Last updated: 9 October 2026
Privacy notice
This notice explains what personal data Tidewell Systems holds, why we hold it and what rights you have. If anything is unclear, write to hello@tidewellsystems.com.
Your right to object to our emails
If we emailed you and you do not want to hear from us again, reply “stop” or write to hello@tidewellsystems.com. We stop the same day. We keep only your address on a do-not-contact list so that we do not write to you again.
You have the right to object at any time to our use of your data for direct marketing (Article 21 GDPR). You do not need to give a reason and we do not need to agree.
Who we are
Tidewell Systems is a trading name of Hire Thomas, Inc., 1111B S Governors Ave Suite 90226, Dover, DE 19904, US. We are the controller of the data described here. For anything about your data: hello@tidewellsystems.com.
What data we hold
- Business contact details of companies we may offer our services to: company name, the generic business email address the company published on its own website, website address, country, and a short note of what we saw on its public site (for example a broken page or a tracking problem).
- Messages you send us: emails, and what you enter in our intake form (name, work email, store URL, description of the issue), and our replies.
- If you become a client: contact details, the agreed scope, invoices and payment records. Card details are handled by our payment provider; we do not see full card numbers.
- Basic technical data (such as IP address and browser type) in the server logs of our hosting provider when you visit this site.
We do not collect special categories of data. Please do not send passwords or private customer data.
Where we get it
From the public website of the company concerned (contact page, footer, legal notice), and from you directly. We do not buy contact lists.
Why we use it, and our legal basis
- To offer our services to companies by email (one email and at most one follow-up): legitimate interests, Article 6(1)(f) GDPR. Our interest is to offer a relevant fix to a company whose public site shows a specific issue. We assessed this in writing and you can ask us about the result.
- To answer messages and handle enquiries: legitimate interests, and steps taken at your request before a contract, Article 6(1)(b).
- To deliver and invoice paid work: contract, Article 6(1)(b), and legal obligations for accounting and tax, Article 6(1)(c).
- To keep a do-not-contact list so that we respect your objection: legitimate interests, Article 6(1)(f).
- To run and secure this website: legitimate interests, Article 6(1)(f).
We do not make decisions about you by automated means and we do not profile you.
How long we keep it
- Contact details of companies that never reply: deleted after 90 days.
- Do-not-contact entries: kept, address only, for as long as needed to keep honouring your request.
- Client records: for as long as the work and the relationship continue, then for the period accounting and tax rules require.
Who we share it with
Providers that handle data for us under their terms: email (for example Google Workspace and Zoho Mail), website hosting and form handling (Netlify), and payments (Stripe, for clients). We do not sell personal data and we do not pass it on for other companies’ marketing. We disclose data to authorities only when the law requires it.
Transfers outside the EU and EEA
We are based in the United States, so data about people in the EU and EEA is processed in the US, and our providers also process data there. Where the law requires a transfer safeguard we rely on the ones our providers offer, such as standard contractual clauses or the EU-US Data Privacy Framework. Ask us if you want details.
Your rights
You can ask us for access to your data, correction, deletion, restriction of use, or a portable copy of data you gave us. You can object to our use of your data (see the box at the top for direct marketing). Email hello@tidewellsystems.com. We answer within one month, and we may ask you to confirm who you are.
How to complain
Please tell us first so we can put it right. You also have the right to complain to the data protection authority where you live or work, or where the issue happened. Examples: CNIL (France), Data Protection Commission (Ireland), IMY (Sweden), Data Protection Authority (Belgium), CNPD (Portugal), Office of the Data Protection Ombudsman (Finland), Datatilsynet (Norway). Full list of authorities: edpb.europa.eu.
Changes
We update this page when something changes and change the date at the top.