Acceptable Use Policy

The rules that keep TourVilo safe for every agency using it.

Last updated: 22 July 2026

The short version

Run your travel business, contact people who agreed to hear from you, and store data you have a lawful right to hold. Do not use TourVilo to spam, defraud, host malware, or break the law. We investigate before we act, and we tell you why.

1. Who this applies to

This policy applies to every user of a TourVilo workspace — owners, staff you invite, and anyone acting on your behalf. You are responsible for what the people you invite do with your account.

2. What TourVilo is for

  • Managing leads, customers, quotations, bookings and payments for a travel business.
  • Storing traveller documents — passports, visas, vouchers — where you have a lawful basis and the traveller's knowledge.
  • Sending quotations, confirmations and follow-ups to people who enquired with you or are your customers.
  • Inviting your own staff to collaborate in your workspace.

3. What is not allowed

Spam and unsolicited messaging. Uploading purchased, scraped or rented contact lists. Messaging people who never enquired with you. Ignoring an unsubscribe or a request to stop.

Fraud and deception. Advertising tours, flights or accommodation you cannot deliver. Taking deposits with no intention of providing the service. Impersonating another agency, brand or person. Falsifying invoices, payment slips or booking confirmations.

Malware and attacks. Uploading files containing viruses or malicious code. Probing, scanning or load-testing our systems without written permission. Attempting to access another agency's workspace or to bypass authentication, rate limits or tenant isolation.

Copyright and IP abuse. Uploading itinerary text, photographs or brand assets you do not have a licence to use. Reselling or white-labelling TourVilo itself without a written agreement.

Illegal content and conduct. Anything facilitating human trafficking, exploitation, sanctions evasion, money laundering, or travel arranged for an illegal purpose. Content that is defamatory, harassing, or sexually exploitative of minors.

Misuse of the platform. Sharing one login between multiple people to avoid user limits. Reselling access to your workspace. Automated scraping of the application.

4. Your responsibility for traveller data

You decide what personal data goes into your workspace, so you are the data controller for it and we process it on your behalf. Only collect what you need, tell travellers what you hold, and delete it when you no longer have a reason to keep it. See our Data Protection page for the processing terms.

5. How we investigate

If we receive a report or our monitoring flags something, we review the account activity log and the minimum data needed to understand what happened. We do not read your customer records for any other reason.

In most cases we contact the account owner first, explain the problem, and give a reasonable period to fix it. We act immediately without notice only where there is an active security threat, a legal obligation, or a risk of serious harm.

6. Suspension and termination

  • Warning. An email explaining what breached the policy and what to change.
  • Feature restriction. We may disable uploads or outbound email while an issue is unresolved.
  • Suspension. The workspace becomes read-only. You can still sign in and export your data.
  • Termination. For serious or repeated breaches. We give at least 14 days to export your data unless the law requires otherwise. Terminations for breach are not refunded.

7. Appealing a decision

If you think we got it wrong, reply to the notice or email support@tourvilo.com within 30 days. A different person reviews the appeal, and we respond in writing with our reasoning.

8. Reporting abuse

To report misuse of TourVilo by one of our customers, email support@tourvilo.com with as much detail as you can. To report a security vulnerability in TourVilo itself, use security@tourvilo.com and see our Security page for our responsible disclosure terms.