Who this notice covers
This notice explains how [LEGAL ENTITY NAME] trading as PeopleTide CRM handles personal data through PeopleTide CRM, PeopleTide Scheduling, PeopleTide Gateway, and related support services. Customer organisations remain responsible for the data and messaging activity they configure in their tenant.
Registered address: [REGISTERED ADDRESS].
Data we process
- Account, organisation, role, authentication, and support-request details.
- Customer and lead records, contact details, tags, notes, tickets, call metadata, and configured workflow data.
- Booking details, attendee answers, availability rules, meeting outcomes, timezone, reminder preferences, and calendar event identifiers.
- Calendar connection metadata and encrypted provider credentials when an authorised user connects Google Calendar or Microsoft Outlook.
- SMS or WhatsApp content, sender and recipient identifiers, timestamps, routing information, consent records, and delivery outcomes when those channels are enabled.
- Gateway device, app version, Android version, permission state, SIM-route metadata, queue health, and security or audit events.
- Technical logs needed to operate, secure, diagnose, and prevent abuse of the service.
Scheduling and connected calendars
When scheduling is enabled, PeopleTide asks connected calendar providers for busy periods, creates or updates the meeting event you request, and receives change notifications used to reconcile bookings. We do not expose event titles or other private calendar content on public booking pages. Booking forms may create a CRM contact or lead after a slot is confirmed. WhatsApp and SMS reminders require a separate, optional choice that is not selected by default.
Why we use the data
We use this data to provide tenant-authorised CRM, messaging, calling, automation, support, security, audit, troubleshooting, and service-administration functions. We do not use gateway message content for advertising or sell it to data brokers.
Gateway data handling
PeopleTide Gateway stores SMS content and message state on the commissioned Android phone. Eligible numeric-sender business messages and delivery events may synchronize with the paired tenant. OTP-like messages, alphanumeric sender IDs, and unknown senders remain local and are not used to create cloud CRM records. Android application backup is disabled for the gateway.
Retention and deletion
Data is retained only for the service, security, legal, and tenant-administration purposes documented in the approved retention schedule: [APPROVED RETENTION SCHEDULE]. Deletion requests remain subject to identity verification, tenant instructions, legal holds, fraud prevention, and records we must retain by law.
Security measures
PeopleTide uses access controls, tenant scoping, protected credentials, device signing keys, encrypted gateway message storage, transport security, audit records, and operational monitoring. No system can promise absolute security; incidents are assessed and notified as required by applicable law.
Your choices and rights
Subject to applicable law, you may request access, correction, completion, deletion, withdrawal of consent, or grievance review. Visit Data rights for the request process. Withdrawing consent does not invalidate processing already completed on a lawful basis.
Children
PeopleTide is an enterprise service and is not directed to children. Customer organisations must not configure the service to process children’s data unless they have an appropriate legal basis and all required safeguards.
Privacy and grievance contact
Send privacy questions or grievances to support@peopletide.com. We may update this notice when the service or applicable requirements change; material revisions will carry a new effective date.
