Skip to content
JobLit
Features Who it’s for Pricing FAQ Log in Start free

Legal

  • Overview
  • Terms of Service
  • Privacy Policy
  • Cookies & Local Storage
  • Acceptable Use
  • Billing & Refunds
  • Subprocessors
  • Security

Legal

Privacy Policy

Effective September 13, 2026

The short version

  • We collect what it takes to run JobLit: your account details, the job records you enter, and basic technical logs.
  • We don’t sell personal information and we don’t show ads. This website uses no analytics or tracking cookies.
  • Location is recorded only at the moment someone clocks in or out, and only if their device allows it. It is never tracked in the background.
  • You can export your data at any time and ask us to delete it.

This summary is not the full policy. Please read the rest.

1. Who we are

JobLit is operated by ExpenseApp Staging LLC (“we”, “us”, “our”). This policy explains how we handle personal information when you visit https://joblit.pro (the “Site”) or use the JobLit application at https://app.joblit.pro (the “Service”).

Send questions about this policy to privacy@staging.expenseapp.example.

2. Workspaces, owners and crew members

JobLit is organized into workspaces. The person or business that creates a workspace (the “Account Owner”) decides who to invite, which records to keep and who can see them. Admins and crew members join a workspace by invitation.

For the records stored in a workspace, such as jobs, clients, expenses, deposits, notes, tasks and time entries (“Workspace Content”), we process personal information on behalf of the Account Owner and under their instructions. Where privacy laws draw the distinction, the Account Owner is the “controller” or “business” for Workspace Content, and we are its “processor” or “service provider”. We are the controller for account details, billing, security records and the Site.

If you are a crew member with questions about how your employer uses JobLit, please ask them first. If you contact us, we may refer your request to the Account Owner.

3. Information we collect

Information you give us

  • Account details: your name, email address, phone number (if you add one), business or workspace name, time zone and role. If you choose to set a password, we store it only as a one-way hash.
  • Workspace Content: jobs; clients and their contact details and addresses; expenses, amounts, categories and tags; deposits and payments; notes; tasks; and receipt photos or other files you upload.
  • Crew and time records: invitations, roles, hourly rates set by the Account Owner or an admin, clock-in and clock-out times, and time entries.
  • Communications: messages you send us and anything included in them.

Location at clock-in and clock-out

When someone clocks in or out, the Service asks their device for its current location. If the device allows it, we store the latitude, longitude and reported accuracy for that moment and attach them to the time entry. If location is declined or unavailable, the clock still works, and the entry records that no location was captured.

We do not collect location continuously, in the background, or at any time other than a clock-in or clock-out. Location permission can be changed at any time in the device or browser settings.

Payment information

Stripe processes subscription payments. You enter card details on Stripe’s pages, and they go directly to Stripe. We never receive or store full card numbers. Stripe gives us limited information, such as customer and subscription identifiers, your plan, billing status and billing email, and may also share card brand, last four digits and expiry date.

Information collected automatically

  • Log and device data: IP address, browser and device type, the pages and endpoints requested, dates and times, and error details. Our servers record this as part of normal operation.
  • Security and activity records: sign-ins, sign-in link requests, and a history of changes in each workspace (who created, edited or deleted what, and when). Account Owners and admins can review this history.
  • Browser storage: the Service stores a sign-in token and a few preferences on your device. See our Cookie & Local Storage Notice.

The Site does not use analytics, advertising pixels or tracking cookies.

Information from other people

An Account Owner or admin may add information about you, such as your email address when they invite you or your hourly rate. Workspaces also store details about their own customers. Account Owners are responsible for having the right to give that information to us.

4. How we use information

We use personal information to:

  • provide, maintain and support the Service, including sign-in emails, invitations, exports and summaries;
  • process subscriptions, payments and plan changes;
  • keep the Service and its users safe, including preventing fraud and abuse, limiting repeated sign-in attempts and investigating incidents;
  • send service messages, such as sign-in links, security notices, billing notices and material changes to our terms or policies;
  • find and fix problems and improve the Service, using logs and aggregated usage information;
  • comply with the law, enforce our Terms of Service, and protect our rights and the rights of others.

We do not sell Workspace Content, use it for advertising, or use it to train artificial intelligence models.

Legal bases (EEA, UK and Switzerland)

PurposeLegal basis
Providing the Service you signed up forPerformance of a contract
Billing and keeping financial recordsPerformance of a contract; legal obligation
Security, fraud prevention and improving the ServiceOur legitimate interest in running a safe, reliable service
Recording location at clock-in and clock-outDecided by the Account Owner as controller. Usually their legitimate interest in accurate time records, or consent where local law requires it.
Complying with the lawLegal obligation
Marketing emails, if we ever send themConsent, which you can withdraw at any time

5. How we share information

  • Within your workspace. Information added to a workspace is visible to other members according to their role. Account Owners and admins can see crew members’ time entries, clock-in and clock-out locations, hourly rates and activity history.
  • Service providers. Companies that host the Service, send email and process payments for us, under contracts that limit their use of the information to providing those services. The current list is on our Subprocessors page.
  • Legal reasons. When we believe in good faith that disclosure is required by law or legal process, or needed to protect the safety, rights or property of our users, the public or us. Where the law allows, we will notify the affected Account Owner first.
  • Business transfers. If we are involved in a merger, acquisition, financing or sale of assets, information may be transferred as part of that deal. It will remain subject to this policy’s commitments.
  • At your direction. When you ask us to share it, or consent to our doing so.

