Last updated: 26 July 2026
App name: WagePal: Shift & Pay Tracker
Developer/contact: Robert D, developer of WagePal
Email: support@wagepal.co.uk
This Privacy Policy explains how WagePal handles information.
WagePal is designed to be privacy-first and local-first. For normal shift and annual-leave tracking, WagePal stores your jobs, shifts, annual-leave records, notes, rates, settings, notification information and information used to calculate estimated gross pay on your device.
WagePal does not require a WagePal account, username, email login or password.
Limited subscription and technical information is processed by Google Play and RevenueCat to provide WagePal Pro subscriptions, purchase restoration and entitlement verification, as explained in Sections 11 and 12. This does not include your normal jobs, shifts, annual-leave records, wage information or other work records.
WagePal provides estimated gross pay only. WagePal is not payroll software and does not provide tax, legal, financial, employment, banking, accounting or payroll advice.
WagePal may store the following information locally on your device:
• Job names
• Employer names
• Hourly rates
• Currencies
• Pay cycles
• Payday rules
• Bank-holiday regions
• Shift dates and times
• Break durations
• Worked hours and paid hours
• Estimated gross earnings
• Shift notes and tags
• Pay enhancements
• Annual-leave dates
• The job associated with an annual-leave record
• Annual-leave entry or group information
• Paid or unpaid status for the complete annual-leave entry and all dates saved together in it
• Annual-leave hours or minutes allocated to each selected date
• Annual-leave hours or minutes
• The hourly rate entered for an annual-leave entry
• Currency associated with the annual-leave record
• Information used to calculate estimated gross pay for paid annual leave
• First name
• Optional profile photo reference
• Settings, privacy settings, App Lock settings, backup settings and saved defaults
• Notification-category preferences
• Selected reminder times
• Limited recent notification history
• Notification read or unread state
• Local notification delivery or display state where required for the feature
• Limited local feature-announcement records and dismissal state
• An anonymous RevenueCat App User ID, displayed in WagePal as the Subscription Support ID
• Limited trusted local WagePal Pro entitlement and verification state
• Limited device-local subscription lifecycle and notification-deduplication state
This information may reveal sensitive work, annual-leave, income, employer or personal patterns. You should keep your device secure and avoid sharing screenshots, exports, backups, notification content or other files unless you are comfortable with the information they contain.
Annual Leave is a separate local record type available to both Free and Pro users.
Annual-leave records are not stored as shifts or pay enhancements.
When recording annual leave, you may select:
• The relevant job
• One or more leave dates
• Whether the annual-leave entry and all dates saved together in it are paid or unpaid
• How paid leave time should be entered
• The duration of paid leave
• The hourly rate used for that annual-leave entry
For paid annual leave, WagePal may allow you to enter either:
• The same duration for each paid leave day; or
• One total duration for the full annual-leave entry
Time may be entered using Decimal hours or Hours and minutes. WagePal stores the resulting allocated paid minutes for each selected date locally on your device.
The selected job’s hourly rate may be prefilled when an annual-leave record is created. You can change that rate for the annual-leave entry without changing the job’s normal hourly rate.
For paid annual leave, WagePal calculates an estimated gross amount locally from the saved paid minutes and record-specific hourly rate.
Unpaid annual leave contributes no estimated gross amount.
Paid annual-leave estimates may contribute to estimated-gross totals shown in the Dashboard, Pay History, Advanced Pay Analytics and Payslip Estimate where applicable.
Annual-leave records do not increase shift worked hours, shift paid hours, break durations or shift count.
WagePal does not determine or calculate:
• Holiday entitlement
• Remaining leave allowance
• Holiday accrual
• Statutory holiday pay
• Contractual holiday pay
• Employer approval
• Employment rights
Recording annual leave in WagePal does not mean that the leave has been requested, approved, processed or paid by your employer.
Where editing is available, an annual-leave entry can be opened from Shifts and updated. Only the dates saved together in that entry are edited; separately saved annual-leave entries remain separate. The complete entry can also be deleted after confirmation.
