Effective date: July 27, 2026
Last updated: July 27, 2026
CI Crew Tracker is an internal crew scheduling and time-tracking application operated by CI Management ("CI Management," "we," "us," or "our"). This Privacy Policy explains how we collect, use, store, and disclose information when authorized crew members and production managers use CI Crew Tracker.
CI Crew Tracker is intended only for authorized CI Management personnel, workers, contractors, and administrators. It is not a public consumer application.
We may collect and store:
Authentication is provided through Supabase Auth. CI Crew Tracker does not store plaintext passwords. Password credentials are processed and secured through the authentication provider.
We may collect and store:
When a worker chooses to clock in or clock out, CI Crew Tracker may collect:
CI Crew Tracker does not continuously track a worker's location. Location is requested when the worker initiates a clock-in or clock-out action.
We may collect and store records concerning:
These records help CI Management investigate discrepancies, maintain accountability, and support operational and payroll-related review.
The application may use browser local storage to maintain an authenticated session. The browser and hosting infrastructure may also process standard technical information required to deliver and secure the application, such as IP address, browser type, device type, request time, and security logs.
CI Crew Tracker does not currently use advertising trackers, marketing pixels, or third-party analytics tools.
We use information collected through CI Crew Tracker to:
We do not use location information for advertising or marketing.
CI Crew Tracker uses the browser or device geolocation feature when a worker initiates a clock-in or clock-out action. The coordinates are sent to the application server, which calculates the approximate distance between the device and the assigned event location.
If an administrator has configured a geofence and the device appears to be outside the allowed radius, the application may prevent the clock-in or clock-out and display an error. Device location can be affected by signal quality, device settings, buildings, network conditions, and other technical factors.
Location information collected during clock-in or clock-out is stored with the time entry and may be viewed by authorized administrators in timekeeping records and reports.
Workers should contact an administrator if:
CI Management may review the circumstances and correct a time entry when appropriate. Nothing in this policy is intended to prevent a worker from reporting or correcting hours actually worked.
Camera access is optional and is used only when a worker chooses to scan an event-specific QR code.
QR-code video frames are processed locally in the browser using the jsQR library. CI Crew Tracker does not upload, transmit, or store camera images or video through the QR scanner.
The QR code opens the relevant event clock-in screen. Scanning a QR code does not itself complete a clock-in or clock-out.
CI Crew Tracker does not request microphone access, and microphone access is disabled by application policy.
CI Management does not sell personal information. We do not share crew data with third-party advertisers or use it for targeted advertising.
Information may be disclosed as follows:
We use service providers to operate the application:
Supabase processes application data on CI Management's behalf as a service provider. jsPDF and jsQR perform the described functions in the browser and are not used by CI Management to upload PDF content, camera images, or video to those library providers.
We may disclose information when reasonably necessary to:
Authorized administrators may export staffing lists and clock-in reports as PDF files. These PDFs are generated locally in the administrator's browser and saved to the administrator's device.
Once downloaded, the file is controlled by the administrator and CI Management. Administrators must protect exported files, share them only for authorized business purposes, and delete them when they are no longer needed.
The application does not currently apply an automatic deletion schedule. Account, event, assignment, timekeeping, location, and audit information is generally retained until an authorized administrator deletes the relevant account or event.
Some information may be retained longer when reasonably necessary for payroll, tax, accounting, dispute resolution, legal compliance, security, or other legitimate business-record purposes. Deletion of an account or event may be limited when retaining associated records is required by law or needed to preserve accurate timekeeping and audit history.
CI Management should periodically review retained information and securely delete information that is no longer reasonably needed.
CI Management uses administrative, technical, and organizational safeguards designed to protect information. These safeguards include:
No method of electronic storage or transmission is completely secure. Users must protect their login credentials, use a secure device, sign out of shared devices, and promptly report suspected unauthorized access.
Workers can view their assignments and time entries and can update their own phone number through the application.
To request access, correction, account deactivation, or deletion of information, contact an authorized CI Management administrator or use the contact information below. CI Management may need to verify the requester's identity.
Certain requests may be limited when information must be retained for payroll, tax, legal, security, dispute-resolution, or other legitimate business purposes. Workers may report inaccurate time or location records and request review without waiving any rights they may have under applicable law.
Users can deny browser location or camera permission. Denying location permission may prevent use of the standard clock-in and clock-out feature. Camera permission is optional because workers may access an event without scanning its QR code.
CI Crew Tracker is a restricted workforce application and is not directed to children. Users must be legally eligible and authorized to perform work for CI Management. If CI Management authorizes a minor to work, the account and data must be handled in accordance with applicable employment and privacy requirements.
We may update this Privacy Policy when the application, our practices, or applicable requirements change. The revised policy will display a new "Last updated" date. When a change materially affects how worker information or location data is handled, CI Management may provide additional notice through the application, by email, or through another appropriate workplace communication.
Questions, privacy requests, timekeeping concerns, or security reports may be directed to an authorized CI Management administrator or:
CI Management
Email: info@ci-mgt.com
Before publishing this policy, CI Management must replace the bracketed contact field with an actively monitored email address.