Privacy Notice
This working draft documents the product’s intended privacy practices. It must be reviewed by qualified counsel and updated with the final business entity, contact details, subprocessors, and retention terms before public launch.
Data purpose
H-2A Hours is designed to process employer, worker, timekeeping, payroll-support, and wage-statement records only to provide the service, keep it secure, support users, and meet documented retention instructions.
Ownership and sale of data
Employers retain ownership of their business records, subject to applicable law. The platform will not sell worker data and will not use worker records to train external AI models.
Location and sensitive information
Precise location collection is off by default. Workers may provide a Social Security number for payroll and tax-reporting workflows. The full number is encrypted before storage, is never displayed back in ordinary worker or employer screens, and is excluded from lists, standard reports, notifications, logs, and AI help. Authorized employer administrators can see only whether a number is on file and its last four digits.
Access and security
Access is restricted by organization and role. Privileged support access must be permission-based, time-limited, visible, and audited.
Launch alerts and newsletters
A person may provide an email address to receive a one-time launch alert. Occasional product news is optional and requires a separate choice. These email addresses are not sold, are not part of worker or payroll records, and can be unsubscribed from future messages.
Worker mobile app
The worker app processes the worker login code and PIN, clock events, manual-hour requests, shift responses, language preference, and the worker's own earnings-statement previews. The PIN is verified securely and is not stored in readable form by the app.
When a worker records time without a connection, the phone temporarily stores only the event type, timestamp, time-zone context, source, and an opaque event identifier. It does not place the worker's name, wage, organization name, or PIN in the offline event queue. Queued events expire after 24 hours and are cleared at sign-out.
Notifications and device storage
Notifications are optional. If enabled, the service stores the information needed to deliver clock and employer deadline reminders. The native app may also schedule reminders directly on the phone so they can appear while the app is closed or temporarily offline. Workers can disable notification permission in the phone settings.
The app stores a language preference, a reminder opt-in setting, and an opaque remembered session when the worker chooses “Remember me.” This information is used only for app operation, not advertising or cross-app tracking.
AI help
The help assistant receives the user's product question, current help context, selected language, and static help content. It does not receive worker time, wage, payroll, statement, PIN, or organization records, and help conversations are not used to train external models.
Retention, export, and deletion
Employers will be able to export their records. Account closure will preserve a read-only export period and will not silently destroy records that must be retained.
Workers should contact their employer to correct or request access to employment records. Final business contact details, retention schedules, and any legally required worker-request process will be added before public launch.