WagePal does not currently provide:
• A WagePal account
• Email/password login
• Cloud wage database
• Cloud shift or annual-leave sync
• Server-side storage of your jobs, shifts, annual-leave records, notes, employer names, hourly rates, notification history or pay records
Your normal WagePal data stays on your device unless you choose to export, share, email or back it up.
Annual-leave records and calculations are processed locally and are not automatically uploaded to WagePal servers.
Google Play and RevenueCat process only the limited subscription, purchase and technical information described in Sections 11 and 12. This processing does not create a WagePal account or cloud wage database, and does not give Google Play or RevenueCat access to your locally stored jobs, shifts, employer names, wage records, annual-leave records, notes, tags, exports, backups, notification history or other work records through WagePal.
If WagePal ever adds accounts, cloud sync or account-based services in the future, this Privacy Policy and the app’s legal information must be updated.
WagePal may allow you to create exports, backups, screenshots, screen recordings or support emails.
If you choose to share information outside the app, that information may leave WagePal and be handled by the app, service, person or storage location you choose.
This may include:
• PDF or CSV exports
• Standard backup files
• Encrypted backup files
• Screenshots or screen recordings
• Support emails
• Files saved to cloud folders or third-party file apps
• Files shared through Android’s share sheet
These files or messages may contain wage, employer, shift, annual-leave, pay-estimate or personal information.
Please do not include or share sensitive wage, employer, shift, annual-leave or personal details unless you choose to and are comfortable doing so.
WagePal may include a Help & Feedback feature that opens your chosen email app with a prefilled message.
Support emails are user-initiated. WagePal does not automatically upload screenshots, logs, wage data, shift data, annual-leave data, employer data, notification history or other local records.
If you send an email to support, we may receive:
• Your email address
• The message you write
• Any screenshots, recordings or files you attach
• Any device, app or troubleshooting details you choose to include
• The Subscription Support ID, if you deliberately copy and include it for subscription support or a RevenueCat data-deletion request
To help with subscription support or a RevenueCat data-deletion request, WagePal displays a copyable anonymous Subscription Support ID in Settings under App & Data. This identifier is generated by RevenueCat.
The Subscription Support ID is not a password, payment credential or secret. It cannot independently purchase, restore, verify or grant WagePal Pro access, and it does not provide access to locally stored jobs, shifts, wages, annual-leave records, notes, exports or backups.
The Subscription Support ID is included in a support message only when you deliberately copy and share it.
We use support emails to answer questions, investigate issues, improve WagePal, keep support records where needed and comply with legal obligations.
Please do not include sensitive wage, employer, shift, annual-leave or personal details unless you choose to and believe it is necessary. If you attach screenshots, hide or crop private details first where possible.
Do not send full payment-card details in a support email. WagePal does not need or request them.
Where backup features are available, WagePal may allow Standard backups, Encrypted backups, manual backups and weekly automatic Standard backups.
Some backup features may be free and some may require WagePal Pro, depending on the app version and feature availability. Weekly automatic Standard backups, where available, may require WagePal Pro.
WagePal currently disables Android’s automatic app-data backup for local app data. Where available, WagePal backups are created only when you choose to use the app’s backup features.
Current Standard and Encrypted WagePal backups may include annual-leave records and related information.
Older compatible WagePal backup versions may contain no annual-leave records because those backups may have been created before the Annual Leave feature was available.
Standard backups are not encrypted by WagePal. They may contain sensitive wage, work, employer, shift, annual-leave, note, settings and pay-estimate information. You should keep Standard backup files private and store them securely.
Encrypted backups use a password chosen by you. WagePal does not store that password. If you forget the password, WagePal cannot recover the encrypted backup.
If you save backups to a cloud folder, file-sync app, work profile, file manager or third-party storage app, that provider’s own privacy policy and terms may apply.
Backup and restore features are controlled by you. WagePal is not responsible for how third-party storage providers handle files that you choose to save, sync, upload, share or store outside the app.
