Security & privacy

Lightweight by design. Easy for IT to review.

Halftime is a small web app for daily team games. It should not need a long security conversation, but your IT team still deserves clear answers.

01PostureWhat it is, and isn't

Browser-based

Halftime runs in the browser. There is no desktop agent, browser extension, VPN profile, or device-level access.

Encrypted transport

Traffic is served over HTTPS/TLS. We use managed infrastructure with encryption at rest for production data stores.

Limited data

Halftime is built around account identity, team membership, game activity, scores, and optional profile details.

No sensitive system access

Halftime does not access files, clipboards, screens, calendars, microphones, cameras, or device telemetry.

02IT notesFor allowlisting and review

The practical facts procurement usually asks for.

Halftime runs on established managed infrastructure and keeps the product surface intentionally narrow: browser access, HTTPS, limited account data, and no device-level permissions.

Primary domain

halftime.coffee

Ports

443 HTTPS only

Application type

Web SaaS

Typical category

Business / Productivity / Team engagement

Desktop install

None

Browser extension

None

Device access

None

03DataPlain English

We collect what the product needs to run the team ritual.

That includes account identity, team membership, game participation, scores, and product settings. Some features may include optional profile details or short answers submitted inside Halftime.

We do not sell customer data, and we do not use third-party ad networks to track people across the web. Full policy language lives in the privacy policy.

Contact

For security, privacy, or procurement questions, email us and include the review details your team needs.

Email the team
Security & Privacy | Halftime | Halftime