מדיניות פרטיות
בתוקף מ־2026-09-22
העמוד הזה מתאר איזה מידע נשמר ב-SetShifts, למה הוא נשמר, אצל
מי הוא יושב, ומה אפשר לעשות איתו. הוא כתוב כדי שיהיה אפשר לקרוא
אותו עד הסוף.
מי אנחנו
SetShifts היא שירות לשיבוץ משמרות, המופעל על ידי
[LEGAL_ENTITY], [LEGAL_ADDRESS]. לכל שאלה בנושא פרטיות:
support@setshifts.com. אדם עונה
תוך 48 שעות.
שני סוגי מידע, ושתי אחריויות שונות
ההבחנה הזו קובעת את כל השאר:
- המידע שלך כלקוח – שם העסק, השם והאימייל של
מי שפתח את החשבון, ומצב המנוי. את המידע הזה אנחנו קובעים ומנהלים,
ואנחנו האחראים עליו.
- המידע על העובדים שלך – שמות, בקשות לימי
חופש, שיבוצים. את המידע הזה אתה מזין ואתה קובע מה עושים
בו. אנחנו מחזיקים אותו בשבילך ופועלים לפי ההוראות שלך בלבד. במונחי
הרגולציה: אתה בעל השליטה (controller) ואנחנו המעבד (processor).
לכן עובד שרוצה לדעת מה נשמר עליו, לתקן או למחוק – פונה קודם
למעסיק שלו. אם פנייה כזו מגיעה אלינו ישירות, נעביר אותה למעסיק
ולא נפעל על דעת עצמנו.
איזה מידע נשמר
| מה | למה |
| שם העסק, תוכנית ומצב המנוי | כדי לתת את השירות ולחייב עליו |
| לכל משתמש: אימייל, שם ותפקיד | התחברות והרשאות |
| כרטיסי עובדים: שם, סניפים, סוגי משמרות, מכסה שבועית והערה חופשית | הבסיס לשיבוץ |
| בקשות העובדים: יום או משמרת, סטטוס אישור, סיבה אופציונלית שהעובד כתב, והערת מנהל | כדי שהבקשות ישפיעו על הסידור ויהיה תיעוד להחלטה |
| הסידורים עצמם, לכל שבוע | זה המוצר |
| קריאות שירות שנפתחו מול התמיכה | כדי לענות ולתקן |
| מצב החיוב: תוכנית, תאריך תוקף, האם תשלום נכשל | ניהול המנוי |
העובד כותב סיבה לבקשה רק אם הוא בוחר לכתוב. השדה חופשי, ולכן
כדאי להנחות את הצוות לא להזין בו מידע רפואי או אישי מעבר לנדרש.
מה איננו אוספים
- אין קובצי Cookie – לא שלנו ולא של אף אחד אחר.
הדפדפן שומר מקומית את אסימון ההתחברות ואת העדפות התצוגה (שפה,
נעילת עריכה), וזה הכל.
- אין כלי אנליטיקה ואין פיקסלים – לא Google
Analytics, לא רשתות חברתיות, לא רשתות פרסום. אין באתר אף סקריפט
של צד שלישי למעקב.
- אין פרטי אמצעי תשלום – מספרי כרטיס נמסרים
ישירות לספק הסליקה ואינם עוברים בשרתים שלנו ואינם נשמרים בהם.
- אין מיקום, אין שעון נוכחות ואין מעקב אחרי עובדים.
- איננו מוכרים מידע ואיננו משתפים אותו למטרות שיווק
– של אף אחד.
אצל מי המידע יושב
אנחנו לא מפעילים שרתים משלנו. אלה הספקים, ומה כל אחד מהם רואה:
| ספק | לְמה | מה הוא מחזיק |
| Supabase | בסיס הנתונים וההתחברות | את כל המידע שבטבלה למעלה |
| Vercel | אירוח האתר והפעולות בשרת | תעבורה ויומני בקשות |
| Resend | מיילים של המערכת (אישור כתובת, הזמנה, איפוס סיסמה) | כתובות אימייל ותוכן המיילים האלה |
| [PAYMENT_PROVIDER] | חיוב המנוי | פרטי אמצעי התשלום ופרטי החיוב |
הנתונים מאוחסנים בשרתי Supabase באזור [DATA_REGION].
כמה זמן
המידע נשמר כל זמן שהחשבון קיים. אחרי סגירת חשבון הוא נמחק תוך
30 יום, למעט מה שאנחנו חייבים לשמור לפי חוק (למשל מסמכי חיוב).
גיבויים מתגלגלים נמחקים במחזור הרגיל שלהם, ולא יותר מ-30 יום
אחרי המחיקה.
