Last updated: 2026-09-08
This policy explains what information Tiendo collects, why, and what choices you have. It applies to tiendo.co and the Tiendo application.
Operated by Talea Work AB, a company registered in Sweden. Contact: hello@tiendo.co
1. Two kinds of people in this policy
Customers — business owners and managers who create an account and subscribe. Workers — the employees a customer assigns routines to, who open a link or scan a QR code. Workers do not create accounts.
Where a customer uploads information about their workers, the customer decides what is collected and why. In data protection terms the customer is the controller and Tiendo acts as a processor on their instructions. Workers with questions about their information should contact their employer first; we will help the employer respond.
1a. Your data is yours
You own everything you put into Tiendo: recordings, routines, translations, photos, and the records of who confirmed what. We host it so the Service can work. We do not read it, sell it, share it, publish it, or use it to train models. You can export it or delete it at any time.
2. What we collect
From customers
- Account details: name, email, business name, trade, location count
- Billing: handled by Stripe. We receive confirmation of payment and the last four digits and card brand. We never receive or store full card numbers.
- Content you create: recordings, transcripts, routines, translations, photos, videos
- Usage: pages viewed, features used, timestamps, approximate location from IP, device and browser type
- Support correspondence
About workers, entered or generated by customers
- Name as entered by the customer or typed by the worker when confirming a routine
- Preferred reading language
- Which routines were assigned and which were confirmed, with date and time
- Questions asked through the in-product question feature
We ask customers not to submit sensitive information about workers — social security numbers, immigration status, health information, or similar. The Service is not designed for it.
From visitors to tiendo.co
- Standard server logs, and analytics if enabled. Free tools on the site work without an account and without an email address.
3. Why we use it
- To provide the Service: structure routines, translate them, deliver them, record confirmations
- To process payments and manage subscriptions
- To provide support
- To secure the Service and prevent abuse
- To improve the Service, using aggregated or de-identified information
- To send service messages (renewal notices, trial reminders, security notices). Marketing email only with consent and always with an unsubscribe link.
We do not sell personal information, and we do not share it for cross-context behavioural advertising.
4. AI processing
Content you submit is sent to third-party AI providers to structure and translate it. They process it only to return a result to you and then discard it.
Your content is not used to train AI models — not ours, not theirs. We select providers whose business API terms commit to this. We do not use your content to build features for other customers.
5. Who we share with
Service providers only, and only what they need:
- Stripe — payment processing
- Supabase — database and authentication hosting
- Netlify — website and application hosting
- AI model providers — structuring and translation
- Email delivery provider — service emails
We may also disclose information where required by law, to protect rights and safety, or in connection with a merger or acquisition (in which case we will notify you).
6. International transfers
We are established in the EU and our providers may process data in the United States and elsewhere. Where personal data is transferred out of the EEA or UK, we rely on appropriate safeguards, including the European Commission's Standard Contractual Clauses.
7. How long we keep it
- Account and billing records: while your account is active and afterwards as required for tax and accounting purposes
- Routines and translations: until you delete them or close your account
- Acknowledgement records: until you delete them or close your account. These are your business records — you decide how long to keep them.
- Backups: deleted content may persist in backups for a limited period before being overwritten
- Server logs: a limited period for security and troubleshooting
On account closure you may export your data for 30 days, after which we may delete it.
8. Your rights
If you are in the EEA or UK, you have rights to access, correct, delete, restrict and port your personal data, and to object to certain processing. You may also complain to your national supervisory authority.
If you are a California resident, you have rights under the CCPA/CPRA to know what is collected, to delete it, to correct it, to opt out of sale or sharing (we do neither), and to limit use of sensitive information. We will not discriminate against you for exercising these rights.
Other US states have comparable laws; we extend equivalent rights to all customers regardless of location.
To exercise any of these: hello@tiendo.co. We will verify your identity before acting. If your request concerns worker information held by a customer, we will direct it to that customer and assist them in responding.
9. Security
We use encryption in transit and at rest, access controls, and vetted providers. No system is completely secure. If a breach affects your personal data we will notify you and any regulator as required by law.
10. Children
The Service is for businesses and is not directed at children. We do not knowingly collect information from anyone under 16. Customers are responsible for ensuring their use complies with laws applying to minor employees.
11. Cookies
We use cookies that are strictly necessary for the site and application to work, including keeping you signed in. If we add analytics or marketing cookies we will ask for consent first where required and offer a way to decline.
12. Changes
We will post changes here and update the date. For material changes we will notify customers by email or in the Service.