The following information is excluded from WagePal backup files:
• Notification history
• Notification read or unread state
• Local notification delivery state
• Local feature-announcement records
• Feature-announcement delivery or dismissal state
• One-time Pro subscription status messages
• Limited device-local subscription lifecycle and notification-deduplication state
The limited device-local subscription lifecycle and notification-deduplication state is not included in a WagePal backup file. Where it already exists on the device, restoring a backup does not replace it. This helps prevent an older backup from replaying outdated subscription-status messages.
This device-local state is not uploaded or transferred as part of a WagePal backup.
Where export features are available, WagePal may allow PDF or CSV exports.
Exports are user-created files. Depending on the export, they may contain:
• Visible gross-pay estimates
• Shift details
• Paid or unpaid annual-leave records
• Annual-leave dates
• Annual-leave hours or minutes
• Record-specific annual-leave rates
• Estimated gross amounts from paid annual leave
• Job names
• Employer names
• Notes
• Dates
• Hours
• Rates
• Pay enhancements
• Other information included in the selected export
Exports are not:
• Official payslips
• Official payroll records
• Official annual-leave records
• Proof of leave entitlement
• Proof of employer approval
• Official holiday-pay calculations
• Legal documents
• Guaranteed proof of pay
They are estimated gross-pay summaries based on your saved WagePal data and the information entered by you.
Privacy Mode, App Lock or on-screen masking may not apply to exported files. When you save, share, email, upload, print or send an export, you are responsible for where it goes and who can access it.
Where available, WagePal may offer Privacy Mode, App Lock, biometric unlock, device-credential unlock, recent-app preview controls, screenshot controls, export protection or delete-data protection.
WagePal does not store your fingerprint, face, PIN, password or pattern. Device unlock prompts are handled by Android and your device.
These controls are designed to reduce casual exposure of sensitive information, including wage, employer, shift and annual-leave information. They do not make WagePal a secure vault.
Security controls may behave differently depending on Android version, device manufacturer, device settings, biometric availability, screen-recording behaviour, recent-app preview behaviour and operating-system limitations.
WagePal aims to use minimal permissions.
Normal shift and annual-leave tracking remain designed to work offline. Internet access is required to purchase WagePal Pro, restore purchases and periodically reverify Pro entitlement status through Google Play and RevenueCat.
WagePal may use Android or device features for:
• Android’s POST_NOTIFICATIONS runtime permission, where required, to display device notifications
• Internet access for Google Play Billing, RevenueCat subscription management, purchase restoration and periodic entitlement verification
• Google Play Billing to display and process WagePal Pro subscription purchases
• The RevenueCat SDK to validate purchases, restore access and manage subscription entitlement status
• Device unlock or biometric prompts, if App Lock is enabled
• File picker or folder picker, if you export or back up data
• Android share sheet, if you share an export or file
• Boot-completed handling, to reschedule eligible local reminders or automatic backups after device restart where available
• Optional profile-photo selection, if you choose a profile image
WagePal does not currently request location, contacts, calendar, microphone, camera or SMS permission for normal shift tracking, annual-leave tracking, billing or notifications.
If future features require new permissions, the app and this Privacy Policy should be updated to explain them.
WagePal includes an optional local notifications and reminders system.
Where Android permission is granted and the operating system permits delivery, WagePal may display normal device notifications, including while the app is closed.
All work-related notification calculations are performed locally on your device using information already saved in WagePal.
WagePal does not use remote push messaging for these notifications. The notification system does not use Firebase Cloud Messaging, a cloud notification database, an advertising SDK or a remote marketing-notification service.
No job, shift, annual-leave, wage, payday, backup or notification-history data is uploaded to WagePal servers for normal notification functionality.
A WagePal account is not required to use notifications.
The Smart Shift Reminder uses a conservative, job-specific pattern calculated locally from your saved shift records.
It may remind you when a usual workday appears to be missing from your saved records.
A locally saved annual-leave record for the same job and date may prevent an unnecessary missing-shift reminder.
This depends on the annual-leave information entered by you. An incomplete, incorrect or deleted annual-leave record may result in a reminder still being shown.
WagePal does not know your actual rota, schedule, employer instructions or whether annual leave was officially approved.
