Privacy Policy
How Tradeltop collects, uses, discloses, stores and protects personal information across the platform.
Privacy Policy
1. About This Policy
This Privacy Policy explains how Tradeltop collects, uses, discloses, stores, and protects personal information.
In this Privacy Policy:
By using the Platform, you acknowledge that Tradeltop will handle personal information as described in this Privacy Policy.
- "Tradeltop", "we", "us", or "our" means Tradeltop Pty Ltd ABN 96 698 562 935, ACN 698 562 935.
- "Platform" means the Tradeltop website, mobile app, web app, APIs, messaging tools, job tools, company profile tools, payment flows, and related services.
- "Customer" means a person or organisation looking for trade or property services.
- "Trade Company" means a trade business, contractor, company, sole trader, or representative using the Platform to create a profile, receive job opportunities, quote, message Customers, or manage leads.
- "User" means a Customer, Trade Company, or any other person who accesses the Platform.
- "Job" means a job request, lead, brief, quote request, task, project, or work opportunity submitted through the Platform.
- "Lead" means a Job opportunity made available to a Trade Company.
2. Anonymity And Pseudonymity
Where lawful and practical, you may browse public Tradeltop pages without identifying yourself.
Most Platform features cannot be provided anonymously or pseudonymously because Tradeltop needs account, contact, location, Job, Trade Company, payment, safety, security, or support information to provide those features.
3. Personal Information We Collect
The personal information we collect depends on how you use Tradeltop.
If you do not provide information that is reasonably needed for a Platform feature, we may not be able to provide that feature, verify an account or business, process a payment, match a Job, unlock a Lead, respond to support, or meet legal, safety, security, tax, accounting, or dispute obligations.
Account And Identity Information
We may collect:
Authentication is provided through Supabase Auth. You can sign in using email and password or, where enabled, Apple or Google. Those social providers process information under their own privacy policies.
Customer Information
If you use Tradeltop as a Customer, we may collect:
Tradeltop collects Customer address information to locate the Job accurately and match nearby Trade Companies. Unless you choose to share more, Trade Companies only see the state, city, suburb, and postcode for the Job, including after purchasing access to your contact details.
Trade Company Information
If you use Tradeltop as a Trade Company, we may collect:
Some Trade Company profile information may be shown to Customers or made visible through the Platform.
Payment And Credit Information
Tradeltop takes payment from Trade Companies for Credits, Lead unlocks, and other paid Platform features. Tradeltop does not take payment for trade work performed by Trade Companies.
We may collect and store payment-related records, including:
Payment card details are processed by Stripe. Tradeltop does not intend to store full payment card numbers.
Messages, Support, And Communications
We may collect:
Device, Usage, And Technical Information
We may collect:
Sensitive Information
We do not ask Users to provide sensitive information unless it is reasonably necessary for a Platform feature, support request, safety issue, fraud issue, dispute, credential check, or legal obligation.
Sensitive information may be included in Job descriptions, images, attachments, messages, support requests, credential information, complaint records, safety records, or dispute records if a User chooses to provide it or if it is reasonably necessary to handle the relevant matter.
Where required by law, we will seek consent before collecting, using, or disclosing sensitive information. Users should not upload or provide sensitive information about another person unless they have authority to do so.
- name;
- email address;
- phone number;
- account type, such as Customer or Trade Company;
- authentication identifiers;
- login, token, and account-session information;
- profile image, if provided; and
- account status, settings, and preferences.
- Customer profile details;
- Job descriptions;
- Job addresses and geolocation coordinates;
- state, city, suburb, and postcode;
- photos, images, and attachments uploaded for a Job;
- timing, scheduling, urgency, availability, and access notes;
- answers to follow-up questions;
- AI-assisted Job summaries, trade suggestions, price estimates, and photo suggestions;
- selected or matched Trade Companies;
- messages with Trade Companies;
- Job status, history, and activity records;
- support requests; and
- any other information you choose to provide through the Platform.
- business name;
- ABN, licence, insurance, credential, and business details you choose to provide;
- contact name, email address, and phone number;
- company profile description, logo, and showcase images;
- service categories, service areas, radius, and availability settings;
- working hours and unavailable periods;
- lead activity, Lead unlocks, quotes, messages, and Job status activity;
- Credit balances, Credit purchases, payment records, and Stripe references;
- optional company bio generation inputs and outputs;
- support requests; and
- any other information you choose to provide through the Platform.
