THE SHORT VERSION
- Your shifts, pay rules and pay periods stay on your device. There is no account and no ShiftCount server holding your ledger.
- The only data the App sends to us is crash reports, through Firebase Crashlytics. You can turn them off in Settings → Share crash reports.
- Crash reports never include your pay amounts, rates, job or employer names, or notes.
- No GPS or physical location, no ads, no advertising ID, no analytics SDK, and we do not sell or share personal information for advertising.
01 Who we are
Works Nicely Ventures (“we”, “us”, “our”) publishes ShiftCount: Hours & Pay (the “App”) and is the controller of the limited personal data described in this policy. For privacy questions, contact us at hello@worksnicely.ventures.
02 Scope
This policy covers the App on iOS and Android and the ShiftCount pages on worksnicely.ventures. It does not cover Apple, Google, or any app or service you use to share an export. They have their own privacy policies.
03 Data we collect
Data that stays on your device (we do not receive it). Everything you enter stays in the App’s private storage on your device. This includes jobs, shifts, breaks, pay rules, pay-period settings, received amounts, notes, reconciliations and the snapshots that explain each estimate. We have no access to it.
Crash reports (sent to Firebase Crashlytics when sharing is on). While sharing is on, Firebase receives the following when the App starts or when it crashes or records a fatal error:
- crash and error details, including stack traces;
- App state at the time of the failure, and the App version and build;
- technical device and operating-system details (for example device model, OS version, orientation, free memory and disk space);
- an installation identifier. Firebase generates it to group reports from the same installation. It is not your name, email, advertising ID or a ShiftCount account. Firebase uses two such identifiers: a Crashlytics installation ID and a Firebase installation ID;
- your device’s language, country and mobile-carrier codes, and timezone offset, which Firebase attaches to each upload. These show which country and carrier network the device uses, not where you are;
- an app-session event each time the App starts, which Firebase uses to relate crashes to sessions.
None of this is sent while sharing is off. The App attaches no user ID, custom user properties, custom crash keys or developer logs to these reports.
Purchases. When you buy or restore Lifetime Pro, Apple or Google processes the transaction and tells the App whether your purchase is valid. The App checks your purchase with the store only; it does not send purchase details to a ShiftCount server. We do not receive your name, email, card or bank details from the store.
Messages you send us. If you email us, we receive your email address and whatever you choose to include in your message.
04 Data we don’t collect
The App does not collect:
- pay amounts, rates, differences, job or employer names, or notes;
- GPS or other physical location. The App does not request location permission and includes no analytics SDK that derives location from your IP address. The country and carrier codes in crash reports are described in section 3;
- contacts, photos, calendar, microphone or camera data;
- advertising identifiers. No advertising SDK is included;
- screen views, taps or other in-App usage analytics;
- account credentials, because the App has no accounts.
05 Legal bases
Where the GDPR, UK GDPR, Swiss FADP, Brazil’s LGPD or a similar law applies, we rely on:
- Consent for crash reports in the EEA, the UK and Switzerland, given by turning on Share crash reports and withdrawn by turning it off;
- Legitimate interests for crash reports elsewhere: keeping the App stable and fixing failures. You can object at any time by turning off Share crash reports;
- Contract to provide Lifetime Pro and respond to purchase questions;
- Legitimate interests to answer messages you send us;
- Legal obligation where we must keep records or respond to lawful requests.
06 How we use data
We use crash reports only to find, diagnose and fix failures and to judge whether a release is stable. We use emails to reply to you. We do not use any data for advertising, profiling, selling, or training general-purpose AI models.
07 Crash reporting and SDKs
- In release builds, Settings → Share crash reports is on by default, except in the European Economic Area, the United Kingdom and Switzerland. There it is off until you turn it on. The App decides this from your device’s language region and timezone, without using your location. Once set, the choice stays until you change it. Onboarding tells you which applies and links to this policy.