Export files you download are yours to handle. Once you send one to someone else, what they do with it is outside this policy.

We do not sell personal information, and we do not share it for cross-context behavioral advertising, as those terms are defined under California law, and we have not done so in the past 12 months.

6. How long we keep information

  • While your account is active, we keep your account details and Workspace Content so the Service works.
  • Deleted records go to the workspace’s trash. From there, an Account Owner or admin can restore them or delete them permanently.
  • When a workspace is closed, at your request or after termination, we delete or de-identify its Workspace Content within 30 days. This happens after any export period described in our Terms. Copies in backups are overwritten on a rolling basis within 90 days.
  • Billing and tax records are kept for as long as the law requires, which is typically up to seven years.
  • Server logs are kept for a limited period for security and troubleshooting, then deleted.

We may keep information for longer when we need it to resolve disputes, enforce our agreements or comply with the law.

7. Security

We use administrative, technical and physical safeguards designed to protect personal information. These include encrypted connections, single-use sign-in links that expire, role-based access within workspaces, and restricted access to production systems. Our Security page has more detail. No system is perfectly secure, and we cannot guarantee absolute security. If a breach affects your personal information, we will notify you and the relevant authorities as the law requires.

8. Your choices and rights

Things you can do yourself

  • Update your name, email address and other account details in the app’s settings.
  • Export your workspace’s records and receipt images, on every plan.
  • Delete records, and permanently remove them from the trash (Account Owners and admins).
  • Turn off location access for the Service in your device or browser settings.
  • Sign out of every device at once.

Privacy rights

Depending on where you live, you may have some or all of these rights. This includes residents of California and other U.S. states with consumer privacy laws, the EEA, the UK, Switzerland and Canada.

  • Access: to know what personal information we hold about you and to receive a copy;
  • Correction: to fix inaccurate information;
  • Deletion: to have your personal information deleted;
  • Portability: to receive your information in a portable, machine-readable format;
  • Objection and restriction: to object to certain processing or ask us to restrict it;
  • Opt-out: of the sale or sharing of personal information, targeted advertising and certain profiling. We don’t do any of these.
  • Withdrawing consent, where we rely on consent;
  • Complaining to your local data protection authority.

To make a request, email privacy@staging.expenseapp.example from the address on your account. We will verify your identity, which may involve confirming that you control that email address. We will respond within the time the law requires, which is generally 30 to 45 days. Where the law allows, you may use an authorized agent, but we will need proof of their authority. If we deny your request, you can appeal by replying to our decision with “Appeal” in the subject line.

We will not discriminate against you for exercising any of these rights.

If your information sits in a workspace someone else controls, such as your employer’s, we may refer your request to that Account Owner. They are responsible for responding.

Global Privacy Control and Do Not Track

We don’t sell or share personal information for targeted advertising, so there is nothing for a Global Privacy Control or Do Not Track signal to opt you out of. If our practices ever change, we will honor Global Privacy Control signals as opt-out requests.

9. A note for employers

If you use JobLit to record the time, pay rates or clock-in locations of employees or contractors, you are responsible for complying with the laws that apply to you. Those laws may require you to:

  • tell workers what is collected and why, in writing, before they start using it;
  • get their consent;
  • keep time and pay records in a specific form;
  • respond to their privacy requests.

Devices ask workers for permission before sharing their location, but that prompt does not replace any notice your jurisdiction requires.

10. International transfers

The Service is hosted in the United States, and some of our service providers may process information in other countries. When we transfer personal information from the EEA, UK or Switzerland to a country without an adequacy decision, we rely on appropriate safeguards, such as the European Commission’s Standard Contractual Clauses and their UK and Swiss equivalents.

11. Children

The Service is a business tool and is not directed to children. You must be at least 18 years old to create an account. We do not knowingly collect personal information from anyone under 16. If you believe a child has given us personal information, contact us and we will delete it.

12. Changes to this policy

When we change this policy, we will post the new version here and update the effective date. If a change is material, we will give you at least 30 days’ notice by email or in the Service before it takes effect.

13. Contact us

ExpenseApp Staging LLC
privacy@staging.expenseapp.example
JobLit

Job expense and crew time tracking for small trade businesses.

Product

  • Features
  • Pricing
  • FAQ
  • Log in
  • Start free

Legal

  • Terms of Service
  • Privacy Policy
  • Cookies & Local Storage
  • Acceptable Use
  • Billing & Refunds
  • Subprocessors
  • Security

Contact

ExpenseApp Staging LLC
support@staging.expenseapp.example

© 2026 ExpenseApp Staging LLC. All rights reserved.

JobLit is a record-keeping tool, not accounting, tax, payroll or legal advice.