Privacy Policy

Last updated: 2024-07-26

This Privacy Policy explains how we collect and process personal data when you use our website and operational platform (the “Platform”).

We are committed to protecting personal data and complying with applicable data protection laws, including the EU General Data Protection Regulation (GDPR).

1. Scope

This Privacy Policy applies to:

  • Visitors of our website
  • Business users of the Platform
  • Authorized representatives of our customers

The Platform is designed for business-to-business (B2B) operational use.

The Platform does not process recipient-level consumer data such as private names, home addresses, phone numbers or personal delivery details.

2. Personal Data We Process

We process limited categories of personal data:

A. Account & Business Contact Information

  • Name
  • Company name
  • Business email address
  • Business phone number
  • Job title

B. Technical & Usage Data

  • IP address
  • Login timestamps
  • Device/browser type
  • Usage logs
  • Security logs

C. Operational Shipment Data (Non-Personal)

The Platform processes shipment identifiers such as:

  • AWB numbers
  • Shipment references
  • Flight numbers
  • Status events

These data elements do not contain personal recipient information.

3. Purpose of Processing

We process personal data for:

  • Providing access to the Platform
  • User authentication and account management
  • Operational coordination of shipments
  • Platform security and fraud prevention
  • Improving performance and reliability
  • Fulfilling contractual obligations

We do not sell personal data.

4. Legal Basis

We process personal data based on:

  • Performance of a contract
  • Legitimate interest (platform security and improvement)
  • Legal obligations where applicable

5. Data Sharing

We may share limited data with:

  • Cloud hosting providers
  • IT service providers
  • Regulatory authorities where required by law

Operational shipment identifiers may be exchanged with airlines, handlers or logistics partners as part of the service.

We do not share personal data for marketing purposes.

6. International Transfers

If data is transferred outside the EU/EEA, appropriate safeguards such as Standard Contractual Clauses will be implemented where required.

7. Data Retention

We retain:

  • Account data for the duration of the customer relationship
  • Technical logs for security and audit purposes
  • Operational shipment identifiers as required for contractual and regulatory compliance

Data is deleted or anonymized when no longer necessary.

8. Security Measures

We implement appropriate technical and organizational measures, including:

  • Role-based access control
  • Encrypted communication (HTTPS)
  • Secure hosting infrastructure
  • Logging and monitoring

9. User Rights

Business users may request:

  • Access to their personal data
  • Correction of inaccurate data
  • Deletion where applicable
  • Restriction of processing

Requests can be submitted to: privacy@tollit.global

10. Cookies

Our website may use cookies necessary for functionality and analytics.

A separate Cookie Policy may apply.

11. Updates

We may update this Privacy Policy from time to time. The latest version will always be available on our website.