- Turning the switch off stops Crashlytics collection immediately, without a restart, and deletes crash reports saved on the device that have not been sent yet. While it is off, the App sends nothing to Firebase. Turning it back on resumes collection.
- Turning sharing off does not delete reports Firebase has already received. To request deletion, see section 12.
- Development and test builds do not send crash reports.
- The App includes Firebase Crashlytics and the Firebase core libraries it requires, including Firebase Installations and Firebase Sessions. It does not include Firebase Analytics or any advertising SDK.
08 Sharing and service providers
We do not sell personal information, and we do not share it for cross-context behavioural advertising.
- Google (Firebase Crashlytics) processes crash reports on our behalf as a service provider.
- Apple and Google process purchases as their own controllers under their own privacy policies.
- Authorities, where the law requires it.
- A successor, if the App is transferred as part of a merger, acquisition or sale of assets. This policy continues to protect your data in that case.
Exports you share. PDFs, portable records, JSON backups and research contributions are created on your device. They leave it only when you send them through your device’s share sheet, to a destination you choose. We do not receive them unless you send them to us.
09 International transfers
Firebase may process crash reports in the United States and other countries where Google operates. We are based in Vietnam, so emails you send us are handled there. Where the law requires it, these transfers rely on appropriate safeguards: the EU–U.S. Data Privacy Framework and its UK and Swiss extensions where Google is certified, the European Commission’s Standard Contractual Clauses, the UK International Data Transfer Addendum, and Google’s data-processing terms. Section 13 describes the rules for specific countries.
10 How long we keep data
| Data | Retention |
|---|---|
| On-device records | Until you delete them or the App. We never hold a copy. |
| Crash reports in Firebase Crashlytics | Up to 90 days |
| Emails and support correspondence | Up to 24 months after the conversation ends |
| Records we must keep by law | As long as that law requires |
11 Security
Crash reports travel to Firebase over encrypted connections. Your records are stored in the App’s private storage, and your device’s passcode, biometrics and encryption protect them. Exported files are protected only by where you store them and who you share them with. Treat backups and PDFs like any document that contains pay information.
12 Your rights and choices
- Stop crash reports: turn off Settings → Share crash reports.
- Delete your records: delete them in the App, or uninstall it. We cannot delete on-device data for you, and we cannot restore it after you delete it.
- Export your records: with Lifetime Pro, export a JSON backup or a portable record.
- Request access, correction, deletion, restriction, portability or objection for crash reports or emails we hold: email hello@worksnicely.ventures. We may ask for details that help us find the report, such as the approximate date of the crash. We reply within the time your law requires (usually one month).
- Appeal or complain: if you disagree with our answer, reply to ask us to reconsider it. You can also complain to your local data-protection authority.
13 Region-specific disclosures
United States (including California and other state privacy laws). In the last 12 months, we collected identifiers (the Crashlytics and Firebase installation identifiers) and internet or other electronic network activity information (crash diagnostics). We collected them from the App for the purposes in section 6 and disclosed them to Google as our service provider. We collected no sensitive personal information. We do not sell or share personal information, and we honour Global Privacy Control signals where they apply. You have the rights described in section 12, and we will not discriminate against you for exercising them.
Canada. We handle personal information in line with PIPEDA and applicable provincial laws. The person in charge of the protection of personal information is Works Nicely Ventures’ privacy contact, reachable at hello@worksnicely.ventures. Crash-report sharing is a setting you control in Settings → Share crash reports, and the App works fully with it off. You can ask for a French version of this policy.
United Kingdom. UK GDPR and the Data Protection Act 2018 apply, and the rights and safeguards described for the EEA below apply to you in the same way, including opt-in crash reports. Transfers to Google outside the UK rely on the UK Extension to the EU–U.S. Data Privacy Framework or the UK International Data Transfer Addendum. You can complain to the Information Commissioner’s Office (ico.org.uk).
Australia. We handle personal information in line with the Privacy Act 1988 and the Australian Privacy Principles. You can use the App without identifying yourself. You can complain to the Office of the Australian Information Commissioner (oaic.gov.au).
