Trust Center
Everything a security, privacy, or procurement reviewer needs in one place. If something you need is not here, email team@timestampitapp.com and we will answer directly.
Security
Infrastructure, encryption, access controls, patching, vulnerability reporting, and our compliance posture.
Privacy Policy
What we collect, how it is used, where it is stored, and the rights you have over it.
Subprocessors
Every third party that processes customer data on our behalf, what they handle, and where.
Terms of Service
The license agreement governing use of Timestamp It, including ownership of your content.
Accessibility
Our WCAG conformance target, what we have done, known gaps, and how to report a barrier.
Availability & Support
Service availability, backups, support channels, and release cadence.
At a glance
| Vendor | ShabzCo, LLC — a company incorporated in the United States |
|---|---|
| Product | Timestamp It — a mobile app for timestamped, location-stamped photo records |
| Delivery model | SaaS. Nothing is installed on customer systems and no network connection to customer infrastructure is required. |
| Data location | United States only — AWS US East (Ohio), us-east-2 |
| Data processing | United States only |
| Sells personal data | No |
| Payment card data | Never received or stored — purchases run through the Apple App Store and Google Play |
| Uses AI | No |
| Trains AI on customer data | No |
Regulated data
Timestamp It is a general-purpose photo documentation tool. It is not designed, tested, or offered for use with regulated data, and we do not recommend using it for that purpose. Specifically:
- Protected Health Information (PHI) / HIPAA: We are not a HIPAA business associate and do not sign Business Associate Agreements. Do not store PHI in Timestamp It.
- Criminal Justice Information (CJI) / CJIS: We are not CJIS compliant and our staff have not undergone CJIS background screening. Do not store CJI in Timestamp It.
- Payment card data (PCI-DSS): Out of scope — we never receive card data. All purchases are handled by the Apple App Store or Google Play.
- Personally Identifiable Information (PII): Yes, in limited form — account email address and display name, plus any PII a user chooses to place in photos, captions, or notes. See the Privacy Policy.
Customers remain responsible for what they choose to capture and upload.
Contact
Security questions, vulnerability reports, procurement paperwork, and data requests all go to team@timestampitapp.com.