Privacy Policy

Last updated: 3 April 2026

Struxa Pty Ltd (ABN 61 695 485 593) ("we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you use the TradieOS platform, website, and services (the "Service"). This policy complies with the Australian Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).

1. Information We Collect

1.1 Information You Provide

When you create an account and use the Service, we may collect:

  • Your name and email address (via our authentication provider)
  • Your trade type and business details
  • Client information you enter into the platform (names, addresses, contact details)
  • Quote, invoice, and job data you create within the Service
  • Payment information processed through Stripe (we do not store card details)
  • Files, photos, and documents you upload to the Service
  • Communications you send to us (support requests, feedback)

1.2 Information Collected Automatically

When you access the Service, we automatically collect:

  • Device information (browser type, operating system, screen resolution)
  • Usage data (pages visited, features used, time spent)
  • IP address and approximate geographic location
  • Cookies and similar tracking technologies

1.3 AI-Generated Content

When you use our AI-powered features (Photo-to-Quote, Plan Reader, AI Quote Generator, SWMS Generator, Toolbox Talk Generator), we process the images, documents, and text you provide through artificial intelligence systems to generate estimates, safety documents, and other outputs. These inputs may be sent to third-party AI service providers for processing. We do not use your uploaded content to train AI models. AI-generated outputs are estimates only and must be independently verified by a qualified professional before use.

1.4 Email Integration (IMAP)

If you choose to connect your email account via IMAP, we collect and store your email server credentials (host, port, username, and password). Your IMAP password is encrypted at rest using AES-256 encryption before being stored in our database. We access your email solely to scan for quote-related correspondence and do not read, store, or process the content of emails unrelated to the Service. You may disconnect your email integration at any time, which will permanently delete your stored credentials.

1.5 Public Lead Forms (Blitz Embed)

When a potential client submits an enquiry through your embedded Blitz Quote form, we collect their name, email address, phone number, suburb, and job description. This information is collected with the submitter's explicit consent (via a mandatory checkbox) and is shared only with the tradesperson whose form was submitted. We do not use this information for marketing or share it with any other third parties.

1.6 Quote Request Forms ("Get 3 Free Quotes")

When a homeowner submits a quote request through our website (including cost guide pages, landing pages, and Google Ads lead forms), we collect their name, email address, phone number, postcode, project type, budget range, urgency, and project description. This information is:

  • Used solely to connect the homeowner with up to 3 licensed, insured local tradies who can quote the job
  • Shared only with the matched tradies — never sold to third parties, data brokers, or advertisers
  • Stored securely in our database for the purpose of facilitating the quote matching process
  • Retained for 12 months after submission, then automatically deleted unless the homeowner creates an account

Homeowners can request deletion of their quote request data at any time by contacting [email protected]. We will process deletion requests within 7 business days.

1.7 Google Ads Lead Forms

When you submit your information through a Google Ads lead form, the same data collection and handling practices described in Section 1.6 apply. Your data is transmitted securely from Google to our servers and is subject to this Privacy Policy. We do not use lead form data for any purpose other than connecting you with qualified local tradies. You may opt out of further contact at any time by replying "STOP" to any communication or by emailing [email protected].

2. How We Use Your Information

We use your personal information to:

  • Provide, maintain, and improve the Service
  • Process your subscription payments and manage your account
  • Send you service-related notifications (e.g., invoice reminders, subscription updates)
  • Provide customer support and respond to your requests
  • Analyse usage patterns to improve features and user experience
  • Detect, prevent, and address technical issues and security threats
  • Comply with legal obligations

We will not use your personal information for direct marketing without your consent. You may opt out of marketing communications at any time.

3. How We Share Your Information

We may share your personal information with:

  • Service providers: Third-party companies that help us operate the Service, including cloud hosting (AWS), payment processing (Stripe), email delivery (Resend), and analytics providers. These providers are contractually obligated to protect your information.
  • Your clients: When you send quotes, invoices, or other documents through the Service, the recipient will see the information you include in those documents.
  • Team members: If you invite crew members to your account, they may access shared project and job data as permitted by their role.
  • Legal requirements: We may disclose your information if required by law, court order, or government regulation, or if we believe disclosure is necessary to protect our rights, your safety, or the safety of others.

