• How it Works
      A brief overview of Timetastic's features
    • Absence management software
      Keeping track of time off work, simplified
    • Staff leave planner
      Manage annual leave on desktop or mobile
  • Pricing
  • About
    • Help Centre
      The user manual, how to use Timetastic
    • Success Stories
      Our customers tell us what makes them tick
    • Blog
      Exploring workplace culture and time off
    • Product Updates
      See the latest features we’ve released
    • Contact Us
      Get support from our friendly team
  • Log In
Pricing & free trial
Log inPricing & free trial

Reporting security issues

Keeping customer data safe and secure is a huge responsibility and our top priority. We work hard to protect against the latest threats, so your input and feedback on our security is always appreciated.

Security researchers

We are happy to work with security researchers, you're an important part of keeping the internet a safe place to work. If you discover a flaw in our security that could impact Timetastic or our customers then please let us know by contacting our support team.

The following security issues are currently not in scope (please don’t report them):

  • Volumetric vulnerabilities (i.e. simply overwhelming our service with a high volume of requests)
  • TLS configuration weaknesses (e.g. "weak" ciphersuite support, TLS1.0 support, sweet32 etc.)
  • Reports of non-exploitable vulnerabilities.
  • Reports indicating that our services do not fully align with "best practice" e.g. missing security headers (CSP, x-frame-options, x-prevent-xss etc) or suboptimal email related configuration (SPF, DMARC etc)

Dealing with security reports

We read all reports and will get back to you as soon as we can, usually within 24 hours.

We’ll investigate the issue and determine how it impacts Timetastic. We won’t disclose issues until our investigation is finished, but we’ll work with you to ensure we fully understand the issue.

Once the issue is resolved, we’ll post a security update on our changelog and, if you wish, a thanks and credit for the discovery.

Yours for free
  • Staff absence template
  • Annual leave policy template
  • Holiday calculator
Timetastic
  • What's new?
  • API
  • Features
  • Affiliate program
  • System status
Legal
  • Terms and security
  • Cookie policy
  • Privacy policy
  • Modern slavery statement
1% for the Planet
© Copyright 2012-2025 Timetastic Ltd. Company Reg No. 09236149