Tour Booking Beta is operated by Tectonic Tourist. Questions about privacy, account data, or deletion can be sent to black@tectonictourist.com.
Information used by the app. We store your account name, email address, organization name, and a password hash, along with tour dates, contact records, favorites, notes, templates, attachments, and outreach content and status you create through the app. Information in an organization workspace is available to its authorized users according to the app's access controls. The directory includes researched venue information alongside fictional sample promoters and example venue relationships; verify booking contacts and relationships before outreach.
Optional Google sign-in and Gmail connection. If you sign in with Google, we receive your Google account identifier, verified email address and name to authenticate you and create or link your app account. Connecting Gmail is a separate choice: we receive the connected Google account identifier and verified email address and store an encrypted authorization credential to send email from that account. Your Google password is not provided to the app. The Gmail connection belongs to your signed-in organization membership; other users connect their own accounts.
How Gmail information is used. We use the connected account identity to display the sender and the Gmail sending permission to send messages that you review and submit. Recipients receive the messages and attachments you choose to send. The app does not request permission to read, search, modify, or delete your inbox messages. Sent messages appear in Gmail; replies remain in your Gmail inbox and are not imported into the app.
Optional Google Contacts import. When connecting Gmail you may separately choose to grant read-only access to your Google Contacts. This is optional: you can decline it and still connect Gmail for sending, or grant it later by reconnecting. When granted, the app only reads your contacts when you open Import from Google Contacts and requests your contact list for that one import action. We read your contacts' name, email address, phone number and organization to prefill an editable Promoter form that you review, edit and choose to save; nothing is saved to your directory without that review. The app does not write to, delete, or otherwise modify your Google Contacts, and does not request any other Google Contacts permission. Disconnecting in Email settings removes both the Gmail sending and Contacts permissions together.
Outreach use and unsubscribe. Tour Booking Beta is a professional booking tool: outreach is limited to business booking inquiries that a signed-in user sends, in their own name, to venue and promoter contacts they have a professional reason to reach about a specific show inquiry. Users may not use the service to send unsolicited commercial advertising, bulk marketing email, or messages unrelated to a booking inquiry, and may not use it to harvest or resell contact information. New connected-Gmail messages include an unsubscribe link. Older links and links invalidated by a security-key change may no longer work; contact the sender to request an opt-out if a link cannot be used. A recipient who unsubscribes is added to a suppression list scoped to the sending organization, and the app automatically blocks that organization from sending that recipient any further email.
With whom we share Google user data. Tectonic Tourist processes Google user data to operate the sign-in and email features described here. Google Firebase/Google Cloud hosts the app and processes Google account identity information, authorization credentials and outgoing email data as the app handles sign-in and sending. Neon, our application database provider, stores Google account identifiers, email addresses and names used for sign-in, encrypted Gmail connection credentials, and saved sending records, including the connected sender address and Gmail message identifier when returned. Google processes authorization requests and credentials to authenticate the connection, and its Gmail API receives the connected sender address, selected recipient addresses, message content and attachments to send your reviewed email. If you grant Contacts access and use Import from Google Contacts, Google's People API receives that request and returns your contact list so the app can display it to you; the name, email, phone and organization you choose to save are then stored as a Promoter record in your organization's private directory. The recipients you select, and the email services that deliver their mail, receive the sender address, message content and attachments you send. Authorized users of your organization can see sender information and saved sending records where the app grants them access to that workspace information. These disclosures support account access, storage, email delivery and the app’s sending history.
Account email provider. We use Resend for signup confirmation, password-reset and password-change account emails. Resend receives the service sender address, the account recipient address and message content, including a confirmation or reset link when applicable. This account-email flow does not send Gmail authorization credentials or Gmail sending records to Resend. Google-only accounts use Google sign-in and do not receive password-reset links; an existing password account linked to Google can still receive account emails at its account address.
Limited use. Tour Booking Beta's use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. We do not sell Google user data, use it for advertising, or use it to train general-purpose AI models. Google user data is used to provide the user-facing sign-in, email connection and sending features described here.
Data security. Traffic between your browser, the app, and our hosting and database providers is encrypted in transit (HTTPS/TLS). Google authorization credentials -- including the Gmail sending connection and any granted Contacts access -- are encrypted at rest with AES-256-GCM before being stored, bound to the specific membership that connected them so they cannot be decrypted in a different context. Account passwords are never stored in plain text; they are hashed with bcrypt. Our database and hosting providers (Neon and Google Cloud/Firebase) encrypt stored data at rest as part of their standard infrastructure. Access to an organization's stored data -- including tour records and any Contacts information saved as a Promoter record -- is restricted server-side to authenticated members of that organization on every request, not only in the interface. Contacts data returned by the Google People API during an import is used only to prefill an editable form for your immediate review; if you do not save it, it is not written to the database.
Connection controls. You can disconnect Gmail, including any granted Contacts access, from the Email settings page at any time. Disconnecting deletes that membership's stored email connection; it does not delete your tour records, previously sent messages, imported Promoter records, or copies held by recipients. You can also revoke the app's authorization through your Google account settings.
Retention and deletion. Workspace information remains in the service while the workspace is in use. To request deletion of your account or workspace data, contact black@tectonictourist.com. We will verify the requester's authority before removing shared organization data. Deleted information may remain in provider backups until those backups expire; deletion from the app does not recall email already sent or delete a recipient's copies.
Changes. We will publish changes to this policy on this page with an updated effective date. Effective September 21, 2026.