A reminder does not mean that WagePal knows you worked, knows you were on approved leave or knows that a shift was definitely forgotten.
You may choose the time at which this reminder is scheduled.
The Payday Tomorrow reminder uses the selected job’s locally stored pay cycle, payday rule and selected bank-holiday or work calendar.
It may remind you that payday for a job is due tomorrow.
The notification may include the relevant job name. Wage amounts are not displayed in the device notification.
The Highest Pay Cycle notification may congratulate you when a completed pay cycle becomes your highest estimated gross-pay cycle so far.
Where applicable, this estimated-gross calculation may include paid annual-leave estimates within the relevant pay cycle.
This notification only applies when at least two completed pay cycles exist. It does not trigger for the first completed pay cycle.
The notification is based on the WagePal information entered by you. It is not confirmation of actual earnings, official holiday pay or employer payment.
Wage amounts are not displayed in the device notification.
The Backup Completed notification confirms when an automatic local backup has been saved to the Android folder selected by you.
This notification does not mean that WagePal has uploaded the backup to a WagePal server.
If the selected folder belongs to a cloud-storage, file-sync or third-party storage provider, that provider may separately handle or synchronise the saved file according to its own settings and policies.
WagePal may include a local in-app Notification Centre.
Payday Tomorrow, Highest Pay Cycle, Backup Completed and one-time Pro subscription status messages may be retained locally in the Notification Centre with read or unread state.
Smart Shift Reminder may appear as a temporary in-app reminder and may not be retained in the same way.
Only a limited recent notification history is retained locally.
Notification history, read or unread state and local delivery state remain on your device and are excluded from WagePal backup files.
This local history may be cleared when:
• You delete or reset applicable local app data
• You clear WagePal’s data through Android settings
• You uninstall WagePal
• Local data is replaced during a restore
• The app automatically removes older notification records to maintain a limited recent history
WagePal may display limited local announcements in the in-app Notification Centre about newly added features.
The implemented Annual Leave announcement is created and stored locally on your device.
It can be dismissed by you and is intended to be shown only once or for a limited period.
Its delivery and dismissal state remain on your device and are excluded from WagePal backup files.
Local feature announcements are not remote push messages, personalised advertising or marketing based on your personal information.
No wage, shift, job, annual-leave or personal work information is uploaded to create or display these announcements.
WagePal may display one-time local in-app messages confirming:
• WagePal Pro activation
• Subscription renewal cancellation
• WagePal Pro access ending
These messages are generated from trusted subscription status reported through RevenueCat and are stored locally on your device.
They are informational only. They do not create, extend, restore, cancel or determine WagePal Pro entitlement access.
WagePal grants Pro access only when RevenueCat reports a valid active entitlement through a Trusted Entitlements verification result that meets WagePal’s security and freshness checks.
The Subscription Support ID, notification history, local messages, user-interface states and other local notification state cannot independently grant WagePal Pro access.
Notification history remains excluded from WagePal backup files.
WagePal retains limited device-local subscription lifecycle and notification-deduplication state so that an older restored backup cannot replay subscription-status messages that have already been shown.
This lifecycle and deduplication state is not included in the backup file, is not uploaded as part of a backup and does not itself grant WagePal Pro access.
Notification-category preferences may be enabled by default inside WagePal.
Android notification permission is controlled separately by you and the operating system. Enabling a notification category inside WagePal does not override Android permission settings.
You can:
• Disable individual notification categories in WagePal Settings
• Change available reminder times
• Disable all WagePal device notifications through Android settings
• Manage lock-screen notification behaviour through your device settings
• Dismiss local feature announcements where available
WagePal configures device notifications with private lock-screen visibility where Android supports it.
However, the way notifications appear on the lock screen is ultimately controlled by Android, your device manufacturer and your device settings. A job name or other notification wording may still be visible depending on those settings.
Notification delivery is not guaranteed.
Notifications may be delayed, missed, repeated or prevented because of:
• Android notification permission settings
• Battery optimisation or background restrictions
• Device manufacturer behaviour
• Force-stopping the app
• The device being switched off
• Device restart behaviour
• Time-zone or clock changes
• Do Not Disturb settings
• Notification-channel settings
• Operating-system updates
• Other Android or device limitations
WagePal Pro is offered through Monthly and Yearly auto-renewing subscriptions through Google Play.
