Security & Trust
Built for teams that care about security
Halftime is a lightweight web app — no desktop install, no browser extension, no device access. Here's everything your IT team needs to know.
Hosted on trusted infrastructure
Halftime runs on Vercel (SOC 2 Type II), with data stored in Neon PostgreSQL (SOC 2 Type II) and assets on Cloudflare R2.
Encrypted in transit and at rest
All traffic is served over HTTPS/TLS 1.3. Database connections are encrypted. Data is encrypted at rest using AES-256.
Minimal data collection
We store your name, email, and game scores. No keylogging, no screen recording, no file access, no browser history. That's it.
Privacy-respecting analytics
Halftime uses minimal, privacy-respecting analytics to improve the product. We do not sell data or use third-party ad networks to track you across the web.
Authentication via industry standards
Sign-in is handled through Google OAuth, Microsoft OAuth, or magic link email. We never store passwords.
Clear legal policies
Our Privacy Policy and Terms of Service are written in plain language. No surprises.
For IT administrators
If your organization uses a web filter or proxy, you may need to allowlist the following domain:
Halftime is a team engagement platform used by employees to take short social breaks during the workday. It is a standard web application with no desktop agent, browser extension, or system-level access.
Category: Business & Productivity / SaaS
Ports: 443 (HTTPS only)
Data processed: User name, email, game scores, team membership
No sensitive data: No file access, no clipboard, no screen capture, no device telemetry
Questions? Email hello@halftime.coffee and we'll get back to you within a business day.