Vietnam. We process personal data in line with the Law on Personal Data Protection and its implementing decrees.
The controller is Works Nicely Ventures in Hanoi, and our contact for personal-data requests is hello@worksnicely.ventures. You can complain to the Ministry of Public Security’s personal data protection authority.
European Economic Area and Switzerland. The GDPR, or the Swiss Federal Act on Data Protection, applies. Works Nicely Ventures is the controller. We rely on the legal bases in section 5. Crash reports are opt-in: sharing starts off, and we collect crash reports only after you turn on Share crash reports. That choice is your consent, which you can withdraw at any time by turning it off. Every feature works with it off. We make no decisions based solely on automated processing that produce legal or similarly significant effects for you. Transfers to Google outside the EEA or Switzerland rely on the EU–U.S. Data Privacy Framework where Google is certified, and otherwise on the European Commission’s Standard Contractual Clauses (section 9). You can complain to the supervisory authority in the country where you live or work, or, in Switzerland, to the Federal Data Protection and Information Commissioner (FDPIC).
Japan. We handle personal information in line with the Act on the Protection of Personal Information (APPI). Crash reports are processed by Google LLC in the United States. The United States has no single comprehensive data-protection law equivalent to the APPI, but Google is bound by data-processing terms that require it to protect the data and use it only to provide the service. You can ask us to disclose, correct, stop using or delete personal information we hold about you, or to disclose records of third-party provision, by emailing hello@worksnicely.ventures.
South Korea. We handle personal information in line with the Personal Information Protection Act (PIPA). We entrust crash-report processing to Google LLC (United States), which receives the data described in section 3 over encrypted connections each time a report is sent, and keeps it for the period in section 10. You can refuse this transfer by turning off Share crash reports; every App feature keeps working. Our privacy officer is reachable at hello@worksnicely.ventures. You can also contact the Personal Information Protection Commission or the Personal Information Infringement Report Center (privacy.kisa.or.kr, call 118).
Brazil. The Lei Geral de Proteção de Dados (LGPD) applies. We rely on legitimate interests (Art. 7, IX) for crash reports and on contract performance for Lifetime Pro. Transfers to Google outside Brazil rely on contractual safeguards. You have the rights in Art. 18 LGPD, including confirmation, access, correction, anonymisation, portability, deletion and information about sharing. Our data protection officer (encarregado) is reachable at hello@worksnicely.ventures. You can complain to the Autoridade Nacional de Proteção de Dados (ANPD).
India. We process digital personal data in line with the Digital Personal Data Protection Act, 2023. You can access, correct or erase your data, nominate another person to exercise your rights, and raise a grievance with us at hello@worksnicely.ventures. If you are not satisfied with our response, you can complain to the Data Protection Board of India.
Singapore, Hong Kong, New Zealand and other countries. We handle personal information in line with the privacy law of the country where you live, including Singapore’s Personal Data Protection Act, Hong Kong’s Personal Data (Privacy) Ordinance and New Zealand’s Privacy Act 2020. Wherever you are, you have at least the rights in section 12, and you can complain to your local data-protection authority.
14 Children’s privacy
The App is not directed to children, and you must be at least 16 to use it. We do not knowingly collect personal information from children. If you believe a child has sent us personal information, contact us and we will delete it.
15 App stores and external links
The App Store and Google Play privacy labels summarise this policy. If a label and this policy differ, this policy describes our practices, and we will correct the label. Links to external websites are governed by those sites’ policies.
16 Changes
We will post changes to this policy on this page and update the effective date. If we make a material change, such as collecting a new type of data, we will tell you in the App before the change takes effect. Where the law requires consent, we will ask for it first.
17 How to contact us
Questions about your privacy?
Works Nicely Ventures, Privacy70 Nguyen Duc Canh, Tuong Mai, Hanoi, Vietnam
See also our Terms of Use.