- Credit pack selected;
- purchase amount;
- purchase status;
- invoice, receipt, or tax invoice information where supported;
- Stripe customer, payment, checkout, or transaction references;
- Credit balance and usage history;
- refund, chargeback, failed payment, or support records; and
- timestamps and audit records.
- in-app messages between Customers and Trade Companies;
- support messages and contact form submissions;
- email, SMS, push notification, and service message records;
- transactional email delivery records through providers such as Postmark;
- device push tokens and notification delivery data where push notifications are enabled;
- communication preferences; and
- complaint, dispute, safety, abuse, or moderation records.
- IP address;
- device, browser, operating system, and app version information;
- approximate location derived from IP address or device settings;
- log data, request identifiers, error reports, and diagnostics;
- feature usage, page views, and interaction events;
- security, fraud, abuse, and performance signals; and
- cookie or similar technology information if used on the website or app.
4. How We Collect Personal Information
We collect personal information:
If you provide someone else's personal information, you must have authority to provide it.
- directly from you when you create an account, post a Job, create a Trade Company profile, purchase Credits, unlock a Lead, send messages, upload images, or contact support;
- automatically when you use the Platform;
- from third-party services used to operate the Platform, including Supabase for authentication, Apple and Google when you choose their sign-in options, Stripe for payments, Postmark for transactional email, and other hosting, storage, analytics, messaging, push notification, maps, address, AI, and support services;
- from Customers and Trade Companies who communicate with each other through the Platform; and
- from public or third-party sources where reasonably necessary for safety, fraud prevention, support, or business verification.
5. Why We Use Personal Information
We use personal information to:
- create, authenticate, and manage accounts;
- provide Customer and Trade Company onboarding;
- help Customers create, edit, send, and track Jobs;
- prepare Job briefs and AI-assisted Job summaries;
- suggest trade categories and follow-up questions;
- match Jobs with nearby Trade Companies;
- allow Trade Companies to review and unlock Leads;
- disclose Customer contact details to Trade Companies that successfully purchase access to a specific Job Lead;
- provide in-app messaging;
- support Credit purchases, payment records, refunds, chargebacks, and account balances;
- send service, security, account, Job, Lead, payment, and support communications;
- provide push notifications where enabled;
- respond to support requests and complaints;
- detect, investigate, and prevent fraud, spam, abuse, unsafe conduct, privacy incidents, and misuse of Customer contact details;
- maintain, secure, debug, analyse, and improve the Platform;
- comply with legal, accounting, tax, regulatory, and dispute obligations; and
- enforce the Terms of Use.
6. Paid Lead Unlocks And Contact Details
Tradeltop's Lead unlock model means a Trade Company may use Credits to purchase access to a Customer's contact details for a specific Job Lead.
When a Trade Company successfully purchases access to a Job Lead, Tradeltop may disclose the Customer's phone number, email address, and in-app messaging access for that Job Lead.
Tradeltop does not disclose the Customer's full street address through a Lead unlock unless the Customer chooses to share it. Trade Companies only see the state, city, suburb, and postcode for the Job unless the Customer chooses to share more.
Trade Companies must only use Customer contact details for the purpose of responding to the purchased Job Lead. They must not share, resell, misuse, or use Customer contact details for unrelated marketing or any purpose unrelated to the purchased Job Lead.
7. AI-Assisted Features
Tradeltop uses AI-assisted features to:
AI-assisted outputs may be incomplete, inaccurate, outdated, or unsuitable. Users should review AI-assisted outputs before relying on them or sending them to others.
AI-assisted features are intended to support Job preparation, matching, profile drafting, and Platform operation. They are not intended to make final decisions about whether a Customer must hire a Trade Company, whether a Trade Company must accept or perform a Job, or whether trade work is safe, lawful, licensed, compliant, or suitable.
AI providers and infrastructure providers may process the information needed to provide these features. Tradeltop does not use Customer or Trade Company personal information to train AI models. We use AI-assisted processing only for the Platform features described in this Privacy Policy, related product operation, safety, security, and support purposes, or where otherwise notified to users.
If Tradeltop later uses a computer program to make, or substantially assist in making, a decision that could reasonably be expected to significantly affect a person's rights or interests, we will update this Privacy Policy where required by law.
- analyse a Customer's job description and generate follow-up questions;
- attempt to identify the trade category required for a Job;
- generate a final Job description or Job summary based on the Customer's original description and answers;
- optionally generate a Trade Company bio from company-provided descriptions, notes, keywords, or similar business information.