Google Play is the payment provider and the source of subscription ownership.
Google Play may process purchase, subscription, payment, renewal, cancellation, refund, revocation, restore and entitlement information according to Google’s own policies.
WagePal does not receive or store your full payment-card details. Payment details are handled by Google Play under Google’s applicable terms and privacy practices.
Google Play may provide RevenueCat with limited transaction, receipt or purchase-token information required to validate and manage the subscription.
Internet access is required to:
• Purchase WagePal Pro
• Restore Purchases
• Periodically refresh and reverify WagePal Pro entitlement status
Pending, declined, failed or unverified purchase attempts do not grant new WagePal Pro access.
Expired, refunded, revoked or charged-back entitlements do not grant WagePal Pro access.
Recently verified active WagePal Pro access may continue temporarily while the device is offline for a limited period of up to three days using a trusted local entitlement state.
Uninterrupted offline Pro access is not guaranteed. After the limited offline period, or where verification is no longer sufficiently current, online reverification may be required.
Google Play remains the source of subscription ownership. WagePal grants Pro access only when RevenueCat reports a valid active entitlement through a trusted verification result that meets WagePal’s security and freshness checks.
Google Privacy Policy:
https://policies.google.com/privacy
WagePal uses RevenueCat as its subscription-management and entitlement-verification service provider.
RevenueCat acts as a service provider and processor for WagePal’s subscription system. RevenueCat is not an advertising partner.
WagePal has no WagePal account, email login or password. RevenueCat generates and uses an anonymous technical App User ID to associate purchase and entitlement information with an app installation or customer record.
WagePal displays this anonymous App User ID as the copyable Subscription Support ID in Settings under App & Data for both Free and Pro users.
The Subscription Support ID is used only to help locate the relevant RevenueCat customer record for subscription support or a RevenueCat data-deletion request.
It is not a password, payment credential or secret. It cannot independently purchase, restore, verify or grant WagePal Pro access, and it does not provide access to locally stored jobs, shifts, wages, annual-leave records, notes, exports or backups.
RevenueCat may process limited billing and subscription information, including:
• Purchase history
• Google Play transaction, receipt or purchase-token information
• Product identifiers
• Base-plan identifiers
• Subscription status
• Purchase, renewal, cancellation, refund, revocation and expiry information
• Entitlement status
• Relevant purchase, entitlement and subscription timestamps
RevenueCat may also process limited:
• App information
• Store information
• Locale information
• Currency information
• Device or technical information needed for purchase verification
• Information needed to restore access
• Information needed for fraud or abuse prevention
• Information needed for subscription support
• Subscription and revenue analytics information
Purchase history is processed for app functionality, subscription management and subscription or revenue analytics.
Automatic RevenueCat device-identifier collection and RevenueCat’s optional advertising integrations are not used by WagePal.
RevenueCat uses Trusted Entitlements to provide a cryptographic verification result for entitlement information.
WagePal grants Pro access only when RevenueCat reports a valid active entitlement through a Trusted Entitlements verification result that meets WagePal’s security and freshness checks, including the limited offline period of up to three days described in Section 11.
Pending, failed, unverified, expired, refunded, revoked, charged-back or otherwise inactive purchases do not grant WagePal Pro access.
The Subscription Support ID, local notification state, local user-interface flags and other locally stored display states cannot independently grant WagePal Pro access.
Billing and subscription information exchanged with RevenueCat is encrypted in transit.
RevenueCat does not receive the following WagePal information from the app:
• Jobs
• Shifts
• Employer names
• Wage records
• Hourly rates
• Annual-leave records
• Notes
• Tags
• PDF or CSV exports
• Backups
• Notification history
• Feature-announcement state
• Other locally stored work records
WagePal does not send full payment-card details to RevenueCat.