We do not sell your personal information to third parties. We do not share your information with advertisers.

4. Data Storage and Security

Your data is stored on secure cloud servers. We implement industry-standard security measures including:

  • Encryption in transit (TLS/SSL) for all data transmitted between your device and our servers
  • Encrypted database connections
  • AES-256 encryption at rest for sensitive credentials (email passwords, bank account details)
  • Access controls and role-based permissions
  • Payment processing handled entirely by Stripe — we never store, process, or have access to your credit card numbers, CVV, or expiration dates

While we take reasonable steps to protect your information, no method of electronic storage or transmission is 100% secure.

Your data may be processed and stored in data centres located outside Australia. Where this occurs, we ensure that appropriate safeguards are in place to protect your information in accordance with the APPs.

5. Data Retention

We retain your personal information for as long as your account is active or as needed to provide the Service. If you close your account, we will retain your data for 30 days to allow for data export, after which it will be permanently deleted. We may retain certain information as required by law (e.g., financial records for tax purposes).

6. Your Rights

Under the Australian Privacy Act, you have the right to:

  • Access: Request access to the personal information we hold about you
  • Correction: Request correction of inaccurate or incomplete personal information
  • Deletion: Request deletion of your personal information (subject to legal retention requirements)
  • Data portability: Export your data using the tools available within the Service
  • Complaint: Lodge a complaint with the Office of the Australian Information Commissioner (OAIC) if you believe we have breached the APPs

To exercise any of these rights, contact us at [email protected]. We will respond to your request within 30 days.

7. Cookies and Tracking

We use cookies and similar technologies to maintain your session, remember your preferences, and analyse how the Service is used. You can control cookie settings through your browser. Disabling cookies may affect the functionality of the Service.

We use the following types of cookies:

  • Essential cookies: Required for the Service to function (authentication, session management)
  • Analytics cookies: Help us understand how users interact with the Service

We do not use advertising or tracking cookies.

8. AI-Generated Content Disclaimer

The Service uses artificial intelligence to generate quotes, estimates, safety documents (SWMS, Toolbox Talks), and other content. All AI-generated content is provided as a starting point only and does not constitute professional advice. In particular:

  • Quotes and estimates: AI-generated pricing is indicative only and must be reviewed and adjusted by a qualified tradesperson before being sent to clients. We accept no liability for inaccurate estimates.
  • Safety documents: AI-generated SWMS and Toolbox Talks must be reviewed, customised, and approved by a competent person as required by the Work Health and Safety Act 2011 (Cth) and relevant state/territory legislation. The Service does not replace the legal obligation to prepare site-specific safety documentation.
  • Technical specifications: Any concrete grades, reinforcement schedules, or engineering recommendations generated by the AI are suggestions only and must be verified by a qualified engineer or in accordance with AS 3600 and relevant Australian Standards.

9. Children's Privacy

The Service is not intended for use by individuals under 18 years of age. We do not knowingly collect personal information from children. If we become aware that we have collected information from a child under 18, we will take steps to delete it promptly.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on the Service and updating the "Last updated" date. Your continued use of the Service after changes are posted constitutes your acceptance of the revised policy.

11. Notifiable Data Breaches

In the event of a data breach that is likely to result in serious harm to any individual whose personal information is involved, we will notify the Office of the Australian Information Commissioner (OAIC) and affected individuals as soon as practicable, in accordance with Part IIIC of the Privacy Act 1988 (Notifiable Data Breaches scheme). Our notification will include the nature of the breach, the types of information involved, and recommended steps individuals can take to protect themselves.

12. Contact Us

If you have questions about this Privacy Policy or our privacy practices, please contact us at:

You may also contact the Office of the Australian Information Commissioner (OAIC) at www.oaic.gov.au if you have concerns about how we handle your personal information.

Cookie Preferences

We use essential cookies to keep the app working (authentication, preferences). We also use analytics cookies to understand how you use TradieOS so we can improve it. Analytics cookies are only enabled with your consent. Privacy Policy

Essential cookies cannot be disabled as they are required for core functionality.