Make monday.com work with Microsoft 365 & SharePoint →
TiMonE logo

TiMonE

Rego Consulting

277 installs, since June 19, 2023.   11 installs/month.   Updated March 3, 2025.

Free plan available No touch
Gallery image Gallery image Gallery image

Rego's TIMONE Timesheet app enables customers to use timesheets and provide insights on monday.com

TiMonE enables enterprise customers to use timesheets and provides insights within monday.com to monitor and report easily through native functionality. 



TiMonE enables you to:

• Engage with a simple app that provides a timesheet entry/user-friendly UI 

• Enable time tracking capabilities in monday.com, working with existing boards and items.

• Leverage existing monday.com reports, and monitor work in real-time

• Use native functionality to control access following monday.com structure through Workspaces, Dashboards, Boards, and Items 

• Track time across items and subitems through multiple users

• Leverage existing monday.com reporting capabilities

Security & Compliance

Security

Does the developer periodically perform penetration testing?

Not answered

Does the developer have a dedicated security and privacy point of contact for such issues or questions?

Not answered

Does the app restrict redirects and forwards only to approved destinations, or show a warning when redirecting to potentially untrusted content?

Yes
We don't host a UI externally and the widget performs no redirects, this is not applicable

Does the app protect against mass parameter assignment attacks?

Yes
All input is sanitized prior to submission and all actions are done through monday.com API, further restricting the attack surface Along with the client side code being minified to avoid access to the source code

Does the app perform encoding and sanitization on all user supplied parameters to protect against Cross-Site Scripting?

Yes
Yes, all user input is sanitized

Does the developer protect all state-changing actions against Cross-Site Request Forgery (CSRF)?

Yes
We have no externally hosted components so access to the app is limited to monday.com UI and authentication. In parallel all operations are validated and sent through monday.com which further protects the session and any cross-site forgery.

Does the developer have mechanisms to notify monday.com in case of a security breach?

Yes
Yes, although the app doesn't store or process data externally and all data is stored within monday.com. If any customer data is breached Rego Consulting will notify applicable parties.

Does this developer have a process for installing application-level updates and security patches for the service (such as software packages and databases)?

No
We don't have external/third party dependencies or external hosting, this is not applicable

Compliance

Is the app certified with the information security standard ISO/IEC 27001:2022?

Not answered

Is the app compliant with the Health Insurance Portability and Accountability Act (HIPAA)?

Not answered

Is the app certified with System and Organization Controls (SOC 2 or SOC 3)?

Not answered

Is the app compliant with the General Data Protection Regulation (GDPR)?

Not answered

Data

Does the app send any data outside of monday.com? If yes, indicate whether the data is customer-submitted (e.g., board names, item names, doc content) or non-customer-submitted (e.g., account ID, board ID, user ID).

Not answered

Where does the app store logs data?

Not answered

Where does the app store the app data?

Not answered

Does the developer ensure application logs do not contain secrets or personally-identifiable information (PII)?

Yes
All messages are stored within monday.com boards, the messages contain no PII data or session information.

Is customer data segregated from the data of other customers (for example logically or physically)?

Yes
We store data within monday.com, data is not sent or processed externally

Privacy

Does the developer enforce multi-factor authentication on employees access to systems which may process customer data?

Yes
Rego Consulting enforces MFA to all systems within the company

Does the developer protect access to customer data based on the principle of least privilege?

Yes
Customer information is restricted based on role and line of business membership. All information is stored within secured portals that require authentication.

Reviews

No reviews yet.

Installation history

We have data for December 28, 2024 onwards only. Collected sometime after 00:00 UTC daily.

ID: 10000243App ID: 10025567Listing updated: October 13, 2024