RevenueCat may retain subscription and purchase data as necessary to validate and operate subscriptions, restore purchases, prevent fraud and abuse, provide support, produce subscription and revenue analytics and comply with legal, Google Play and RevenueCat requirements.
WagePal does not currently use Firebase Authentication, Firestore, Firebase Cloud Functions, Firebase Cloud Messaging or a custom WagePal billing backend.
RevenueCat Privacy Policy:
https://www.revenuecat.com/privacy
WagePal does not currently include a separate general-purpose app analytics SDK, advertising SDK or hidden app-managed log upload.
RevenueCat processes the limited subscription and revenue analytics information described in Section 12. RevenueCat does not receive WagePal work records for this purpose.
If WagePal is installed through Google Play, Google Play and Android may provide technical crash, performance, install, device or app-quality information through Google Play Console, depending on Google’s systems and user or device settings.
This information is intended to help identify app stability and compatibility issues. It should not include your WagePal:
• Shift records
• Annual-leave records
• Wage records
• Employer names
• Notes
• Backups
• Notification history
• Feature-announcement state
• Exports
If WagePal adds a separate crash-reporting, diagnostics, general app analytics or advertising service in the future, this Privacy Policy should be updated to explain what is collected and why.
WagePal is designed to keep normal shift, annual-leave, notification and pay-estimate records on your device.
Billing and subscription information exchanged with Google Play and RevenueCat is encrypted in transit.
WagePal does not receive or store your full payment-card details.
RevenueCat Trusted Entitlements are used to help verify the integrity of subscription-entitlement information before WagePal grants Pro access.
We take reasonable steps to design WagePal in a privacy-conscious way, but no app, device, storage system, email provider, notification system, subscription service, backup file, export file or internet transmission can be guaranteed to be completely secure.
You can help protect your information by:
• Keeping your device locked
• Using a strong device PIN, password, fingerprint or face unlock
• Enabling App Lock where available
• Reviewing your lock-screen notification settings
• Disabling notification previews if you do not want job names or reminder content shown
• Keeping annual-leave and other work information private
• Keeping backups private
• Using Encrypted backups for sensitive information where available
• Choosing a strong backup password
• Keeping exported PDF or CSV files private
• Cropping screenshots before sending them
• Avoiding support emails that include sensitive wage, employer, shift or annual-leave details unless necessary
• Never sending full payment-card details by email
Encrypted backups depend on the password you choose. If you forget the password, WagePal cannot recover the encrypted backup.
You can delete local WagePal data from within the app where available, including annual-leave records and the Delete all local data option in Settings.
Deleting an annual-leave entry removes all dates saved together in that entry and removes their contribution from WagePal’s locally calculated estimated-gross totals.
You can also remove applicable local app data by uninstalling WagePal or clearing app data through Android settings.
Deleting or replacing applicable local app data may also clear:
• Annual-leave records and their contribution to locally calculated estimated-gross totals
• Local notification history
• Notification read or unread state
• Notification scheduling information
• Local notification delivery state
• Local feature-announcement records
• Feature-announcement delivery or dismissal state
• The locally cached anonymous RevenueCat App User ID, displayed as the Subscription Support ID
• The limited trusted local WagePal Pro entitlement state
• Local Pro subscription-status messages
Clearing local app data or uninstalling WagePal does not cancel an active Google Play subscription.
A valid subscription may be recovered using Restore Purchases with the applicable Google Play account and an internet connection.
Deleting local data may be permanent. If you do not have a valid backup, WagePal may not be able to recover it.
Notification history, feature-announcement state and related local state are excluded from WagePal backup files and may therefore not return after a restore.
Backup files, export files, screenshots or shared files that you saved outside WagePal must be deleted separately by you from the location where they were saved or shared.
Support emails already sent to us can be deleted on request where reasonably possible and legally appropriate.
You may contact support@wagepal.co.uk to request deletion of RevenueCat customer data associated with WagePal where deletion is legally and technically available.
To help locate the relevant anonymous RevenueCat customer record, you may be asked to copy and provide the Subscription Support ID displayed in Settings under App & Data.
The Subscription Support ID is not a password, payment credential or secret and cannot independently grant WagePal Pro access.
