Legal
Last updated: April 19, 2026
Chronos (“we”, “us”) provides a workforce platform for learning, hiring, and compliance. This policy explains what data we collect, how we use it, and the rights you have over it.
For hosted customers we use: AWS (hosting), Postmark / SES (email), Stripe / Paystack (billing), Anthropic (AI assessment scoring, subject to DPA). Self-hosted customers can configure any or none of these.
We retain customer data for the life of the subscription. On termination, we delete all customer data within 30 days unless retention is required by law. Self-hosted deployments retain according to customer policy.
Individuals covered by GDPR, UK GDPR, CCPA, or similar laws can request access, correction, export, or deletion of their data at any time via info@itschronos.com.
TLS in transit. At-rest encryption on databases and backups. Role-based access controls. SOC 2 Type II in progress. Incident response is coordinated with the customer's designated security contact.
Chronos is not directed to children under 13. Programs serving minors (apprenticeship prep, youth workforce programs) require explicit guardian consent captured at enrollment.
Material changes to this policy will be emailed to account administrators at least 30 days before they take effect.
Questions about privacy: info@itschronos.com.