Legal

Privacy Policy

How Beecoding handles personal data in its client portal.

Last updated: September 30, 2026

Welcome to Beecoding's Privacy Policy.

This policy explains how Beecoding ("we", "us", "our") handles personal data in the Beecoding client portal (the "Portal"): the Portal itself, the emails it sends, and the pages people open through a shared link or a request link.

Beecoding, based in Gamprin, Liechtenstein, is responsible for this data (the "controller" under the GDPR). For questions, or to use your rights, email hello@beecoding.com.

Whose Data This Covers

  • Clients and their team members who have a Portal account.
  • Beecoding team members who work in the Portal.
  • People without an account who open a shared task link or send a request through a request link.

What We Collect

  • Account details: your name, email address, company, role and profile photo, and your settings, such as time zone, time format and notification choices. Your password is stored only as a secure hash, so no one can read it, including us.
  • The work you add: projects, tasks, comments, checklists, chat messages and reactions, files, feedback reports, and the replies you send to our notification emails.
  • Time and budgets: time entries, timers and budget figures for your projects.
  • Requests sent through a request link: the name, email address, details and files the sender enters.
  • Activity: what changed, who changed it and when, for example a completed task or an uploaded file. This powers the activity feed and notifications.
  • Personal navigation: the items you opened recently and the ones you marked as favorites, so the Portal can list them for you.
  • Technical and security records: sign-in times, IP addresses, browser details and server logs, kept by us and our providers to run the Portal and keep it secure.
  • Email records: whether an email was delivered, bounced or marked as spam, so we can stop sending to addresses that don't work.

The Portal doesn't use analytics, advertising or tracking tools, we don't sell personal data, and the Portal doesn't make automated decisions about you.

We need your name and email address to give you an account. Everything else you add is up to you.

Why We Use It

We use personal data only where the law allows it:

  • To provide the Portal and our services to you and your company: accounts, projects, tasks, chat, files, time, budgets and notifications. This is needed for our contract with your company, and is in our legitimate interest in serving the clients we work for.
  • To keep the Portal secure and reliable: preventing misuse, investigating errors, keeping backups and fixing problems. This is our legitimate interest in running a safe service.
  • To help when you need support. A Beecoding admin can view the Portal as a specific person sees it, to find and fix a problem. These sessions are time-limited and recorded. This is our legitimate interest in giving useful support.
  • To meet legal obligations, such as keeping accounting records.

Where we rely on our legitimate interests, you can object, as explained under Your Rights.

Who Can See It

  • Your workspace: people with access to the same company, projects, tasks or chats see what you post there, with your name and profile photo. Beecoding's team sees the client work it needs to provide its services.
  • Shared links: a shared task link shows its tasks to anyone who opens it, without signing in. Links can be turned off at any time.
  • Our service providers, listed below.
  • Authorities and courts, where the law requires it.
  • A company that takes over Beecoding's business, if that happens, under the same protections.

Our service providers process data on our behalf, under data processing agreements:

  • Supabase: database, sign-in and file storage.
  • Railway: hosting of the Portal.
  • Postmark: sending and receiving email.

Where It's Stored

Supabase, Railway and Postmark store and process data in the United States. When personal data leaves the European Economic Area, we protect it with the safeguards the GDPR requires, such as the European Commission's Standard Contractual Clauses or an adequacy decision.

How Long We Keep It

  • Accounts and their work: for as long as your company works with us. After that, we delete it within a reasonable time, unless the law requires us to keep something.
  • Trash: deleted items stay in the trash for 30 days, then they're deleted permanently.
  • Files uploaded for a request or feedback report that was never sent: deleted after 24 hours.
  • Deleted accounts: when an account is deleted for good, the person can no longer sign in, and their email address, profile photo, settings and account setup records are deleted. What they added to shared work (comments, chat messages, files, tasks and activity) stays, with their name, so the history still makes sense to everyone else.
  • Records the law requires, such as accounting records: for as long as the law requires.
  • Backups and logs: kept by us and our providers for a limited time, then deleted.

How We Protect It

The Portal uses encrypted connections, access rules on every record so each person sees only what they're allowed to, and limited access for our team. No system is perfectly secure, so please use a strong password and tell us right away if you think your account has been misused.

Your Rights

Under the GDPR, you have these rights:

  • Access: get a copy of your personal data.
  • Correction: have wrong or incomplete data corrected.
  • Deletion: have your data deleted.
  • Restriction: have the use of your data limited.
  • Portability: receive your data in a common, machine-readable format.
  • Objection: object to our use of your data where we rely on our legitimate interests.

To use these rights, email hello@beecoding.com. We reply within one month. Where a request affects your company's workspace, we may involve your company.

You can also complain to the Data Protection Authority of Liechtenstein (Datenschutzstelle Liechtenstein, datenschutzstelle.li) or to the authority where you live or work.

Cookies

The Portal uses only the cookies and browser storage it needs to work. Our Cookie Policy explains them.

Children

The Portal is a business tool and isn't meant for anyone under 16.

Changes to This Policy

We update this policy when the Portal or the law changes. The date at the top shows the current version. We'll tell you in the Portal or by email about changes that matter to you.

Contact

Beecoding, Gamprin, Liechtenstein. Email: hello@beecoding.com.