Deleting RevenueCat customer data does not automatically cancel an active Google Play subscription and does not delete purchase or subscription information retained independently by Google Play.
Information retained by Google Play remains subject to Google’s policies, retention requirements and deletion processes.
Local app data, including annual-leave records and the paid minutes and record-specific hourly rates used to calculate estimated gross amounts, stays on your device until you delete it, clear app data, uninstall WagePal, restore your device, lose access to the device or replace the data by restoring a backup.
Only a limited recent notification history is retained locally. Older notification records may be removed automatically.
Local feature announcements may be retained until they are dismissed, expire, are removed by an app update or are cleared with applicable local app data.
One-time local Pro subscription-status messages may be retained within the limited recent Notification Centre history until they are read, removed or cleared with applicable local app data.
Limited device-local subscription lifecycle and notification-deduplication state may be retained to prevent outdated Pro subscription messages from being replayed after an older backup is restored.
Notification history, read or unread state, delivery state and feature-announcement records may be cleared when applicable local data is reset, cleared or deleted. Subscription notification-deduplication state is not included in backup files and is not overwritten by a WagePal restore where it remains available on the device.
Backup and export files are controlled by you and remain wherever you save, sync, upload, share or store them.
Support emails may be kept for as long as needed to respond, investigate issues, improve the app, keep support records, prevent misuse or meet legal obligations.
Google Play and RevenueCat may retain limited purchase, subscription, entitlement and technical information for as long as necessary to:
• Operate and verify subscriptions
• Restore purchases
• Manage subscription status
• Prevent fraud or abuse
• Provide subscription support
• Maintain subscription and revenue records
• Resolve disputes
• Comply with Google Play, RevenueCat and legal requirements
Information retained independently by Google Play and RevenueCat is also governed by their respective privacy policies and retention practices.
WagePal does not sell your personal data.
WagePal does not use an advertising SDK.
WagePal does not share your local jobs, shifts, annual-leave records, notes, wage records, employer names, hourly rates, notification history, feature-announcement state, backups, exports or pay records with WagePal servers, Google Play or RevenueCat in the current local-first work-record model.
Annual-leave calculations, work-related notification calculations, notification-category settings, feature announcements and Notification Centre records remain on your device.
RevenueCat acts as a subscription-management service provider and processor, not as an advertising partner.
Limited billing, subscription and technical information may be shared or processed as follows:
• Google Play processes purchases, subscriptions, payments, renewals, cancellations, refunds, revocations, restores and subscription ownership
• RevenueCat processes limited billing, subscription, entitlement, store, locale, currency and technical information for verification, restoration, fraud prevention, support and subscription or revenue analytics
• You may choose to provide subscription details or the Subscription Support ID in a support request
• Google Play and RevenueCat may process information required to comply with legal or platform obligations
Other information may be shared or processed only when:
• You choose to export, share, email or back up data
• You choose a third-party app, file manager, email app, cloud folder or storage provider
• Google Play processes installs, diagnostics or app-quality information
• We are legally required to respond to a valid legal request
• It is necessary to protect rights, safety or security, or prevent misuse
WagePal may interact with third-party services or platform features, including:
• Google Play, which processes payments and remains the source of subscription ownership
• RevenueCat, which validates and manages Google Play subscriptions, purchase restoration and WagePal Pro entitlement status
• Android
• Android’s local notification system
• Device biometric or credential unlock
• Android file picker
• Android folder picker
• Android share sheet
• Email apps
• PDF viewers
• CSV viewers
• File managers
• Cloud-storage apps chosen by you
Google Privacy Policy:
https://policies.google.com/privacy
RevenueCat Privacy Policy:
https://www.revenuecat.com/privacy
Those third parties may have their own terms, privacy policies, fees, account requirements, data-retention practices and support processes. WagePal is not responsible for services it does not control.
Robert D, trading as WagePal, is responsible for the processing described in this Privacy Policy and can be contacted at support@wagepal.co.uk.
