---
title: Evertimer Privacy Policy | Everlabs: Web & Mobile Development with Agentic AI
description: Evertimer Privacy Policy. Applies to Evertimer for Chrome and Edge. Published by Everlabs Inc. Effective September 22, 2026.
url: https://everlabs.com/apps/evertimer/privacy
effective_date: 2026-09-22
date_modified: 2026-09-22T17:17:41+03:00
---

# Evertimer Privacy Policy

**Evertimer for Chrome and Edge**
Published by Everlabs Inc. · Effective September 22, 2026 · Published at https://everlabs.com/apps/evertimer/privacy

---

## At a glance

- Evertimer has no Everlabs account and no Everlabs servers. Your time-tracking data goes only to the Redmine server you connect.
- Everlabs does not receive, sell, or share the data the extension handles. The only information Everlabs receives is what you choose to submit in the optional bug report form or uninstall survey.
- Evertimer contains no analytics, telemetry, advertising, or tracking code.
- Your settings and tracked time are kept in your browser. If browser sync is turned on, they are also synced to your other devices on the same browser profile.

## Contents

1. [Introduction](#1-introduction)
2. [Who is responsible for your data](#2-who-is-responsible-for-your-data)
3. [What Evertimer is](#3-what-evertimer-is)
4. [What Evertimer handles](#4-what-evertimer-handles)
5. [Where your data is stored](#5-where-your-data-is-stored)
6. [Where your data is sent](#6-where-your-data-is-sent)
7. [Permissions](#7-permissions)
8. [Keeping and removing your data](#8-keeping-and-removing-your-data)
9. [Your choices and rights](#9-your-choices-and-rights)
10. [Children](#10-children)
11. [Security](#11-security)
12. [Changes to this policy](#12-changes-to-this-policy)
13. [Contact](#13-contact)

## 1. Introduction

Evertimer is published by Everlabs Inc. ("Everlabs", "we", "us"), which is responsible for the extension. This policy explains what data Evertimer handles, where that data is kept, where it is sent, and what choices you have.

Evertimer keeps your data in your browser and sends it only to the Redmine server you connect. Everlabs does not receive it. The few exceptions – browser sync, your avatar image, and the optional bug report form and uninstall survey – are described under [Where your data is sent](#6-where-your-data-is-sent).

## 2. Who is responsible for your data

- **Everlabs** is responsible for the Evertimer extension and for this policy. Everlabs does not receive or process the data the extension handles.
- **Your Redmine server** is run by your organization or another Redmine operator. That operator controls the data stored on the server, including the time entries you submit, under its own policies.
- **Form responses.** If you submit the bug report form or the uninstall survey, Everlabs is responsible for those responses.

## 3. What Evertimer is

Evertimer is a browser extension for tracking working time on Redmine issues from your browser toolbar. It submits your time to your own Redmine server through Redmine's REST API. An optional server-side Evertimer plugin, installed on your Redmine server, adds time statistics.

## 4. What Evertimer handles

- **Sign-in information** – your Redmine server address and API key. They are used only to authenticate requests to that server, and they are saved only after you save your settings.
- **Profile information** – your Redmine user ID, first and last name, and avatar URL, as returned by your Redmine server.
- **Work data** – the issues you track (number, subject, status, estimated and spent hours); your tracked time; the comments and custom-field values you enter for each time entry; the time entries you submit; your hours for today, this week, and this month; the order of your tracked tasks; your most recently loaded statistics; and reference lists from the server (activities, statuses, custom fields).
- **Drafts** – comments, notes, and custom-field values you have started entering but not yet submitted, and a server address and API key you have typed but not yet saved.

**Evertimer does not collect** browsing history, the content of the pages you visit, keystrokes, screenshots, form input from other websites, what you do in private or incognito windows, location, or health, financial, or communication data.

If you allow Evertimer in incognito windows, it works there the same way it does in regular windows and uses the same storage. It still does not record which sites you visit.

