How we protect your organisation's data.
TimeQeeper is built for organisations where access and accountability matter. This page explains how sign-in, permissions, the logbook and the storage of your data are arranged.
Confirm admin action
Enter the code from your authenticator app to change permissions.
Logbook
Last 7 days- 07:42R. VisserPermissions changedTechnicians · Warehouse: Read → Write
- 07:31S. de VriesWork order completedWO000301 · status → Completed
- 06:58L. PetersAsset updated10LAC10AP001 · condition 3 → 2
- yesterdayR. VisserUser invitedm.jansen · group Planning
Two-step verification, and an extra step for administrators.
As the second step when signing in, you use a code from an authenticator app. It is mandatory for administrators and for every sign-in to TimeQeeper Pocket with an account. Sensitive admin actions, such as changing permissions or inviting users, also ask for a fresh code.
- Recovery codes for when your phone is lost
- Trusted devices, with a shorter period for administrators
- Temporary block after repeated failed sign-in attempts
- View your active sessions and sign other devices out
- A password of at least eight characters is required and is never stored in readable form
Permissions per module, per group or per person.
Per module you choose a level: no access, read, write, full or admin. You arrange that with permission groups or individual permissions, including for a whole selection of users at once. Modules your organisation does not use stay switched off.
- 1
Read
View data, not change it.
- 2
Write
Read, plus create and edit.
- 3
Full
Write, plus delete records.
- 4
Admin
Everything, plus configuring the module: master data and settings.
Separated per organisation
Data of different organisations is kept apart. On every request the server checks again which organisation you belong to and what you are allowed to do.
Who changed what, and when.
In the logbook, administrators see the changes made in their own environment: to users and permissions, assets, articles, work orders, notifications, planning, documents and more. Each line shows who made the change, when, and which fields changed. Filtering and exporting to Excel work straight away.
- The old and the new value for every change
- Column filters and saved views
- Assets and articles also keep a history of their own
Storage within the EU, traffic encrypted.
TimeQeeper's production environment and the storage of your data are within the EU. Traffic between your browser or the app and our servers is encrypted. Files are checked for type and content when they are uploaded.
The agreements on security, retention periods and sub-processors are laid down in a data processing agreement with your organisation.
Clear about where your data goes.
Photos of parts are analysed on our own servers, and so is text recognition on scanned documents. To read reports and manuals, to search by meaning and for the in-app assistant, text is processed by an external AI service. If text recognition cannot read a page, that page can be sent to the service as an image, if that option is switched on.
- Photo search and text recognition run on our own servers
- AI features are switched on or off per environment; your administrator can switch off reading documents with AI
- A proposal from a report or manual only becomes work after someone has reviewed it
Frequently asked questions about security
Is two-step verification mandatory?
For administrators it is, and also for signing in to TimeQeeper Pocket with an account. Other users can switch it on themselves, and we recommend that they do.
Where is our data stored?
In TimeQeeper's production environment, with storage within the EU. The AI features for documents are on by default, the assistant only if your organisation chooses it. For those features, text is processed by an external AI service.
Can we see who changed what?
Yes. Administrators have a logbook of the changes in their environment, with filters and export to Excel. Assets and articles also keep a history of their own.
How do I report a security issue?
Email info@timeqeeper.com. That address is also listed in our security.txt file, the standard place where researchers look for it.
Ready for more control over your maintenance?
Book a tailored demo. We'll show how TimeQeeper fits your assets, processes and team — and we'll get in touch quickly.