1. Introduction
TradePilot ("we", "our", or "us") operates the TradePilot mobile application and website (tradepilot.au). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service.
2. Information We Collect
We collect information that you provide directly to us, including:
- Account information (name, email address, password)
- Business information (business name, ABN, address, phone number)
- Customer data (names, email addresses, phone numbers, addresses)
- Job and scheduling data (job details, dates, times, locations)
- Financial data (invoices, quotes, expenses, payment information)
- Photos and documents uploaded to the service
- Location data (when GPS tracking is enabled by you)
- Device information and push notification tokens
3. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve our services
- Process transactions and send related information
- Send push notifications about job updates and reminders
- Send email campaigns and marketing communications (with your consent)
- Provide customer support
- Monitor and analyse usage trends
- Integrate with third-party accounting software (Xero, QuickBooks) at your request
4. Location Data
We collect location data only when you explicitly enable GPS tracking for time tracking and geofencing features. You can disable location tracking at any time through the app settings or your device settings. Location data is used solely to track job site attendance and travel time.
5. Push Notifications
We send push notifications for job reminders, schedule changes, payment updates, and other service-related alerts. You can opt out of push notifications at any time through your device settings.
6. Open Banking (Basiq Integration)
TradePilot offers an optional Money Manager feature that connects to your bank accounts via Basiq, a Consumer Data Right (CDR) accredited data recipient. When you choose to connect your bank accounts:
What We Collect
- Bank account details (account name, type, BSB, masked account number)
- Account balances and available funds
- Transaction history (amounts, dates, descriptions, merchant details)
How We Use This Data
- Displaying your account balances and financial overview in the Money Manager dashboard
- Tracking income and expenses across your business accounts
- Matching bank transactions to invoices and payments
- Monitoring progress towards your savings goals
- Generating AI-powered cash flow recommendations, transfer suggestions, and bill payment alerts
Security and Consent
- We never store your bank login credentials. Authentication is handled entirely by Basiq and your bank through the secure CDR consent flow
- Bank data is only accessed after you provide explicit consent through your bank's authorisation process
- You can disconnect your bank accounts and revoke access at any time through the Money Manager settings
- Basiq is accredited under the Australian Consumer Data Right (CDR) regime and complies with all CDR data standards and privacy safeguards
- Bank data is encrypted in transit and at rest, and is only used for the purposes described above
7. Data Sharing
We may share your information with:
- Service providers — Email delivery (Resend), payment processing (Stripe), SMS (Twilio), hosting (Vercel), database (Supabase)
- Open banking — Basiq (only when you connect your bank accounts via Money Manager)
- Accounting integrations — Xero, QuickBooks, MYOB (only when you connect these services)
- Your customers — When you send quotes, invoices, or booking confirmations
We do not sell your personal information to third parties.
8. Data Security
We implement appropriate technical and organisational measures to protect your data, including encryption in transit (HTTPS/TLS), encrypted database connections, and secure authentication via NextAuth.js. However, no method of transmission over the Internet is 100% secure.
9. Data Retention
We retain your data for as long as your account is active or as needed to provide our services. You can request deletion of your account and associated data at any time through the app settings.
10. Your Rights
Under the Australian Privacy Act, you have the right to:
- Access your personal information
- Correct inaccurate information
- Request deletion of your data
- Opt out of marketing communications
- Lodge a complaint with the Office of the Australian Information Commissioner (OAIC)
11. Marketing Emails
If you receive marketing emails from a TradePilot user, you can unsubscribe at any time using the unsubscribe link in the email footer. Unsubscribing will prevent future marketing emails but will not affect transactional emails such as invoices and quotes.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new policy on this page and updating the "Last updated" date.
13. Contact Us
If you have any questions about this Privacy Policy, please contact us at support@tradepilot.au