Plain-language summary: We collect the minimum data necessary to provide the Services. We never sell your data, and we never use it for advertising. You can request access to or deletion of your data at any time.
1. Overview
Traxivo, Inc. (“Traxivo”, “we”, “us”, or “our”) operates the Traxivo platform (the “Services”), a software-as-a-service application provided to business customers. This Privacy Policy explains how we collect, use, share, and protect information in connection with the Services.
This policy applies to: (a) customers and their authorised users who access the Services; (b) visitors to our website at traxivo.io; and (c) individuals whose data may be processed as part of delivering the Services to our customers.
By using the Services, you agree to the collection and use of information in accordance with this policy. If you do not agree, please discontinue use of the Services.
2. Information We Collect
2.1 Account and Registration Information
When you create an account, we collect information such as your name, email address, company name, industry, company size, and payment information. This information is necessary to create and manage your account and to provide the Services.
2.2 Data from Connected Services
If you choose to connect third-party services to your account, we access only the data needed to provide the Services to you, using the minimum permissions required (typically read-only). You choose which services to connect, and you can disconnect them at any time from your account settings or from within the third-party service.
Where we process data from a connected service, we retain only the limited, structured information required to provide the Services. We do not retain raw message content, files, or source material beyond what is necessary to deliver the Services to you.
2.3 Usage Data
We collect information about how you interact with the Services, including pages viewed, features used, search queries within the platform, actions taken, and session duration. This data is used to improve the Services and understand usage patterns.
2.4 Technical Data
We automatically collect certain technical information when you access the Services, including IP address, browser type and version, operating system, device identifiers, referring URLs, and timestamps.
2.5 Communications
If you contact us directly (via email, a contact form, or support channels), we collect and store the content of those communications and any information you choose to provide.
3. How We Use Information
We use the information we collect for the following purposes:
| Purpose | Categories of data used |
|---|---|
| Providing and operating the Services | Account data, connected-service data, usage data |
| Authentication and access control | Account data, technical data |
| Billing and payment processing | Account data, usage data |
| Customer support | Account data, communications |
| Security and fraud prevention | Technical data, usage data |
| Product improvement | Aggregated, anonymised usage data |
| Legal compliance | As required by applicable law |
We do not sell Customer Data, and we do not use Customer Data for advertising.
4. Legal Basis for Processing (GDPR)
For customers and users in the European Economic Area, United Kingdom, or Switzerland, we process personal data on the following legal bases:
- Contract performance: Processing necessary to provide the Services you have subscribed to.
- Legitimate interests: Processing for security, fraud prevention, and product improvement, where our interests are balanced against your rights.
- Legal obligation: Processing required to comply with applicable laws and regulations.
- Consent: Where we rely on consent (such as optional marketing communications), you may withdraw consent at any time.
5. Data Sharing & Disclosure
5.1 Service Providers
We share information with trusted third-party service providers who assist us in operating the Services, including cloud infrastructure providers (AWS), payment processors, analytics tools, and customer communication platforms. All service providers are bound by data processing agreements and may only process data on our behalf and in accordance with our instructions.
5.2 Aggregated Data
We may use aggregated, de-identified data that cannot reasonably be used to identify you or any individual to operate, analyse, and improve the Services. Aggregated Data is never shared in a form that identifies you, and no individual customer’s data is ever shared with or made visible to another customer.
5.3 Legal Requirements
We may disclose information to government authorities, law enforcement, or other parties where required by applicable law, court order, or regulatory process. We will notify you of such disclosure to the extent permitted by law.
5.4 Business Transfers
In the event of a merger, acquisition, restructuring, or sale of all or a portion of our assets, Customer Data may be transferred to the acquiring entity, subject to the same privacy protections described in this policy. We will provide notice of such a transfer.
5.5 No Sale of Data
Traxivo does not sell, rent, or trade Customer Data or personal information to third parties for their own marketing or commercial purposes.
6. Data Security
Traxivo implements reasonable and appropriate technical and organisational security measures to protect Customer Data against unauthorised access, disclosure, alteration, or destruction. These measures include:
- Encryption in transit (TLS 1.2+) for all data transmitted between your systems and the Traxivo platform;
- Encryption at rest for all stored Customer Data;
- Strict per-tenant data isolation at the infrastructure and application layers;
- Role-based access controls limiting Traxivo staff access to Customer Data;
- Regular security assessments and penetration testing;
- Incident response procedures and breach notification protocols.
No system is completely secure. While we work hard to protect your information, we cannot guarantee the absolute security of data transmitted over the internet. If you believe your account has been compromised, contact us immediately at corporate@traxivo.io.
7. Data Retention
We retain Customer Data for the duration of your active Subscription. Upon termination or expiry:
- Customer Data is retained for a 30-day grace period during which you may export your data;
- After the grace period, Customer Data is deleted from production systems within 60 days;
- Backup copies may persist for up to 90 days before being overwritten or deleted;
- Aggregated, anonymised data derived from Customer Data may be retained indefinitely as it cannot be used to identify you.
Account information and billing records may be retained for up to 7 years to comply with applicable legal and financial obligations.
8. Your Rights
Depending on your location, you may have the following rights with respect to your personal data:
| Right | Description |
|---|---|
| Access | Request a copy of the personal data we hold about you. |
| Rectification | Request correction of inaccurate or incomplete personal data. |
| Erasure | Request deletion of your personal data, subject to legal retention obligations. |
| Portability | Request a machine-readable copy of your data for transfer to another service. |
| Restriction | Request that we restrict processing of your data in certain circumstances. |
| Objection | Object to processing based on legitimate interests where your rights override those interests. |
| Opt-out | Opt out of marketing communications at any time via the unsubscribe link in any email or by contacting us. |
To exercise any of these rights, contact us at corporate@traxivo.io. We will respond within 30 days. We may need to verify your identity before fulfilling a request. You also have the right to lodge a complaint with your local supervisory authority.
9. International Data Transfers
Traxivo is headquartered in the United States. If you access the Services from outside the United States, your data may be transferred to, stored, and processed in the United States or other countries where our service providers operate.
For transfers from the EEA, UK, or Switzerland to the United States, Traxivo relies on Standard Contractual Clauses (“SCCs”) approved by the European Commission as the transfer mechanism. You may request a copy of our SCCs by contacting corporate@traxivo.io.
10. Cookies & Tracking Technologies
We use cookies and similar tracking technologies on our website and within the platform for the following purposes:
| Cookie Type | Purpose | Can be declined? |
|---|---|---|
| Essential | Authentication, session management, security. Required for the platform to function. | No |
| Functional | User preferences, interface settings, remembered choices. | Yes |
| Analytics | Aggregate usage patterns to improve the platform. No personal identifiers shared externally. | Yes |
You can control cookie settings through your browser preferences. Note that disabling essential cookies will impair platform functionality. We do not use cookies for advertising or behavioural targeting.
11. Children
The Services are intended for business use by individuals aged 18 and over. We do not knowingly collect personal data from individuals under 18. If we become aware that we have collected data from a minor, we will delete it promptly. If you believe a minor has provided us with personal data, please contact us at corporate@traxivo.io.
12. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify you by email and by posting a notice in the platform at least 30 days before changes take effect. The “Effective date” at the top of this policy indicates when it was last revised.
Your continued use of the Services after the effective date of any revision constitutes your acceptance of the updated policy.
13. Contact & Data Controller
Traxivo, Inc. is the data controller for personal data processed in connection with the Services.
Traxivo, Inc.
Privacy Team
For privacy inquiries, data subject requests, or to exercise your rights:
Email: corporate@traxivo.io
For security concerns: corporate@traxivo.io