UPDATED AS OF AUGUST 27, 2026
taCONNECT SECURITY
taCONNECT is a business CRM and contact-management platform owned by Travel Relations LLC ("TR"), used in a manner similar to other sales CRMs. Each client company receives its own secured taCONNECT account and uploads its own company contacts for its business development managers and sales team. A core service is contact updating: TR operates forms in the market that capture corrected data points. If that person already exists in a client's secured taCONNECT database, the client may download the update into that existing record. An update is not used to add a contact to a client database where that contact does not already exist.
The security of taCONNECT.net is managed on multiple levels. We use security measures designed to protect against the loss, misuse or alteration of the information under our control. Client accounts are separated. When you enter sensitive information (such as a credit card number) on our order forms, we encrypt the transmission of that information in transit using TLS/HTTPS. User access to Travel Relations/taCONNECT Client services is via HTTPS connections.
Our security is broken down to:
HOSTING
Our hosting infrastructure is set up on Amazon Web Services (AWS) in us-east (Virginia), United States, and uses the controls listed below.
Security Groups and Network ACLs
Security Groups create firewall rules controlling incoming and outgoing traffic at the instance level. Traffic can be restricted by protocol (TCP, UDP, ICMP), IP address, and port.
Network Access Control Lists (ACLs) work at the subnet level and can be used to restrict or blacklist traffic, including in response to denial-of-service activity.
Data Encryption
AWS provides encryption for EBS volumes, S3 buckets, and Relational Database Service (RDS).
When an encrypted EBS volume is attached to an instance, data on the volume, disk I/O, and snapshots from the volume are encrypted. When so configured, AWS encrypts each S3 object. Amazon S3 server-side encryption uses 256-bit Advanced Encryption Standard (AES-256).
RDS can require encrypted connections. Once an encrypted connection is established, data transferred between the DB instance and the application is encrypted in transit. Client CRM data is stored in taCONNECT for that client's account so that client's users can access only their company's contacts, subject to the access rights the client assigns.
NETWORK PAYMENT SECURITY
Payment processing is handled with Sectigo-secured HTTPS and Authorize.Net. Card data entered on order forms is transmitted encrypted; card numbers are processed by the payment provider.
Sectigo
Transmission of information over HTTPS, including payment information submitted on our order forms, is encrypted in transit. Certificates use industry-standard signatures and up to 256-bit encryption.
Authorize.Net
Authorize.Net processes payments using encrypted connections and its own security and compliance program. Travel Relations does not store full payment card numbers in taCONNECT client CRM records.
USER ACCOUNT SECURITY
Client-user access to taCONNECT is provided by a username and password selected for that client's secured account. Passwords are stored in encrypted/hashed form. Account setup, user permissions, maintenance, and termination for a client's instance are under that client's control, subject to TR platform administration. Clients should use unique passwords and limit access to authorized employees.
EMAIL MARKETING
Our email infrastructure is set up on SendGrid (Twilio).
SendGrid
SendGrid is used to deliver email. SendGrid's current privacy practices are described at its own site. Travel Relations does not claim that SendGrid, TR, or taCONNECT is certified under the EU-U.S. Safe Harbor, Privacy Shield, or Data Privacy Framework.
Email Compliance
Travel Relations/taCONNECT follows the United States CAN-SPAM Act, Canada's Anti-Spam Legislation (CASL), and the GDPR/UK GDPR where they apply.
Completing a TR/client form (about 30 data points on who you are, where you do business, and sales specialties) is how a contact opts into the TR services described in our Privacy Policy. The form does not contain separate opt-in or opt-out choices for individual TR services. After submit, a "submitted" contact is added to TR Marketing Services and InsiderTravelReport. The contact may unsubscribe at any time from Marketing Services promotional email and from InsiderTravelReport.
Every commercial email sent from Travel Relations/taCONNECT or our partners includes an unsubscribe link. A contact who unsubscribes is removed from future emails of that type. We keep a suppression record so we do not email that address again.
See the Privacy Policy at
https://www.taconnect.net/taconnect_privacy_terms.htm
and
https://www.taconnect.net/privacy_terms.htm.
Where anti-spam law distinguishes types of permission:
HOW TO CONTACT US
Travel Relations LLC
4891 Long Beach Rd, Suite 3, PMB#308
Southport, NC 28461
support@travelrelations.com