Privacy Policy
How Tide Ops collects, uses, shares, retains, and protects personal information
Effective date: July 10, 2026
1. Scope and Controller
This Privacy Policy explains how CONTUPX CONTABILIDADE LTDA (CNPJ 57.708.131/0001-45), located at Av. das Américas, 4200, Bloco 1, Sala 305, Barra da Tijuca, Rio de Janeiro/RJ, 22640-907, Brazil, processes personal information through Tide Ops. Depending on the context and applicable law, CONTUPX CONTABILIDADE LTDA (CNPJ 57.708.131/0001-45) acts as a data controller/business for user account and app-operation data. Contact: contato@contupx.com.br.
2. Information We Collect
2.1 Information You Provide
-
Account and contact details, such as name, email, phone number, profile photo, country, city, and nearest airport.
-
Professional information, including job title, discipline, work history, equipment experience, availability, education, languages, rates, and preferences.
-
Documents and extracted document data, including passports, visas, seaman books, certificates, medical-fitness records, training records, identifiers, issue dates, and expiry dates.
-
Calendar, travel, rotation, vessel/asset, location, timesheet, expense, invoice, contract, and report information.
-
Messages, feedback, support requests, consent choices, and content you choose to upload or share.
2.2 Information Collected Automatically
-
Device type, operating system, app version, language, IP address, timestamps, log data, crash diagnostics, and security events.
-
Usage information, such as screens viewed, features used, and interaction events, where permitted.
-
Approximate or precise location only when you enable a location feature or grant device permission. Location may be captured once when requested rather than continuously, unless a separate feature and permission clearly state otherwise.
-
Notification tokens and delivery status necessary to provide alerts.
2.3 Information from Third Parties
-
Job listings, news, exchange rates, maps, and other content from third-party sources.
-
Authentication providers, app stores, analytics providers, employers, training providers, or integrations you choose to connect.
3. How We Use Information
-
Create and manage accounts; provide calendars, alerts, documents, reports, invoices, timesheets, expense tools, currency conversion, and profile features.
-
Extract information from uploaded files and ask users to confirm it.
-
Personalize content, display relevant jobs or news, and maintain user preferences.
-
Protect security, prevent fraud, troubleshoot, analyze performance, and improve the Service.
-
Communicate service notices, policy updates, security alerts, and support responses.
-
Comply with law, enforce agreements, and establish or defend legal claims.
-
Send optional training-renewal offers, recruiting communications, or marketing only when a valid legal basis and required consent exist.
4. Legal Bases for UK/EEA Users
Where UK GDPR or EU GDPR applies, we rely on one or more of the following legal bases: performance of a contract; legitimate interests, balanced against user rights; compliance with legal obligations; protection of vital interests where applicable; and consent for optional processing such as precise location, certain analytics, marketing, or sharing with training providers. Consent can be withdrawn at any time without affecting prior lawful processing.
5. Sensitive and High-Risk Information
Some uploaded documents may reveal government identifiers, health or medical-fitness information, immigration status, or other sensitive information. Upload only information needed for your use of the Service. Where applicable, we request explicit consent or rely on another lawful basis. We do not use sensitive information to infer unrelated characteristics or for unlawful discrimination.
6. Sharing of Information
-
Service providers processing data on our behalf, such as cloud hosting, authentication, storage, notifications, analytics, support, OCR, and security providers.
-
Employers, recruiters, clients, accountants, training providers, or other recipients only when you direct a share, configure visibility, or provide applicable consent.
-
Authorities, courts, regulators, or advisers when required by law or reasonably necessary to protect rights and security.
-
A buyer, investor, successor, or adviser in connection with a merger, financing, reorganization, or sale, subject to appropriate safeguards.
Tide Ops should not sell or share personal data for targeted advertising without clearly disclosing the practice and providing legally required opt-out rights. Any future lead-generation or training-provider program must be separately disclosed and, where required, separately consented to.
7. Training-Renewal and Partner Offers
The Service may offer an optional setting allowing users to receive renewal information or offers from approved training providers. This choice must be separate from acceptance of the Terms. Unless otherwise clearly disclosed, Tide Ops should not disclose a user's identity or contact details to a training provider until the user opts in. Users can withdraw permission in Settings or by contacting us.
8. Location Information
When a user selects "Capture Current Location," Tide Ops may collect latitude, longitude, timestamp, and accuracy from the device. Manual location entries may also be stored. Location records are used for calendar and reporting functions selected by the user. The app should request operating-system permission and explain whether location is captured once or in the background. Background tracking should not be enabled unless separately designed, disclosed, and consented to.
9. Data Retention
We retain information only as long as reasonably necessary for the purposes described, including account operation, legal compliance, dispute resolution, fraud prevention, and enforcement. Retention periods should be documented internally by data category. Users may delete individual records or request account deletion, subject to backups, legal holds, transaction records, and mandatory retention.
10. Security
We use reasonable administrative, technical, and organizational safeguards designed to protect personal information. No service can guarantee absolute security. Users are responsible for device security, passwords, and controlling what they upload or share.
11. International Transfers
Personal information may be processed in countries other than the user's country. Where required, we use recognized transfer safeguards, such as adequacy decisions, standard contractual clauses, the UK International Data Transfer Agreement/Addendum, or other lawful mechanisms.
12. Your Privacy Rights
Depending on location, users may have rights to access, correct, delete, port, restrict, or object to processing; withdraw consent; opt out of certain targeted advertising, sale, or sharing; and appeal a denied request. Identity verification may be required. Requests may be sent to the contact below. Authorized-agent requests will be handled where applicable law requires.
13. Notifications and Marketing
Service alerts may be necessary to operate requested features. Promotional messages, partner offers, and direct marketing should be separately controlled. Users can change preferences or unsubscribe, although essential account, legal, and security communications may continue.
14. Children
Tide Ops is not intended for children under 18. We do not knowingly collect personal information from children. If we learn that a child provided information, we will take appropriate steps to delete it.
15. Third-Party Links and Content
Third-party sites and services have their own privacy practices. Tide Ops is not responsible for those practices. Users should review the original provider's policy before submitting information.
16. Changes to This Policy
We may update this Privacy Policy. Material changes will be highlighted and, where required, users will be notified or asked to provide renewed consent. The effective date above identifies the current version.
17. Contact and Complaints
Privacy contact: contato@contupx.com.br CONTUPX CONTABILIDADE LTDA (CNPJ 57.708.131/0001-45) Av. das Américas, 4200, Bloco 1, Sala 305, Barra da Tijuca, Rio de Janeiro/RJ, 22640-907, Brazil Users in the UK or EEA may also have the right to complain to the applicable supervisory authority. Add the contact details of any appointed UK representative, EU representative, or Data Protection Officer before launch, if required.