8. Images, Attachments, And Metadata
Customers and Trade Companies may upload images and attachments through the Platform.
Where supported, Tradeltop processes uploaded images before upload by converting and resizing them to JPEG. This is intended to reduce file size and avoid sharing original file metadata.
Tradeltop may generate image variants, such as thumbnail, detail, and full-size versions. Some image access links may be temporary and expire.
Users should not upload images, documents, or attachments that include personal information they do not have authority to share.
9. When We Disclose Personal Information
We may disclose personal information to:
We do not sell Customer contact details for unrelated marketing. Customer contact details are disclosed through Lead unlocks only for the relevant Job Lead and subject to the Terms of Use.
Some third-party services may collect personal information directly from you or receive it from us to provide their services. Those third-party services may also handle personal information under their own privacy policies and legal obligations.
- Customers and Trade Companies where needed to provide matching, Lead unlocks, messaging, quoting, support, and Job management;
- Trade Companies that successfully purchase access to a specific Customer Job Lead;
- Stripe for Credit purchases, payment processing, fraud prevention, refunds, chargebacks, and payment records;
- Supabase for authentication, account access, identity, and security; Apple and Google when you choose their sign-in options;
- hosting, database, storage, CDN, monitoring, logging, analytics, and security providers;
- maps, address search, geolocation, and place autocomplete providers;
- AI and machine-learning service providers used to provide AI-assisted features;
- Postmark and other email, SMS, push notification, and messaging providers;
- support, operations, accounting, legal, tax, and professional advisers;
- regulators, law enforcement, courts, tribunals, or government agencies where required or permitted by law;
- parties involved in an actual or proposed business sale, merger, restructure, financing, or asset transfer; and
- other third parties with consent or where required or permitted by law.
10. Overseas Disclosure
Some service providers may store or process personal information outside Australia.
These may include providers of authentication, payments, hosting, storage, support, analytics, AI, maps, messaging, email, SMS, push notifications, monitoring, and security services.
Current provider disclosures include:
The countries where personal information is stored or processed may change from time to time depending on our service providers and their operations. Where required by law, we will take reasonable steps in relation to overseas disclosure of personal information.
- Stripe may receive payment-related personal information and may transfer personal information to Stripe, LLC in the United States and to Stripe affiliates and subprocessors in other jurisdictions as needed to provide Stripe services.
- Supabase stores primary project data in the region selected for the project. Authentication-related information may also be processed by Supabase and its subprocessors in other locations as needed to provide and support the service. Selecting a project region does not mean all processing occurs in that region.
- Postmark may process transactional email information and stores data in the United States. Postmark also uses subprocessors, including infrastructure providers such as Deft and Amazon Web Services.
- PostHog processes limited product-analytics data in its EU Cloud region. Its infrastructure and subprocessors may receive an IP address while processing a request even though Tradeltop does not add IP addresses to analytics event properties.
11. Marketing And Service Communications
We may send service and transactional communications, such as account messages, security alerts, Job updates, Lead alerts, message notifications, payment notices, support responses, and policy updates.
We may also send marketing communications, such as product updates, offers, credit promotions, or reactivation messages, where permitted by law.
Commercial electronic messages from Tradeltop will include sender identification and an unsubscribe method where required by law. Where an unsubscribe method is required by law, we will take reasonable steps to make it clear, functional, and actioned within 5 working days.
Trade Companies must not use Customer contact details obtained through the Platform for unrelated marketing unless the Customer has separately consented and the communication complies with spam and privacy laws.
13. Security
We take reasonable steps to protect personal information from misuse, interference, loss, unauthorised access, modification, and disclosure.
Security measures may include access controls, authentication, encryption in transit, logging, monitoring, secure storage, limited access permissions, and operational safeguards.
No online service can guarantee absolute security.
14. Retention
We keep personal information for as long as reasonably needed for the purposes described in this Privacy Policy, including to provide the Platform, maintain records, comply with legal and accounting obligations, resolve disputes, enforce agreements, prevent fraud and abuse, and support safety and security.
Retention periods may differ by information type. For example, payment, tax, support, security, and dispute records may be kept longer than active Job or profile information.
When personal information is no longer needed for a permitted purpose, we will take reasonable steps to delete or de-identify it, unless an Australian law or a court or tribunal order requires us to retain it.