## 5. Where your data is stored

All of the data above is stored in your browser, in these storage areas:

| Storage area | What it holds | How long it is kept |
|---|---|---|
| Synced extension storage (`chrome.storage.sync`) | Settings (server address, API key), profile information, tracked tasks and time, task order, reference lists, most recent statistics | Until you remove it or uninstall Evertimer. Synced across your browser profile when sync is on |
| Session storage (`chrome.storage.session`) | Short-lived copies of server responses (cache) | In memory only. Cleared when you close the browser, when the extension is reloaded, updated, or disabled, when you log out, and when you change the server address or API key |
| Popup local storage (the Evertimer popup's own browser storage, `localStorage`) | Temporary drafts: unsent comments, notes, and custom-field values; a server address and API key typed but not yet saved | On this device only; not synced. Typed sign-in details are removed when you save your settings; other drafts are removed when submitted or cleared. Everything is removed when you uninstall |

**Browser sync.** When sync is turned on in Chrome, Google syncs the contents of synced extension storage, including your API key, to other devices signed in to the same Chrome profile. This happens under [Google's Privacy Policy](https://policies.google.com/privacy). When sync is off, this data stays on the device. If you use Evertimer in another browser, such as Microsoft Edge, that browser's own sync service and terms apply.

Everlabs runs no servers for Evertimer and has no access to any of this data.

## 6. Where your data is sent

Evertimer sends your sign-in, profile, and work data to **your configured Redmine server only**, including the optional Evertimer plugin's endpoints on that same server. Every request is authenticated with your API key.

- No Everlabs server receives, stores, or processes this data.
- We never sell or share your personal information. This includes "selling" or "sharing" as those terms are defined under California law (CCPA/CPRA).
- There is no analytics or advertising.

**Browser sync.** Browser sync, described above, is the only other place your settings and tracked data go. It is run by your browser provider, not by Everlabs.

### Other network activity

None of the following sends your API key, tasks, or tracked time anywhere:

- **Avatar image.** Evertimer loads your avatar from the URL your Redmine server provides, which may be a Gravatar URL. Like any image request, this shares your IP address and basic browser information with the image host. A Gravatar URL also contains a hashed form of your Redmine email address. See [Gravatar's privacy policy](https://automattic.com/privacy/).
- **Bug report form.** The "Report a bug" link in Settings opens an Everlabs form only when you click it. Along with your answers, the form asks for your email address so we can follow up with you about your report.
- **Uninstall survey.** When you remove Evertimer, your browser opens a short, optional Everlabs survey. The extension sends no data to it, and the survey does not collect your email address.
- **Other menu links.** Other links in the Evertimer menu open websites only when you click them.

Both forms are hosted on Google Forms and need no sign-in. Apart from the email address on the bug report form, they record only the answers you type, plus the submission time. Only authorized Everlabs staff can read the responses, and we keep them only until they are no longer needed to improve Evertimer. Google also processes form submissions, under [Google's Privacy Policy](https://policies.google.com/privacy).

### Chrome Web Store User Data Policy

The use of information received from Google APIs will adhere to the [Chrome Web Store User Data Policy](https://developer.chrome.com/docs/webstore/program-policies/user-data-faq), including the Limited Use requirements. In particular, Evertimer:

- uses your data only for its single purpose: tracking your working time and submitting it to your Redmine server;
- transfers your data only to your Redmine server, and only as needed for that purpose;
- never uses or transfers your data for advertising;
- does not allow any person to read your data. Everlabs has no access to it.

## 7. Permissions

- **`storage`** – stores the settings, tasks, and time described above.
- **Access to all websites (`<all_urls>`)** – When you install Evertimer, your browser warns that the extension can "read and change all your data on all websites." Evertimer needs this access because every organization runs Redmine at its own address, which is not known in advance. Evertimer uses the access only to send requests to the Redmine server you configure. It does not inject scripts into, read, or change the pages you visit, and it does not read your tabs or browsing history.

Evertimer requests no other permissions.

