1. Overview
This Privacy Policy explains what personal data Tarea Labs Inc. (“Tarea,” “we”) collects when you use our website, apps, and related tools (the “Platform”), how we use it, and the choices you have.
The short version: we collect the data we need to run a useful marketplace — accounts, listings, messages, bookings — and nothing more. We don’t sell your data, and we don’t process payments, so we don’t hold your card details either.
2. What we collect
Information you give us
- Account details: name, email, phone number, password.
- Profile details: photo, bio, location, services offered, pricing, availability (for Pros).
- Verification data: government-issued ID and selfie if you go through ID verification (Pros only, handled by our verification partner).
- Content you post: listings, reviews, messages, photos.
- Support interactions: any messages, attachments, or calls with our team.
Information we collect automatically
- Device & log data: IP address, browser, OS, approximate location, referrer, pages viewed, timestamps.
- Cookies & similar: see Cookies & analytics.
- Usage: clicks, searches, bookings, and other interactions with Platform features — so we can improve them.
Information from third parties
- Identity-verification providers (for Pro verification).
- Login providers if you sign in with Google, Apple, or another OAuth provider.
- Calendar providers, if a Pro chooses to connect one — see section 7 for exactly what we access and keep.
- Fraud-prevention and risk-scoring partners.
What we don’t collect: payment-card numbers. Payments happen between Clients and Pros through third-party providers like Stripe — we never see or store card details.
3. How we use your data
We use personal data to:
- Run and improve the Platform — showing listings, matching you to Pros, handling bookings, delivering messages.
- Verify identity and keep the Platform safe — detecting fraud, impersonation, and policy violations.
- Provide support and respond to your requests.
- Send transactional emails (booking confirmations, security alerts) and, with your consent, marketing messages you can unsubscribe from at any time.
- Meet legal, tax, and regulatory obligations.
- Research and analytics — usually on de-identified or aggregated data — to make the Platform better.
Legal bases (for users in the EU/UK)
- Contract: to provide the Platform you signed up for.
- Legitimate interests: to keep the Platform safe, prevent fraud, improve features.
- Consent: for marketing, non-essential cookies, and certain optional features.
- Legal obligation: where we have to keep or disclose data by law.
5. Messaging & storage
Messages you send through Tarea are stored so you and the other party can read the history later, and so our safety team can review reports of abuse, fraud, or policy violations. Messages are not end-to-end encrypted.
Don’t send payment card details, passwords, government-issued ID numbers, or other sensitive information through messaging. Use the appropriate feature (ID verification, payment link) instead.
6. Payments & third-party providers
When a Pro accepts payment through a third-party provider like Stripe, that provider’s privacy policy applies to your payment data — not ours. Tarea doesn’t receive card numbers or bank details from those flows. If a Pro connects a Stripe account to Tarea, Stripe shares limited metadata with us (account status, connected- account ID) so we can show the Pro the status of their connection.
7. Connected calendars & Google user data
A Pro can connect a Google Calendar or Outlook Calendar account so that Tarea knows when they’re already busy, and — if they turn on two-way sync — so their Tarea bookings appear on their own calendar. Connecting is optional, it’s always the Pro’s own choice, and it can be disconnected at any time from Settings → Integrations.
What we access
With your permission we request read access to your calendars, and, only if you turn on two-way sync, permission to create and update events. We read events from the specific calendars you select — not your whole Google Account. We do not access Gmail, Drive, Contacts, or any other Google service.
What we do with it
- Blocking your availability. We convert your events into busy time ranges so customers can’t book you when you’re already occupied. Customers never see your event titles or details — a blocked slot simply shows as unavailable.
- Writing your bookings out (two-way sync only). We create, update, and cancel calendar events for Tarea bookings, so your calendar reflects your Tarea schedule.
- Keeping a synced booking accurate. If you edit a Tarea booking’s time, location, or notes directly in your calendar, we read those specific fields back so the two stay in step.
What we store, and for how long
- Access tokens — encrypted, and kept only while the connection is active.
- Which calendars you selected, and the identifiers of events we created for your Tarea bookings.
- Busy time ranges, cached briefly (about five minutes) so we don’t re-query Google on every page load. That short-lived cache can include an event’s title for our own diagnostics; it is never shown to customers and it expires automatically.
We do not otherwise keep the contents of your calendar events. When you disconnect, we delete the stored tokens and stop all access.
What we never do
We do not sell or transfer your Google user data. We do not use it for advertising, and we do not use it to train generalised artificial-intelligence or machine-learning models. We do not allow humans to read it, except where you have explicitly asked us to (for example, when you contact support about a sync problem), where it is necessary for security purposes such as investigating abuse, or where we are required to do so by law.
Google API Services User Data Policy
Tarea’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Removing access
You can disconnect a calendar at any time from Settings → Integrations, which revokes our tokens and stops all access. You can also revoke Tarea’s access directly from your Google Account permissions page or, for Outlook, from your Microsoft account settings.
9. How long we keep data
We keep personal data only as long as we need it to provide the Platform and comply with law. As a guide:
- Account and profile data — while your account is active, plus up to 24 months after closure for fraud and legal reasons.
- Messages — typically up to 36 months after the last interaction, unless we have to keep them longer.
- Booking and invoice records — at least 7 years, or longer where tax law requires.
- Support tickets — up to 3 years after the ticket closes.
- Connected-calendar data — access tokens and your calendar selections are kept only while the connection is active and deleted when you disconnect; cached busy times expire within minutes (section 7).
- Backup copies — may live for an additional short period before rotation.
10. Your rights
Depending on where you live, you may have the right to:
- Access the personal data we hold about you.
- Correct inaccurate data.
- Delete your data (“right to be forgotten”), subject to legal retention.
- Restrict or object to certain processing.
- Receive your data in a portable format.
- Withdraw consent for consent-based processing at any time.
- Lodge a complaint with your local data-protection authority.
Most of these you can do directly from your account settings. For anything else, email privacy@gettarea.com. We’ll respond within 30 days.
11. International data transfers
Tarea Labs Inc. is incorporated in Delaware, United States, and our team operates from Trinidad and Tobago. Our hosting and other service providers are located primarily in the United States, so your data routinely moves across borders in the ordinary course of running the Platform. When it does, we rely on standard safeguards (such as Standard Contractual Clauses) to keep it protected to the standard your local law requires.
12. Security
We use industry-standard technical and organisational measures — encryption in transit, access controls, audit logging, regular reviews — to protect personal data. No system is perfect; if something goes wrong we’ll tell affected users and regulators promptly where the law requires.
13. Children
Tarea is not for people under 18. We don’t knowingly collect personal data from children. If you think a child has given us data, email privacy@gettarea.com and we’ll delete it.
14. Changes
We may update this Privacy Policy. If a change is material we’ll tell you by email or an in-product notice before it takes effect. The effective date at the top of this page will always reflect the current version.
15. Contact us
For privacy questions or data-subject requests, write to privacy@gettarea.com.
Tarea Labs Inc.
8 The Green, Ste B, Dover, DE 19901, United States
Privacy contact: privacy@gettarea.com