Privacy Policy
Last updated: 2024-07-26
This Privacy Policy explains how we collect and process personal data when you use our website and operational platform (the “Platform”).
We are committed to protecting personal data and complying with applicable data protection laws, including the EU General Data Protection Regulation (GDPR).
1. Scope
This Privacy Policy applies to:
- Visitors of our website
- Business users of the Platform
- Authorized representatives of our customers
The Platform is designed for business-to-business (B2B) operational use.
The Platform does not process recipient-level consumer data such as private names, home addresses, phone numbers or personal delivery details.
2. Personal Data We Process
We process limited categories of personal data:
A. Account & Business Contact Information
- Name
- Company name
- Business email address
- Business phone number
- Job title
B. Technical & Usage Data
- IP address
- Login timestamps
- Device/browser type
- Usage logs
- Security logs
C. Operational Shipment Data (Non-Personal)
The Platform processes shipment identifiers such as:
- AWB numbers
- Shipment references
- Flight numbers
- Status events
These data elements do not contain personal recipient information.
3. Purpose of Processing
We process personal data for:
- Providing access to the Platform
- User authentication and account management
- Operational coordination of shipments
- Platform security and fraud prevention
- Improving performance and reliability
- Fulfilling contractual obligations
We do not sell personal data.
4. Legal Basis
We process personal data based on:
- Performance of a contract
- Legitimate interest (platform security and improvement)
- Legal obligations where applicable
5. Data Sharing
We may share limited data with:
- Cloud hosting providers
- IT service providers
- Regulatory authorities where required by law
Operational shipment identifiers may be exchanged with airlines, handlers or logistics partners as part of the service.
We do not share personal data for marketing purposes.
6. International Transfers
If data is transferred outside the EU/EEA, appropriate safeguards such as Standard Contractual Clauses will be implemented where required.
7. Data Retention
We retain:
- Account data for the duration of the customer relationship
- Technical logs for security and audit purposes
- Operational shipment identifiers as required for contractual and regulatory compliance
Data is deleted or anonymized when no longer necessary.
8. Security Measures
We implement appropriate technical and organizational measures, including:
- Role-based access control
- Encrypted communication (HTTPS)
- Secure hosting infrastructure
- Logging and monitoring
9. User Rights
Business users may request:
- Access to their personal data
- Correction of inaccurate data
- Deletion where applicable
- Restriction of processing
Requests can be submitted to: privacy@tollit.global
10. Cookies
Our website may use cookies necessary for functionality and analytics.
A separate Cookie Policy may apply.
11. Updates
We may update this Privacy Policy from time to time. The latest version will always be available on our website.