## 8. Keeping and removing your data

- **Logging out** removes your sign-in and identity data: the server address, API key, and profile information, along with your display settings, task order, cached statistics, and cached server responses. Your tracked tasks, time, and comments are kept on purpose, so you never lose unsubmitted work. They stay in synced storage, on this device and on other devices using the same browser profile, until you submit or delete them or uninstall. Reference lists and unsent drafts are also kept.
- **Uninstalling** removes the extension and everything it stored, in this browser and, through sync, on other devices signed in to the same Chrome profile. Reinstalling does not bring it back, so **submit your tracked time before uninstalling**.
- **Submitted time** is stored on your own Redmine server. Your Redmine administrator manages it, not Evertimer.
- **Form responses** (bug reports and uninstall surveys) can be deleted on request. Contact us at [connect@everlabs.com](mailto:connect@everlabs.com).
- Everlabs holds no copy of the data the extension handles, so there is nothing more for Everlabs to delete.

### Retention summary

| Data | Where it is kept | How long |
|---|---|---|
| Sign-in and profile information, display settings, task order, cached statistics | Your browser (synced) | Until you log out or uninstall |
| Tracked tasks, time, and comments; reference lists | Your browser (synced) | Until you submit or delete them, or uninstall (kept when you log out) |
| Cached server responses | Your browser (session storage, in memory) | Until you log out, the browser closes, the extension is reloaded, updated, or disabled, or your server address or API key changes |
| Temporary drafts | This device only (popup local storage) | Until saved, submitted, or cleared, or until you uninstall |
| Submitted time entries | Your Redmine server | As set by your Redmine administrator |
| Bug report and uninstall survey responses (bug reports include your email address) | Everlabs (Google Forms) | Until no longer needed to improve Evertimer |

## 9. Your choices and rights

- **In Evertimer**, you can view, edit, and remove tracked tasks, clear your drafts, log out, or uninstall the extension at any time.
- **On your Redmine server**, your submitted time entries and your Redmine profile are managed by your Redmine administrator. Contact them to access, correct, export, or delete that data.
- **With Everlabs**, you may have rights over your personal data, depending on where you live (for example, under the GDPR in the EU and UK, or under California's CCPA/CPRA). These rights can include accessing, correcting, deleting, or exporting your personal data, objecting to or restricting its processing, and withdrawing consent. Because Everlabs does not receive the data the extension handles, such requests usually concern form responses only, including any email address you gave in a bug report. Send requests to [connect@everlabs.com](mailto:connect@everlabs.com). **We respond within 30 days.** We will not treat you differently for exercising these rights. You also have the right to complain to your local data protection authority.

## 10. Children

Evertimer is a work tool and is not directed to children. It is not intended for children under 13, or under 16 in the European Economic Area and the United Kingdom. We do not knowingly receive personal data from children through the bug report form or uninstall survey.

## 11. Security

- Your API key is sent only in the authentication header of requests to your configured Redmine server. It is never sent to Everlabs.
- Evertimer connects using the scheme in the server address you enter. If you don't enter one, it uses `https://`. **Use an `https://` address.** With an `http://` address, your API key and data travel unencrypted, and Evertimer does not currently warn you.
- Your API key is stored in your browser's extension storage and synced by your browser across your signed-in devices. Evertimer does not add its own encryption, so the key is protected only as well as your browser profile is. The key is never sent anywhere except your own Redmine server.
- Treat your API key like a password. If you think it has been exposed, reset it on your **My account** page in Redmine.

## 12. Changes to this policy

We publish future versions of this policy at [everlabs.com/apps/evertimer/privacy](https://everlabs.com/apps/evertimer/privacy), each with a new effective date. When a change materially affects how Evertimer handles data, we announce it on our website and update the Chrome Web Store listing and its privacy details.

## 13. Contact

Questions or requests about this policy or your data:

**Everlabs Inc.**
8 The Green, Suite #7675
Dover, DE 19901, United States
[connect@everlabs.com](mailto:connect@everlabs.com)


---

*Evertimer Privacy Policy · Effective September 22, 2026 · © Everlabs Inc.*


---

*Markdown version of [https://everlabs.com/apps/evertimer/privacy](https://everlabs.com/apps/evertimer/privacy). For AI assistants and answer engines.*

