Privacy & Cookie Policy

Privacy Policy

Last updated: 06/08/2026

1. Introduction

All Ireland Taxi Representatives Association CLG, trading as “Tap a Taxi” (“Tap a Taxi”, “we”, “us”, “our”), is committed to protecting your privacy and complying with applicable data protection laws, including the EU General Data Protection Regulation (GDPR) and the Irish Data Protection Act 2018.

This Privacy Policy explains how we collect, use, share and protect personal data when you use our website, driver and customer mobile applications, and related services (together, the “Service”).

By using our Service, you acknowledge that you have read and understood this Privacy Policy.

2. Who We Are (Data Controller)

All Ireland Taxi Representatives Association CLG, trading as “Tap a Taxi”, is the data controller for the personal data processed through the Service.

Contact details:

Legal name: All Ireland Taxi Representatives Association CLG (trading as “Tap a Taxi”)
Company registration (CRO): 806971
Co-operative registration with the Irish Co-operative Organisation Society (ICOS) and the Registry of Friendly Societies is currently in progress.
Address: Unit G4, Centre Point Business Park, Oak Drive, Park West, Dublin 12, D12 Y262
Email: info@tapataxi.ie
Phone: 01 556 9222

If required, we will appoint a Data Protection Officer (DPO) and publish their contact details here.

3. Definitions

Account – A registered account enabling access to the Service
Applications – Tap a Taxi driver and customer apps (iOS and Android)
Customer – A passenger using the Service
Driver – A licensed taxi driver and cooperative member using the Service
Personal Data – Any information relating to an identified or identifiable individual
Service Provider – A third party processing data on our behalf
Sub-processor – A third party engaged by one of our Service Providers to process personal data on their behalf
Usage Data – Data collected automatically through use of the Service

4. Personal Data We Collect

4.1 Data You Provide

Depending on whether you are a Customer or Driver, we may collect:

  • Name
  • Email address
  • Phone number
  • Account login details
  • Payment-related information (processed by third-party payment providers)
  • Taxi licence and regulatory information (Drivers only)
  • Communications with support

4.2 Location Data

To provide taxi services, we may collect real-time or approximate location data, including:

  • Customer pickup and drop-off locations
  • Driver location while available or on a trip

Location data is only collected when necessary for the operation of the Service and in accordance with your device permissions.

4.3 Automatically Collected Data

We may collect:

  • IP address
  • Device type and operating system
  • App usage data and diagnostics
  • Log files and timestamps

4.4 Identity Verification and Face Data (Drivers)

To operate on the Tap a Taxi platform, Drivers must complete identity verification in the driver Application. On supported devices this uses Apple’s TrueDepth camera API.

Face data (identity verification)

When identity verification is enabled, the app confirms, with your in-app consent, that the person using the driver account is the registered driver. A liveness check runs first: images of your face and, on supported devices, depth data are processed entirely on your device; depth data is never stored or transmitted and is discarded when the check completes. A selfie is then transmitted securely to Ondemand Apps OÜ, our data processor operating the app’s software platform, which compares it with your reference photograph using AWS Rekognition as a sub-processor.

We keep face data no longer than needed and never indefinitely: the selfie is deleted automatically once verification completes, at the latest immediately upon completion or interruption of the verification session after capture; the reference photograph is kept while your driver account is active — repeated checks require an image to compare against — and is deleted within 30 days after the account closes; after each check only the pass/fail result and its date are retained, containing no face data.

Face data is shared with no one except the two providers named above, solely to perform the verification; AWS processes the images transiently, does not retain them after the call completes, and does not use them to train or improve its services. Face data is never used for advertising, marketing, profiling, or analytics, and is never sold.

Payments onboarding verification

Separately from the in-app check described above, Drivers complete identity verification with our payments provider, Stripe Payments Europe, Ltd., as part of setting up a connected payments account. That verification is carried out by Stripe on its own hosted screens and is governed by Stripe’s own privacy notice. It may involve identity documents and, where Stripe requires it, a photograph. Tap a Taxi does not receive or retain the images submitted to Stripe.

5. Legal Bases for Processing

We process personal data under one or more of the following GDPR legal bases:

  • Performance of a contract – to provide taxi booking and dispatch services
  • Legal obligation – including transport, tax, and regulatory compliance
  • Legitimate interests – to operate, secure, and improve the Service
  • Consent – for marketing communications and optional features

You may withdraw consent at any time.

5.1 Special Category Data

Face data used for Driver identity verification is “special category data” under Article 9 of the GDPR. We process this data on the basis of your explicit consent, which you provide in the app at the point of verification. You may withdraw this consent at any time, although we may be unable to verify your identity or permit you to operate on the platform without it.

6. How We Use Personal Data

We use personal data to:

  • Provide and operate the Service
  • Match Customers with Drivers
  • Process payments and invoices
  • Communicate service-related information
  • Provide customer support
  • Ensure safety, security, and fraud prevention
  • Comply with legal and regulatory obligations
  • Improve and develop our services

7. Sharing of Personal Data

We may share personal data with:

7.1 Service Providers

Trusted third parties who assist us with:

  • App hosting and infrastructure
  • Payment processing
  • Identity verification
  • Customer support
  • Analytics and security

All Service Providers are bound by contractual data protection obligations.

Our dispatch technology provider, Ondemand Apps OÜ, engages Amazon Web Services (AWS Rekognition) as a sub-processor for the facial comparison element of Driver identity verification, as described in Section 4.4.

7.2 Drivers and Customers

Limited personal data is shared between Customers and Drivers solely for the purpose of completing a taxi booking.

