI provider processes what it reads under your own account. Whether to connect one, and whether it may see screenshots, is up to you.
  • We never sell or share personal information.

What the app records, on your computer

DataWhyKept
The title of the active window, the program's name, the path of the open file when available, and the web address in supported browsers, noted at regular intervals while you use the computerTo work out which project you were working onUntil you delete it
Whether you were active or idle (time since your last keyboard or mouse input, never the keys themselves)To leave breaks out of your timeUntil you delete it
Screenshots of the active window, only if you turn them onTo jog your memory when reviewing a dayAbout a month, then deleted automatically
Your time entries, project list, corrections, and settingsThe timesheet itself, and learning from your correctionsUntil you delete them
Your name and email from a connected calendar account, and your firm's name from that email's domainSo your own name and your firm's name aren't mistaken for project namesUntil you delete it

This data lives in %LOCALAPPDATA%\Timecrumbs and %APPDATA%\Timecrumbs under your Windows account. If you put your project list in a shared folder (OneDrive, Dropbox, Google Drive), that list, and only that list, is stored wherever that service stores it.

Timecrumbs never logs keystrokes or records audio, and it doesn't read the contents of your documents or emails. Screenshots are different: if you turn them on, each one shows whatever was in the active window at that moment, including any text you had typed there. Pause them, or leave them off, when you're working on something private.

What leaves your computer

Calendar (optional)

If you connect Microsoft 365 or Google Calendar, Timecrumbs reads your events directly from Microsoft or Google so meetings can become suggested entries. The request goes from your PC to Microsoft or Google; nothing passes through us. Sign-in tokens are stored on your computer.

From Google, Timecrumbs asks only for read-only access to the events on calendars you own, plus your name and email address (the calendar.events.owned.readonly, userinfo.email, userinfo.profile, and openid scopes). It reads events from your main calendar only, for the day you're looking at. It can't change your calendar, and it doesn't read your other calendars, calendars shared with you, or your calendar settings.

From Microsoft, it asks for read-only access to your calendar, plus your name and email address (Calendars.Read, openid, profile, and offline_access, which keeps you signed in).

Calendar events are read when you open a day and are not saved on your computer. A meeting becomes part of your records only if you confirm it as a time entry. To disconnect, click Connect Calendar and choose Sign Out, which deletes the sign-in token from your computer. You can also revoke access in your Microsoft or Google account settings.

Timecrumbs' use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Google calendar data is used only to show your meetings in Timecrumbs on your own computer and, if you connect your own AI app, to let that app read the day's meetings. It is never transferred to us, used for advertising, or used to train AI models, and no person at Firmware reads it.

Your AI app (optional)

Timecrumbs includes a connector that runs on your computer and lets the AI app you use read your Timecrumbs record. You connect it yourself, in Settings, Use with AI, or by installing the Timecrumbs extension in your AI app. Once connected, your AI app can read:

  • your recorded activity: window titles, program names, file names and folders, and web addresses with sign-in codes and tracking removed, along with Timecrumbs's own project suggestions;
  • your time entries, and the drafts, questions, and notes in the Timecrumbs inbox, including notes you type for your AI;
  • your projects (number, name, client, and nicknames);
  • your settings, including your firm's name, how you bill your time, and your license status;
  • the day's calendar events (subject, time, and location);
  • screenshots, only if you turn on Let your AI see screenshots, which is off unless you turn it on.

Your AI app reads it when you ask it, or on a schedule you set up in your AI app; Timecrumbs never starts your AI itself, and never contacts an AI service. Your AI app sends what it reads to the company that provides it, which processes it under your own account and agreement with them. It does not pass through us, and we don't receive it.

By default your AI app only suggests: its drafts and questions wait in your Timecrumbs inbox, and nothing becomes an entry until you accept it there. In Settings, Use with AI, What your AI can do can let it also save entries you approve in your conversation and mark time you confirm wasn't work; your firm may set this for everyone. Either way, when you type a note to your AI on an inbox item, it may act on that note, since the note is your own answer. Your AI can never change or delete entries already there, or your projects and settings.

Settings, Use with AI lists what your AI looked at, kept on your computer. To stop, disconnect there. If your AI app added Timecrumbs as an extension, remove it in that app's settings; that page shows how.

Billing system connections (optional)

If you connect a billing or timesheet system such as Harvest or Xero, Timecrumbs reads your projects and account details from it and sends it the time entries you have confirmed: the date, hours, project, task, and your note. It sends edits and deletions of those entries too. Nothing else is sent: not your activity, window titles, or screenshots. The data goes from your PC straight to that service; it does not pass through us. Sign-ins and access tokens are kept in Windows Credential Manager on your computer, never in files and never on a server of ours. Disconnect at any time in Settings, Connections.

From Xero, Timecrumbs asks to read your name and email address, your Xero projects and tasks, and your contacts' names (which become your projects' clients), and to write time entries to your projects, which is all it writes (the openid, profile, email, offline_access, projects, and accounting.contacts.read scopes).

If you set up a webhook, each confirmed entry, and later its edits and deletions, goes only to the web address you paste in, such as a Zapier, Make, n8n, or Power Automate flow, or your firm's own system. Each one carries your name, your app version, and the entry's date, times, hours, project, client, phase or category, and note, and it is signed when you give a secret. What happens next is up to that service and its terms.

Update checks

About once a day, Timecrumbs downloads a small file from timecrumbs.com that lists the latest version. The only information it sends is your app version, plus, like any web request, your IP address. Our web host may keep standard access logs. You can turn this off in Settings, Updates.

License checks

When you enter a license key, Timecrumbs sends the key, your app version, and your computer's name to our payment provider's license service to activate it. About once a week after that, and when you remove the license from a computer, it sends the key and its activation ID. Keys issued directly by us are checked on your computer and send nothing.

Support

If you email us, we receive whatever you send, including a support file if you attach one. The support file never includes screenshots or sign-in tokens, and includes window titles only if you choose to add them. We use it only to help you and delete it when your question is resolved.

Purchases

Payments are handled by our payment provider, which resells Timecrumbs licenses as the merchant of record. It collects your name, email, billing address, and payment details under its own privacy policy and tells us your name, email, and what you bought so we can support your license. We never see your full card number.

The website

timecrumbs.com uses no cookies, advertising, or tracking scripts. Fonts are loaded from Google Fonts, which receives your IP address when it serves them.

Employers and shared computers

Timecrumbs is built for people tracking their own time. If your organization installs it on computers other people use, you are responsible for telling them what it records and for any notice or consent the law requires where you are.

Your choices and rights

  • See everything Timecrumbs has recorded: Help, Open Data Folder.
  • Delete any screenshot or entry in the app, or delete the data folders to remove everything.
  • Pause screenshots or turn them off from the day view or the tray menu.
  • Ask us what personal information we hold about you (for purchases and support email) and ask us to correct or delete it, by writing to support@timecrumbs.com. Depending on where you live, you may have further rights under laws such as the GDPR or the CCPA.

Children

Timecrumbs is a work tool and is not directed to children under 16.

Changes

If we change this policy we'll update the date above, and for significant changes we'll say so in the app's release notes.