Source
Legal notice — found from the homepage — Toggl Track
Checked for Toggl Track on 5 Oct 2026
- Page
- https://toggl.com/legal/track-privacy-policy
- Checked
- 5 Oct 2026, 05:09 UTC
- How we may use it
- Public page, crawling permitted
Technical details
- type
- page
- http status
- 200
- content hash
- sha256:a9db03c32ade9702e8b75da7273c3c9f25090d0d783664fbcbda6cd6e130fd52
- permission
- robots_ok
- screenshot
- Screenshot on file (internal exhibit, not published)
Cited by
Facts read from this source
-
Organization owner controller Report an error
“That User (the Organization Owner) is also the ‘controller’ of all Personal Data maintained in the Organization. Toggl processes these data on the Organization Owner’s behalf and is thus considered to be the ‘processor’ of the said Personal Data.”
-
Processing delegation Report an error
“In case your contractual relationship with Toggl is through Toggl, Inc., all data processing operations relevant to that relationship have been delegated to Toggl OÜ (a company based in Estonia, with its processing operations also in Estonia).”
-
Timeline autotracker optin Report an error
“These features are strictly opt-in and can be easily disabled, and the information they record or generate is only available to the User whom it relates to.”
-
Payment storage Report an error
“We do not collect any information about your methods or instruments of payment, except that, if you give the payment service provider credit card details, the last four digits of the credit card number are stored in the Organization under subscription billing info.”
-
API token Report an error
“an application programming interface token (API token) is automatically generated and stored under your User Account (this is an authentication token that you can use for accessing the Service through other software)”
-
Google API policy Report an error
“When accessing Google user data, Toggl's use and transfer to any other app of information received from Google APIs will adhere to Google API Services User Data Policy, including the Limited Use requirements.”
-
Retention accounting years Report an error
“Where retention periods are prescribed by law, such as the requirement to keep accounting and tax records for seven years, we comply with those obligations.”
-
Retention logs Report an error
“Backups, system, and application logs are retained for shorter operational periods (usually up to 90 days unless required for security investigations or the establishment and defence of legal claims).”
-
Retention deletion Report an error
“Once the applicable retention period expires, Personal Data is securely deleted or irreversibly anonymised.”
-
Right of access Report an error
“Right of access / GDPR Article 15”
-
Right to rectification Report an error
“Right to rectification / GDPR Article 16”
-
Retention policy Report an error
“Toggl maintains a formal data retention policy that specifies retention periods for different categories of data and assigns responsibility for their enforcement.”
-
Marketing optout Report an error
“As for Marketing Messages, you can always opt out of receiving these, but the variety of procedures for doing so may depend on the nature of the message and whether you have a User Account.”
-
Third party integrations Report an error
“Typically, a third-party service is software that integrates with the Service and a User can enable or disable this integration for her Service application, User Account or Organization.”
-
Sharing on invitation Report an error
“If you use the Service invitation feature to invite someone to become a User, we shall let the invitee know who you are by including some of your Profile Information (name, email address and perhaps your profile picture) in the invitation.”
10 facts read from this page are not shown because they could not be confirmed on the page as captured.