Desktive
Legal
Privacy Policy
Draft for product clarity — not a substitute for counsel review. See Cookie notice and Security.
This Privacy Policy explains how Desktive (“Desktive”, “we”, “us”) handles information when you use the Desktive cloud product at desktive.com, the Windows desktop agent, and related browser extension features (together, the “Service”).
1. Who this applies to
Desktive is a workplace productivity and time-tracking product. Depending on how your organization configures the Service, we may process:
- Account and workspace information for people who sign up or are invited
- Activity data collected by the desktop agent (and optional browser URL bridge)
- Optional screenshots when an organization enables that feature
- Technical data needed to run and secure the website and APIs
If your employer or organization provides Desktive, they are typically the controller of workplace monitoring data. We process that data to provide the Service to them and their authorized users.
2. Information we collect
Account and organization
- Name, email address, password (stored hashed), and profile details you provide
- Organization membership, roles, invitations, and admin-configured settings
- Support or contact messages you send us
Workplace activity (via the agent / extension)
When tracking is enabled for a user, the Service may collect items such as:
- Application names and window titles
- Idle / active signals and time intervals
- Browser URL / domain data when the Desktive URL bridge extension is used
- Device-related metadata needed to associate activity with the right user and org
- Screenshots, if the organization has screenshot capture enabled
Organizations control tracking, screenshot policies, and privacy windows directly in product settings.
Website and session data
- Session and authentication cookies needed to keep you signed in
- Basic server logs (for example IP address, user agent, timestamps) for security and reliability
- Analytics cookies or tags if/when we enable them (see our Cookie notice)
3. How we use information
- Provide, maintain, and improve the Service (timelines, reports, exports, org settings)
- Authenticate users and enforce organization access rules
- Communicate about accounts, security, and product changes
- Detect abuse, debug incidents, and protect the Service
- Comply with law and respond to lawful requests
We do not sell personal information.
4. Who can see workplace data
Activity, reports, and screenshots (when enabled) are available to authorized users inside the relevant organization according to product permissions (for example admins and permitted managers). Desktive personnel may access customer data only as needed to operate, secure, or support the Service, or where required by law.
5. Sharing with processors
We use infrastructure and service providers (hosting, email, storage, and similar) to run Desktive. They process data on our instructions. Contact us for current vendor or subprocessor questions.
6. Retention
We retain account and organization data while the workspace is active and as needed to provide the Service. Activity and screenshot retention follows product behavior and organizational needs; when an organization or account is deleted, we delete or de-identify associated data within a reasonable period, except where we must keep records for security, dispute, or legal reasons.
7. International transfers
Desktive is offered globally in English. Data may be processed in countries where we or our providers operate. If you need region-specific contractual terms (for example a Data Processing Addendum / DPA), contact us directly.
8. Security
We use industry-common safeguards such as HTTPS in transit, hashed passwords, and organization-scoped authorization checks. See our Security overview for practices we can honestly describe today. We do not claim ISO, SOC, or similar certifications on this site unless and until they are true.
9. Your choices and requests
- Update profile details in your account settings where available
- Ask your organization admin about workplace monitoring configuration
- Request access, correction, or deletion of personal data we hold by contacting us
- Control non-essential cookies via browser settings and our cookie notice controls
If your organization is the controller of workplace data, we may need to route some requests through them.
10. Children
The Service is intended for workplace use by adults. It is not directed to children.
11. Changes
We may update this Policy as the product and legal requirements evolve. We will change the “Last updated” date above and, for material changes, provide additional notice when appropriate.
12. Contact
Privacy questions: use our Contact page and mention “Privacy”. Related documents: Terms of Service · Cookie notice.