Privacy Policy

Last updated: February 2026

1. Information We Collect

We collect the following categories of information:

  • Account information: Email address, full name, and organization details provided during registration.
  • Employee data: First name, last name, last four digits of SSN, job classification (TTOC code), hourly rate, and filing status. We never collect or store full Social Security Numbers.
  • Financial data: Tip amounts, overtime hours, and related compensation data entered by you.
  • Usage data: Pages visited, features used, and general interaction patterns to improve the Service.
  • Payment information: Processed securely by Stripe. We do not store credit card numbers on our servers.

2. How We Use Your Information

  • Provide, maintain, and improve the Service.
  • Calculate FLSA overtime premiums, track OBBBA deduction caps, and generate W-2 export files.
  • Send transactional emails (welcome, trial expiring, weekly reminders, cap alerts).
  • Process payments and manage subscriptions.
  • Respond to support requests and communicate Service updates.

3. Third-Party Services

We use the following third-party services to operate TipFort:

  • Supabase: Database hosting and user authentication. Data is stored in Supabase's cloud infrastructure with row-level security.
  • Stripe: Payment processing. Stripe handles all credit card information per PCI DSS standards.
  • Resend: Transactional email delivery (welcome emails, reminders, cap alerts).
  • Vercel: Application hosting and deployment.

4. Data Security

We implement industry-standard security measures including encrypted connections (TLS), row-level security in our database, and scoped access controls. All data is isolated per organization; no organization can access another's data.

5. Data Retention

Your data is retained as long as your account is active. If you cancel your subscription, your data remains accessible in read-only mode. If you request account deletion, all your data will be permanently removed within 30 days.

6. Your Rights

You have the right to:

  • Access and export your data at any time through the Service.
  • Correct inaccurate information through the Settings or employee management pages.
  • Request deletion of your account and all associated data.
  • Opt out of non-essential communications.

7. Cookies

We use essential cookies for authentication and session management. We do not use advertising or third-party tracking cookies.

8. Children's Privacy

The Service is not intended for use by individuals under 18 years of age. We do not knowingly collect information from children.

9. Changes to This Policy

We may update this Privacy Policy periodically. Material changes will be communicated via email or in-app notification. Continued use of the Service after changes constitutes acceptance of the updated policy.

10. Contact

For privacy-related inquiries, contact us at privacy@tipfort.com.