How TourTide collects, uses, and protects your personal information
Last updated: 17 June 2026 · Effective: 17 June 2026
This Privacy Policy is issued by Noxidsoft (ABN 74 421 798 989), trading as TourTide, and governs the handling of personal information in accordance with the Privacy Act 1988 (Cth) and the 13 Australian Privacy Principles (APPs). By using TourTide, you agree to the collection and use of information as described in this policy.
TourTide ("TourTide", "we", "us", "our") is operated by Noxidsoft (ABN 74 421 798 989) at tourtide.com.au. We provide guest journey automation tools to Tasmanian boutique tour operators.
Our platform enables subscriber businesses ("Operators") to manage bookings, automate guest communications, collect payments, and maintain itineraries and run sheets for their own experiences.
TourTide operates in two capacities:
When an Operator registers and uses TourTide, we collect:
Experience names, descriptions, gear lists, pricing, and booking records (departure dates, PAX counts, payment status) that Operators enter to run their business.
Operators use TourTide to collect information from their own guests in connection with a booking. This data, stored on behalf of the Operator, may include:
TourTide stores this data as a processor on behalf of the Operator. Operators bear responsibility for their own duty-of-care and privacy obligations to their guests — see section 6 of our Terms of Service.
Operators may import a list of past guests (name, email, experience, and travel date) to enable post-trip re-engagement sequences. This is treated the same as guest data described in section 2.3.
We collect personal information:
We collect personal information only by lawful and fair means, and not in an unreasonably intrusive way.
We collect and use personal information for the following purposes:
We will not use or disclose personal information for a secondary purpose unless: (a) the individual would reasonably expect us to; (b) we have consent; or (c) we are required or authorised by law.
We do not sell, rent, or trade personal information. We may disclose personal information to:
We may disclose personal information where required or authorised by Australian law, including:
If TourTide is acquired, merged, or its assets transferred, personal information may form part of the transferred assets. We will notify affected users of any such transfer and the new entity's privacy policy before any change in data handling occurs.
We do not disclose personal information to overseas recipients as a matter of ordinary practice. All infrastructure and data storage is located in Australia (see section 6). In the unlikely event an overseas disclosure becomes necessary, we will comply with APP 8 and take reasonable steps to ensure the recipient handles the information consistently with the Australian Privacy Principles.
All data stored in TourTide — including booking records, guest information, and account data — is stored exclusively on infrastructure located in Sydney, Australia (Akamai ap-southeast-2). No data is transferred to or stored in overseas systems.
Akamai's Sydney infrastructure holds ISO 27001:2022 and SOC 2 Type II certifications at the infrastructure layer. TourTide's application layer operates to an ISO 27001-aligned security posture.
We take reasonable steps to protect personal information from misuse, interference, loss, and unauthorised access, modification, or disclosure. Our security measures include:
Despite these measures, no transmission over the internet is completely secure. If you suspect a security breach affecting your account, contact us immediately at [email protected].
We retain personal information for as long as necessary to provide the platform and comply with our legal obligations. Specific retention practices:
When a subscription is cancelled, Operators may export all their booking and guest records before account closure. We provide a 30-day post-cancellation window to complete this export, after which the data is deleted.
We will take reasonable steps to destroy or de-identify personal information that is no longer required for any purpose permitted under this policy.
We send transactional email necessary to operate the platform and your account, and on your instruction as the Operator, to your guests. This includes:
Transactional email is sent as part of the service you have contracted with us. You cannot opt out of essential transactional messages while your account remains active.
Any marketing or promotional email we send to Operators complies with the Spam Act 2003 (Cth). This means we will only send marketing email to you if you have given express or inferred consent, every marketing email includes our full company name and contact details and a clear, functional unsubscribe mechanism, and we will process unsubscribe requests within 5 business days as required by the Spam Act. We do not send unsolicited commercial electronic messages, purchase email lists, or send cold email.
To unsubscribe from marketing communications, click the unsubscribe link in any marketing email, or contact us at [email protected] with "Unsubscribe" in the subject line.
Under APP 12 and APP 13, you have the right to:
To request access to or correction of your personal information, contact us at [email protected]. We will respond within 30 days.
We may refuse access in certain circumstances as permitted by the Privacy Act. If we refuse, we will give you written reasons and advise of the available complaint mechanisms.
Note on guest data: if you are a guest and want to access or correct information held about you (for example, dietary information submitted before a trip), please contact the tour operator you booked with directly — they are the data controller for that information. If you don't know which operator to contact, email us and we will assist.
If you have a complaint about how we have handled your personal information, please contact us first:
We will acknowledge your complaint within 5 business days and endeavour to resolve it within 30 days. If we cannot resolve the complaint to your satisfaction, you may lodge a complaint with the Office of the Australian Information Commissioner (OAIC):
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, or legal requirements.
When we make material changes, we will:
Your continued use of TourTide after the effective date of a revised policy constitutes acceptance of the updated policy.
For any privacy-related enquiries, access requests, or complaints, please contact us:
Noxidsoft, trading as TourTide
ABN 74 421 798 989
Email: [email protected]
This policy is governed by the laws of Tasmania, Australia and the Privacy Act 1988 (Cth).