7.3 Legal and Regulatory Authorities

We may disclose personal data where required by law, regulation, court order, or lawful request from authorities.

8. International Data Transfers

Where personal data is transferred outside the European Economic Area (EEA), we ensure appropriate safeguards are in place, such as EU Standard Contractual Clauses or another transfer mechanism recognised under Chapter V of the GDPR.

This includes the facial comparison carried out by AWS Rekognition as a sub-processor of Ondemand Apps OÜ, as described in Section 4.4. Images are processed transiently and are not retained by AWS after the comparison completes.

9. Data Retention

We retain personal data only for as long as necessary, including:

  • Account data: while your account remains active
  • Trip and transaction data: as required for legal and tax purposes
  • Support communications: for quality and dispute resolution
  • Face data (identity verification): the verification selfie is deleted once verification completes or is interrupted; the reference photograph is retained while the driver account remains active and is deleted within 30 days of account closure; depth data is never stored; after each check only the pass/fail result and its date are retained, containing no face data

Retention periods may vary depending on legal obligations.

10. Your Data Protection Rights

Under GDPR, you have the right to:

  • Access your personal data
  • Rectify inaccurate data
  • Request erasure (“right to be forgotten”)
  • Restrict or object to processing
  • Data portability
  • Withdraw consent
  • Lodge a complaint with the Irish Data Protection Commission

Requests can be made by contacting us using the details above. We respond within one month.

11. Security

We use appropriate technical and organisational measures to protect personal data. However, no system is completely secure and we cannot guarantee absolute security.

12. Cookies

Our website and apps use cookies and similar technologies. For more information, please see our Cookie Policy.

13. Children’s Data

The Service is not intended for children under 18. We do not knowingly collect personal data from children.

14. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. Changes will be posted on our website and apps with an updated revision date.

15. Contact Us

If you have questions or wish to exercise your rights, contact:

Email: info@tapataxi.ie
Address: Unit G4, Centre Point Business Park, Oak Drive, Park West, Dublin 12, D12 Y262

Cookie Policy

Last updated: 15/06/2026 This Cookie Policy explains how All Ireland Taxi Representatives Association CLG, trading as “Tap a Taxi” (“Tap a Taxi”, “we”, “us”, “our”), uses cookies and similar technologies on our website. It should be read alongside our Privacy Policy above.

1. What Are Cookies?

Cookies are small text files placed on your device when you visit a website. They are widely used to make websites work, to improve your experience, and to provide information to site owners. Similar technologies such as local storage and pixels perform comparable functions. In this policy, we refer to all of these as “cookies”. Cookies may be set by us (first-party cookies) or by third-party services we use (third-party cookies). They may last only for your browsing session (session cookies) or remain on your device for a set period (persistent cookies).

2. How We Use Cookies and Your Consent

We use cookies that are strictly necessary for our website to function, and — with your consent — cookies that help us understand how the site is used, enable additional features, and support our marketing. When you first visit our website, you are presented with a cookie consent banner allowing you to accept or reject non-essential cookies by category. Strictly necessary cookies do not require consent and cannot be switched off. All other cookies are only set after you give consent, and you can change or withdraw your choice at any time (see Section 5). Our legal basis for strictly necessary cookies is our legitimate interest in operating a functioning, secure website. Our legal basis for all other cookies is your consent.

3. Categories of Cookies

The cookies used on our website fall into the following categories. The full, current list of the specific cookies we use — including their providers, purposes and durations — is shown in the Cookie Declaration in Section 4, which is scanned and kept up to date automatically.
  • Strictly necessary – essential for the website to operate and for security. These cannot be switched off and do not require consent.
  • Functional – enable enhanced features such as live chat support. If disabled, some features may not work properly.
  • Analytics and performance – help us understand how visitors use the site so we can improve it. Information is used on an aggregated, statistical basis.
  • Marketing – used to measure and, where relevant, personalise advertising. Set only with your consent.

4. Cookie Declaration

The list below shows the specific cookies currently in use on our website, grouped by category. It is scanned and updated automatically, so it always reflects the cookies actually in use.

5. How to Manage or Withdraw Consent

You can manage your cookie preferences at any time by:
  • Reopening the cookie consent settings on our website to change or withdraw your consent by category
  • Adjusting your browser settings to block or delete cookies — most browsers allow you to refuse or delete cookies via their settings menu
Please note that blocking strictly necessary cookies may affect how the website functions. Guidance for managing cookies is available in the help pages of all major browsers (Chrome, Safari, Firefox, Edge).

6. Third-Party Cookies and International Transfers

Some cookies are set by third-party services that appear on or support our website (for example, analytics and live chat providers). These providers process data in accordance with their own privacy and cookie policies. The providers and their cookies are identified in the Cookie Declaration in Section 4. Where personal data is transferred outside the European Economic Area by these providers, appropriate safeguards such as EU Standard Contractual Clauses are relied upon.

7. Cookies in Our Mobile Apps

Our driver and customer mobile applications do not use browser cookies in the same way as our website, but may use similar technologies and mobile identifiers to operate the Service, remember your preferences, and ensure security. These are described in our Privacy Policy.

8. Changes to This Cookie Policy

We may update this Cookie Policy from time to time to reflect changes in the cookies we use or for legal reasons. Any changes will be posted on this page with an updated revision date. The Cookie Declaration in Section 4 is updated automatically as our cookie usage changes.

9. Contact Us

If you have any questions about our use of cookies, please contact: Email: info@tapataxi.ie Address: Unit G4, Centre Point Business Park, Oak Drive, Park West, Dublin 12, D12 Y262