Privacy Policy

Apr 27, 2026

Privacy Policy

Last updated: April 27, 2026

This Privacy Policy explains how Trike Training, LLC (doing business as Trike.co — "Trike," "we," "us," or "our") collects, uses, shares, and protects your information when you use our services. Our services include:

  • Our website at https://trike.co and any subdomain

  • Our web and mobile applications, including Trike Backoffice

  • Any other product, feature, or communication that links to this Privacy Policy

This policy applies to end users (employees of our customers who use Trike for training, compliance, and operations), to administrators, to prospective customers, and to visitors to our website.

If you do not agree with this Privacy Policy, please do not use our services. Questions: privacy@trike.co.

Summary

  • What we collect: account information, training and learning records, device and usage data, and — where applicable — payment information and HR data integrated from your employer's HRIS.

  • Why we collect it: to provide and operate the Trike service, secure user accounts, support customers, and meet legal obligations.

  • What we share: only what is needed to operate the service, with vetted subprocessors. We do not sell your personal information, and we do not share mobile or SMS data with anyone for marketing.

  • SMS: we send transactional SMS for 2FA, account notifications, and security alerts. You can opt out at any time by replying STOP. See Section 4.

  • Your rights: you can request access to, correction of, or deletion of your information at any time at privacy@trike.co.

Table of Contents

  1. Information We Collect

  2. How We Use Information

  3. When and With Whom We Share Information

  4. SMS / Text Messaging

  5. Third-Party Websites

  6. Cookies and Similar Technologies

  7. How Long We Keep Information

  8. How We Protect Information

  9. Children's Information

  10. Your Privacy Rights

  11. California Residents

  12. Other US State Residents

  13. International Users

  14. Do-Not-Track Signals

  15. Changes to This Policy

  16. Contact Us

1. Information We Collect

Information you give us

When you, your employer, or your administrator sets up a Trike account or uses our services, we collect:

  • Identifiers — name, email address, phone number, mailing address, username, employee ID

  • Authentication data — password, 2FA tokens, recovery information

  • Account information — job title, location or store assignment, role, manager, hire date

  • Learning and training data — courses assigned and completed, quiz and assessment scores, certifications, completion timestamps, learning preferences, performance feedback, training history

  • Operational data — forms, inspections, tasks, and similar records you create or are assigned within the Trike platform

  • Communications — messages you send to support, comments, and content you post in the platform

  • Payment data — for paying customers, payment-card data processed by Stripe (we do not store full card numbers; see Stripe's privacy notice)

Information from your employer's HRIS

When your employer connects an HRIS or payroll system (for example, Paylocity, Paycor, ADP, Paycom, or UKG) to Trike, we receive employee records — typically name, email, phone, location, role, and employment status — through Merge.dev or a direct integration. We use this data to provision Trike accounts and keep training assignments aligned with each employee's role.

Information collected automatically

When you use our services, we automatically collect:

  • Device information — device type, operating system, browser type and version, device identifiers, mobile carrier

  • Usage information — pages and content viewed, features used, links clicked, date and time stamps, time spent in courses, error logs

  • Location information — approximate location from IP address; precise location from a mobile device only when you grant permission for a feature that needs it

  • Cookies and similar technologies — see Section 6

Information from other sources

For business development, we may receive limited business contact information about prospective customers (typically multi-location convenience store, fuel, and QSR operators) from public databases, professional networks such as LinkedIn, or B2B data providers. We use this information to introduce Trike to potential customers. We do not purchase mobile phone numbers for SMS marketing.

Sensitive information

To the extent any data we collect would qualify as "sensitive personal information" under applicable law — for example, account credentials, 2FA tokens, or precise geolocation — we process it only to provide and secure the Trike service. We do not use sensitive personal information for advertising or profiling.

2. How We Use Information

We use your information to:

  • Create, authenticate, and maintain user accounts

  • Deliver, operate, secure, and improve the Trike service, including AI-assisted features

  • Provision training assignments, track completion, and produce compliance records

  • Send service-related messages (account notifications, security alerts, 2FA codes, course assignments, due-date reminders)

  • Provide customer support and respond to inquiries

  • Process payments for paying customers

  • Detect, prevent, and respond to fraud, abuse, security incidents, and policy violations

  • Comply with legal and regulatory obligations and enforce our Terms of Service

  • Communicate with administrators and prospective customers about Trike's products and services

  • Aggregate or de-identify data to analyze usage and improve the service

We do not use your information to deliver third-party advertising or to build advertising profiles about you.

3. When and With Whom We Share Information

We share information only as described in this section.

Subprocessors (service providers)

We share information with vendors that help us operate the Trike service. They are bound by contract to use your information only on our behalf and only to provide services to us. Categories include:

  • Cloud hosting and application infrastructure

  • Database and storage

  • Payment processing

  • HRIS and payroll integration

  • AI processing for product features

  • SMS messaging delivery

  • Email delivery

  • Analytics and product monitoring

  • Customer support tooling

  • Identity, authentication, and security tooling

A current list of subprocessors is available on request at privacy@trike.co.

Your employer or organization

If you use Trike through an employer or organization that holds the Trike account, your administrator can access your training records, learning history, completion status, and other account information for the legitimate purposes of managing the workforce and meeting compliance obligations.

Legal, regulatory, and safety

We may disclose information when we reasonably believe disclosure is required to comply with a law, regulation, subpoena, or court order; to enforce our Terms of Service; to protect the rights, property, or safety of Trike, our customers, or the public; or to investigate fraud or a security incident.

Business transfers

If Trike Training, LLC is involved in a merger, acquisition, financing, or sale of all or part of its business or assets, your information may be transferred as part of that transaction. We will notify you and require any successor to honor the commitments in this Privacy Policy.

What we do not do

  • We do not sell your personal information.

