HourSync Back to HourSync

Privacy Policy

Effective date: 7 August 2026

HourSync is a Google Sheets™ add-on that imports your Clockify time entries into your own spreadsheet. This page explains exactly what it accesses, why, and what you can do about it.

HourSync is developed and operated by Daniele Barbieri Luigi, an independent developer. Contact: danibarbers13@gmail.com.

The short version. There is no HourSync server and no HourSync database. The add-on runs inside Google Apps Script under your own Google account, calls the Clockify API directly with the key you paste in, and writes the result into the one spreadsheet you opened it in. Your time entries are never sent to us, because there is no "us" for them to be sent to.

Website analytics

The public HourSync website uses Google Analytics 4 to understand aggregate site use and measure clicks from the website to the Google Workspace Marketplace listing. Google receives standard web analytics data such as page views, browser and device information, referral information, approximate location inferred from IP address, and the Marketplace-click event.

This website analytics is separate from the HourSync add-on. It does not collect Clockify API keys, spreadsheet content, imported time entries, or the Google account data used by the add-on. Google processes website analytics data under its own privacy policy; you can limit this collection with your browser's privacy controls or opt out using Google's Analytics opt-out tools.

What the add-on does

HourSync imports your time-tracking data from Clockify into the Google Sheets™ spreadsheet you run it in, creating a tab named Hours. Optional Pro features add filters, a per-project Summary sheet, and a scheduled daily refresh.

What Google user data HourSync accesses

HourSync accesses the following Google user data, and nothing else:

HourSync does not access your Gmail messages, Google Calendar, Google Contacts, Google Drive file list, Google Photos, location data, device identifiers, or any other Google user data of any kind.

How HourSync uses Google user data

Each item of Google user data is used for one purpose only, described below. There is no other processing, and no secondary use.

HourSync does not use any Google user data to develop, improve or train generalized artificial intelligence or machine learning models. No Google user data is used for advertising, resale, credit scoring, or any purpose other than providing the features described on this page.

Clockify data

Separately from Google user data, HourSync handles data you hold in Clockify:

Every OAuth scope HourSync requests

These are all of them. Google shows you this list on the consent screen before you install; you can compare it line by line.

OAuth scopes requested by HourSync and the reason for each
ScopeWhat it allowsWhy HourSync needs it
spreadsheets.currentonly Read and write only the spreadsheet the add-on is open in To write the imported rows into the Hours sheet, and the Summary sheet on Pro. It cannot reach any other file.
script.container.ui Display third-party web content in prompts and sidebars inside Google applications To draw the HourSync panel in the sidebar of your spreadsheet. That panel is the entire interface.
script.external_request Connect to an external service To call the Clockify API for your data, and the Stripe API to check your subscription status.
script.scriptapp Allow the script to run automatically when you are not present Only for the Pro daily refresh, which updates your hours once a day even when the spreadsheet is closed.
userinfo.email See your primary Google account email address Sent to Stripe solely to check whether that address has an active Pro subscription.
userinfo.profile See your personal info, including any personal info you have made publicly available — shown on the consent screen as “See your profile info” Added automatically by the Google Workspace Marketplace platform, which includes the email and profile scopes by default for every listed add-on. It is not requested in the add-on's own manifest, and HourSync does not read, use or store any profile data — the only identity call in the code reads your email address, for the subscription check described above.

HourSync deliberately does not request full Google Drive access, full Spreadsheets access, Gmail, Calendar or Contacts. Three of the scopes above — script.container.ui, script.external_request and script.scriptapp — are classified by Google as sensitive scopes. HourSync requests no restricted scopes. The protections that apply to sensitive data are described in the next section.

How HourSync protects your data

These are the concrete measures that protect the Google user data and sensitive-scope access described above.

Limited Use disclosure

HourSync's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Payment data

Pro subscriptions are processed by Stripe, Inc. Card and billing details are entered on Stripe's own checkout page and handled by Stripe under Stripe's privacy policy. Your full card details are never seen or stored by HourSync. The only thing kept is Stripe's yes-or-no answer about your subscription, cached briefly inside your own Google account so the add-on does not have to re-ask on every click.

Data sharing

Your data is not sold, and not shared with third parties except:

Data retention and deletion

No Google user data is retained by HourSync. Your spreadsheet content is read and written in memory during a single run and is never copied elsewhere. Your email address is held only for the duration of the Stripe subscription check; the only thing kept afterwards is Stripe's yes-or-no answer, cached briefly inside your own Google account so the add-on does not have to re-ask on every click.

The only values stored at all are your Clockify API key and your add-on settings, in your own Google account. They stay there until you clear them in the add-on or uninstall it; uninstalling removes the add-on's stored properties for your account. You can delete everything yourself at any moment, without contacting us, by clearing the key in the add-on and revoking access at myaccount.google.com/permissions.

Any rows already written into your sheet stay in your sheet, under your control — nothing is deleted, and the spreadsheet keeps working even if HourSync disappears tomorrow.

Your choices

Children

HourSync is a tool for professional time tracking and is not directed at children under 16.

Changes to this policy

This policy may be updated from time to time. The effective date above always reflects the current version.

Contact

Daniele Barbieri Luigi — danibarbers13@gmail.com
Via Cavour 43, 18039 Ventimiglia (IM), Italy