הנתונים שלך – שלך
- ייצוא בכל רגע: בלשונית ההגדרות יש
ייצוא כל הנתונים (JSON). הקובץ כולל את כל ההגדרות,
העובדים, הסניפים והשבועות. אין צורך לבקש ואין צורך לחכות. אפשר
גם לייצא כל סידור לאקסל או ל-CSV.
- מחיקה: בקשה מכתובת האימייל של בעל החשבון אל
support@setshifts.com – ואנחנו
מוחקים את החשבון ואת כל הנתונים תוך 14 יום, ומאשרים בכתב. כדאי
לייצא לפני כן: אחרי המחיקה אין לנו מה להחזיר.
- תיקון: כל נתון במערכת ניתן לעריכה על ידי
מנהל, בלי לפנות אלינו.
אבטחה
איך המידע מוגן, ומה הגבולות של ההגנה הזו, מפורט בעמוד
האבטחה. אם מצאת בעיית אבטחה, אנחנו רוצים
לשמוע: support@setshifts.com.
שינויים
אם נעדכן את המדיניות, נשנה את התאריך למעלה, ובשינוי מהותי נודיע
במייל לבעלי החשבונות לפני שהשינוי נכנס לתוקף.
Privacy policy
Effective 2026-09-22
This page explains what SetShifts stores, why, who holds it, and
what you can do with it. It is written to be read to the end.
Who we are
SetShifts is a shift-scheduling service operated by
[LEGAL_ENTITY], [LEGAL_ADDRESS]. For any privacy question:
support@setshifts.com. A person
replies within 48 hours.
Two kinds of data, two different responsibilities
This distinction decides everything else:
- Your data as a customer – your business name,
the name and email of whoever opened the account, and the state of
the subscription. We decide and manage this, and we are responsible
for it.
- Data about your staff – names, time-off
requests, assignments. You enter it and you decide what
happens to it. We hold it for you and act only on your
instructions. In regulatory terms: you are the controller and we
are the processor.
So a member of staff who wants to know what is stored about them,
or to correct or delete it, asks their employer first. If such a
request reaches us directly, we pass it to the employer rather than
acting on our own.
What we store
| What | Why |
| Business name, plan and subscription state | To provide the service and bill for it |
| For each user: email, name and role | Sign-in and permissions |
| Staff cards: name, locations, shift types, weekly limit and a free-text note | The basis for scheduling |
| Availability requests: the day or shift, approval status, an optional reason the person wrote, and a manager note | So requests affect the schedule and the decision is on record |
| The schedules themselves, per week | That is the product |
| Support tickets you open | To answer and fix them |
| Billing state: plan, valid-until date, whether a payment failed | Running the subscription |
A reason for a request is written only if the person chooses to
write one. The field is free text, so it is worth telling your team
not to put medical or personal details in it.
What we do not collect
- No cookies – not ours and not anyone else's.
The browser keeps your sign-in token and display preferences
(language, editing lock) locally, and that is all.
- No analytics and no pixels – no Google
Analytics, no social networks, no ad networks. There is not a
single third-party tracking script on the site.
- No payment details – card numbers go straight
to the payment provider. They never pass through our servers and
are not stored there.
- No location, no time clock and no staff
monitoring.
- We do not sell data and we do not share it for
marketing – anyone's.
Who holds the data
We do not run our own servers. These are the providers, and what
each one sees:
| Provider | For | What it holds |
| Supabase | Database and authentication | Everything in the table above |
| Vercel | Hosting the site and server functions | Traffic and request logs |
| Resend | System email (address confirmation, invitations, password resets) | Email addresses and the contents of those emails |
| [PAYMENT_PROVIDER] | Subscription billing | Payment details and billing records |
Data is stored on Supabase servers in the [DATA_REGION] region.
For how long
Data is kept while the account exists. After an account is closed
it is deleted within 30 days, except for what we must keep by law
(billing records, for instance). Rolling backups expire on their own
cycle, no later than 30 days after deletion.
Your data is yours
- Export at any time: the Settings tab has
Export all data (JSON). The file contains every setting,
person, location and week. No request and no waiting. Any schedule
can also be exported to Excel or CSV.
- Deletion: a request from the account owner's
email address to
support@setshifts.com – and we
delete the account and all its data within 14 days, and confirm in
writing. Export first: once it is deleted we have nothing to give
back.
- Correction: every value in the system can be
edited by a manager, without asking us.
Security
How the data is protected, and the limits of that protection, are
set out on the security page. If you found a
security problem, we want to hear about it:
support@setshifts.com.
Changes
If we update this policy we change the date above, and for a
material change we email account owners before it takes effect.