  • We do not share your personal information with third parties or affiliates for their own marketing or promotional purposes.

  • In particular, no mobile information — including phone numbers, SMS opt-in or consent status, and SMS message contents — will be sold or shared with any third party or affiliate for promotional or marketing purposes. This restriction applies notwithstanding anything else in this Privacy Policy.

4. SMS / Text Messaging

Trike sends SMS text messages to users as part of providing the Trike service. These messages are transactional and service-related, and may include:

  • Two-factor authentication (2FA) codes

  • Account notifications (for example, assignment alerts and completion confirmations)

  • Security alerts (for example, new device sign-in or password changes)

Message frequency varies based on your account activity and your administrator's configuration. Message and data rates may apply.

How you opt in

You opt in to SMS from Trike when (a) you provide your mobile phone number to Trike during account setup, in your profile, or through your administrator, and (b) your administrator enables SMS-based notifications or 2FA for your account. Where 2FA is required by your employer for security, providing a phone number for 2FA is a condition of accessing the service.

How to opt out

You may opt out at any time by replying STOP to any SMS message from Trike. Doing so will stop all SMS messages from Trike, including transactional messages required to use the service. If you opt out and your account requires SMS-based 2FA, you may not be able to sign in to Trike until SMS is re-enabled or your administrator changes your authentication method.

Reply HELP to any SMS message for help, or email privacy@trike.co.

How we handle mobile information

We use SMS opt-in data, phone numbers, and SMS message contents only to deliver SMS as part of the Trike service. We share this information only with the subprocessors needed to deliver messages — our SMS provider, the mobile network operators that route messages to your device, and any vendor directly involved in message delivery.

No mobile information — including phone numbers, SMS opt-in or consent status, and SMS message contents — will be sold or shared with third parties or affiliates for promotional or marketing purposes.

5. Third-Party Websites

Our services may link to third-party websites, services, or applications that we do not control. We are not responsible for the privacy or security practices of those third parties. Review their privacy notices before sharing information with them.

6. Cookies and Similar Technologies

We use cookies, local storage, and similar technologies to keep you signed in, remember preferences, secure the service, and understand how the service is used. You can control cookies through your browser settings, though disabling them may break parts of the service.

7. How Long We Keep Information

We retain personal information for as long as needed to provide the service, comply with legal and regulatory obligations (including training and compliance recordkeeping requirements that may apply to your employer), resolve disputes, and enforce our agreements. Training and compliance records may be retained for the period required by your employer or by applicable law, even after an account is deactivated.

When we no longer have a legitimate need to keep information, we delete or de-identify it. Backup archives may persist for a limited time after deletion from active systems.

8. How We Protect Information

We use industry-standard technical and organizational measures to protect personal information, including encryption in transit, encryption at rest where appropriate, role-based access controls, and database row-level security. No system is perfectly secure — we cannot guarantee absolute security, and you should use a strong, unique password and enable 2FA where available.

9. Children's Information

Trike is a workplace training platform intended for use by adults in the workforce. We do not knowingly collect information from children under 16. If you believe we have collected information from a child under 16, contact privacy@trike.co and we will take reasonable steps to delete it.

10. Your Privacy Rights

You have rights with respect to your personal information. The specific rights you have depend on where you live, but they generally include:

  • Access — request a copy of the personal information we hold about you

  • Correction — ask us to correct inaccurate information

  • Deletion — ask us to delete your information (subject to exceptions, including records your employer is required to retain)

  • Portability — request a portable copy of certain information

  • Withdraw consent — withdraw consent you previously gave for processing

  • Opt out of sale or sharing — we do not sell or share your personal information for cross-context behavioral advertising; you can confirm this status

To exercise any of these rights, email privacy@trike.co. We will verify your identity before acting on a request and respond within the time required by applicable law.

If your employer holds the Trike account, certain requests — especially deletion of training records required for compliance — may require coordination with your employer.

11. California Residents

If you live in California, you have rights under the California Consumer Privacy Act, as amended by the California Privacy Rights Act (CCPA/CPRA), including the rights described in Section 10 plus the right to limit the use of sensitive personal information and the right to non-discrimination for exercising any of your rights.

We do not "sell" personal information as that term is defined under the CCPA, and we do not "share" personal information for cross-context behavioral advertising.

To exercise California rights, email privacy@trike.co. You may designate an authorized agent to act on your behalf.

12. Other US State Residents

Residents of states with comprehensive consumer privacy laws — including, without limitation, Virginia, Colorado, Connecticut, Utah, Texas, Oregon, Montana, Iowa, Indiana, Tennessee, New Hampshire, New Jersey, and Delaware — have rights similar to those described in Section 10. To exercise these rights, email privacy@trike.co.

13. International Users

Trike is operated from the United States. If you access the service from outside the United States — including from the EEA, UK, Switzerland, Bermuda, or elsewhere — your information will be transferred to and processed in the United States. Where required, we rely on appropriate safeguards such as Standard Contractual Clauses.

If you are in the EEA or UK and believe we are processing your information unlawfully, you may complain to your national data protection authority. Swiss residents may contact the Federal Data Protection and Information Commissioner.

14. Do-Not-Track Signals

We do not currently respond to "Do Not Track" browser signals because there is no consistent industry standard for them. If a standard is adopted that we are required to follow, we will update this Privacy Policy.

15. Changes to This Policy

We may update this Privacy Policy from time to time. The "Last updated" date at the top reflects the most recent version. If we make material changes, we will notify you by posting a prominent notice on our website or sending a direct notice. Your continued use of the service after an update means you accept the revised policy.

16. Contact Us

For privacy questions or to exercise any right described above:

Email: help@trike.co

Mail: Trike Training, LLC 320 S Madison Ave Monroe, GA 30656 United States