After account deletion, we retain the minimum payment and purchase records and evidence of consent needed to handle refunds, chargebacks or disputes, or meet legal, tax and accounting obligations. Customer and Trade Company Job records, job uploads, and shared conversation history and attachments remain available to the other person under the Platform's retention rules.
We also retain a minimal deletion receipt so authorised staff can verify and reconcile the request. Its account linkage is limited to a random receipt number, your internal Customer or Trade Company ID, and your account role. The receipt does not contain your email address, an email hash, or profile content.
We retain minimal technical records, such as internal identifiers and deletion status, to verify cleanup and prevent delayed processing from recreating deleted data. We also keep the Customer and Trade Company Job records and uploaded job files needed to show the surviving person's cancelled or declined job and shared conversation.
Notification delivery records and service-provider records or logs may retain recipient details, including email addresses or identifiers derived from them, and delivery metadata. Account deletion does not immediately erase every such record. These records are separate from the deletion receipt and are subject to the retention limits in this section.
Access to retained evidence and technical records is restricted, and records are kept only for as long as needed for their purpose or required by law.
15. Access, Correction, And Deletion Requests
You can request permanent account deletion through Delete account in your account settings. You can cancel before the final confirmation. Once your request is accepted, you are signed out and cleanup continues automatically.
Cleanup may take roughly ten minutes or longer. This is an estimate, not a guaranteed completion time. The accepted-request receipt confirms that your request has been accepted; it does not confirm that all cleanup is complete. Messaging-provider access changes and profile-image cleanup can take longer to finish.
Deletion removes your profile and owned profile images. Customer and Trade Company Job records and their uploaded files remain available to the other person. A customer’s Jobs are cancelled and show the customer as Deleted; a departing Trade Company is shown as having declined its leads. The shared conversation and attachments remain readable, but the conversation closes to new messages and shows that your account is no longer on TradelTop. It does not erase copies another person has independently saved outside the Platform. The limited records retained after deletion are described in section 14.
If your account has a verified sign-in email address, we make a time-limited attempt to send an acknowledgment before final cleanup. Acceptance by the email provider does not guarantee delivery to your inbox. A missing verified email address or a failed or uncertain email attempt does not block deletion. The signed-out confirmation shows your accepted-request receipt and the email outcome.
You may request access to, correction of, or deletion of personal information we hold about you by contacting support@tradeltop.com.
We may need to verify your identity before responding.
You do not have to use a special form to make an access or correction request.
We will aim to respond to access and correction requests within 30 days, unless a longer period is reasonably needed because of the request's scope, complexity, verification requirements, or legal issues.
We may refuse, limit, or defer a request where permitted by law, including where information must be retained for legal, security, fraud prevention, accounting, dispute, or operational reasons, or where providing access would unreasonably affect another person's privacy.
If we refuse an access or correction request, we will explain the reason where required by law and tell you about available complaint options.
16. Children
Tradeltop is not intended for users under 18 years old.
We do not knowingly collect personal information from children under 18. If you believe a child has provided personal information to Tradeltop, contact support@tradeltop.com.
17. Data Breaches
If a data breach affects personal information, Tradeltop will assess the incident and take reasonable steps to contain, investigate, remediate, and respond.
Where required by law, including where there is an eligible data breach that is likely to result in serious harm, Tradeltop will notify affected individuals and the Office of the Australian Information Commissioner.
18. Complaints
If you have a privacy question, request, or complaint, contact us at support@tradeltop.com.
Please include enough information for us to understand and respond to your request.
We will aim to respond within 30 days. If a complaint is complex or we need more information, we may ask for further details and give an updated response timeframe.
If your complaint is about a non-privacy issue, such as work quality, payment for trade work, a quote, or a Trade Company dispute, we may handle it under a different support process.
If you are not satisfied with our response, you may be able to contact the Office of the Australian Information Commissioner at https://www.oaic.gov.au/.
19. Changes To This Privacy Policy
Tradeltop may update this Privacy Policy from time to time.
If changes are material, Tradeltop will take reasonable steps to notify affected users before or when the changes take effect.
The updated Privacy Policy will apply from the date it is published or otherwise notified.
20. Contact
Tradeltop contact details:
- Legal entity: Tradeltop Pty Ltd
- ABN: 96 698 562 935
- ACN: 698 562 935
- Main business location listed on ABN Lookup: QLD 4053
- Email: support@tradeltop.com