Depending on the processing involved, WagePal relies on:
• Performance of a contract, including providing, verifying, restoring and managing WagePal Pro
• Legitimate interests in operating WagePal securely, preventing fraud and abuse, providing support, maintaining reliability and understanding subscription performance
• Compliance with legal obligations, including applicable financial, consumer, accounting and regulatory requirements
• Consent where consent is specifically requested or required
Depending on the law that applies to you, you may have rights to request access to, correction of, deletion of, restriction of, objection to or portability of your personal information, and to withdraw consent where processing is based on consent.
To make a request, contact support@wagepal.co.uk. These rights may be limited in some circumstances, including where information must be retained to comply with legal obligations or resolve disputes.
If you are in the United Kingdom and remain concerned about how your personal information is handled, you may complain to the Information Commissioner’s Office:
https://ico.org.uk/make-a-complaint/
WagePal is not directed to children.
WagePal is intended for people managing their own work, shift, annual-leave and pay-estimate records. If you are not old enough to use WagePal or to agree to this Privacy Policy under the laws that apply to you, please do not use WagePal.
WagePal may be available to users in more than one country or region.
Because WagePal is local-first, normal shift, annual-leave, notification and pay-estimate records are designed to stay on your device.
However, if you choose to email support, use Google Play, purchase or restore WagePal Pro, share files or save backups to third-party storage, limited information may be processed by third-party services in other countries according to their own policies and legal requirements.
Google Play and RevenueCat may process limited billing, subscription, entitlement, store, locale, currency and technical information outside your country or region.
RevenueCat states that End User Information may be stored using Amazon Web Services in the United States and that applicable contractual and organisational safeguards are used for international transfers.
This international subscription processing does not include your locally stored jobs, shifts, employer names, wage records, annual-leave records, notes, tags, exports, backups, notification history or other work records from WagePal.
Annual-leave or other work information may be processed by a third-party service in another country only when you deliberately include it in a backup, export, screenshot, support email or file shared through that service.
You can choose how you use WagePal and what information you enter.
You can:
• Use WagePal without a WagePal account
• Use WagePal’s core functionality without purchasing WagePal Pro
• Choose whether to purchase a Monthly or Yearly WagePal Pro subscription
• Manage or cancel a WagePal Pro subscription through Google Play’s Subscription Centre
• Use Restore Purchases to recover a valid entitlement associated with the applicable Google Play account
• Copy and choose whether to share the Subscription Support ID when contacting support
• Contact support@wagepal.co.uk to request deletion of RevenueCat customer data where legally and technically available
• Avoid entering employer names if you prefer
• Avoid adding a first name or profile photo where optional
• Choose whether to record annual leave
• Choose whether an annual-leave entry and all dates saved together in it are recorded as paid or unpaid
• Choose the hours and record-specific rate used for a paid annual-leave estimate
• Edit or delete annual-leave records where available
• Delete local data where available
• Avoid attaching screenshots or files to support emails
• Crop screenshots before sending them
• Choose whether to create exports
• Choose whether to create backups
• Choose where to save backup or export files
• Choose whether to enable App Lock or Privacy Mode where available
• Disable individual notification categories in WagePal Settings
• Change available notification or reminder times
• Deny or revoke Android notification permission
• Disable all WagePal notifications through Android settings
• Change how notifications appear on your lock screen through your device settings
• Dismiss local feature announcements where available
Some app features may not work if you choose not to enter the information needed for those features, do not grant the relevant Android permission or do not have an active, sufficiently current and trusted WagePal Pro entitlement.
We may update this Privacy Policy when WagePal changes, when features are added or removed, when legal requirements change or when Google Play requirements change.
If changes are significant, we will take reasonable steps to make the updated policy available through the app, store listing, website or public Privacy Policy page.
If you continue to use WagePal after this Privacy Policy changes, the updated Privacy Policy will apply to your use of the app.
Questions about this Privacy Policy can be sent to:
support@wagepal.co.uk
You may also use this email address to request deletion of RevenueCat customer data associated with WagePal where legally and technically available.
Please do not include sensitive wage, employer, shift, annual-leave or personal details unless you choose to and it is necessary for your question.
Do not send full payment-card details by email.