Privacy Policy

Last updated: January 2025

1. Introduction

YachtOS Command ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-native yacht management platform.

By using YachtOS Command, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, please do not use our Service.

2. Information We Collect

2.1 Information You Provide

  • Account Information: Name, email address, vessel name, and account credentials
  • Profile Data: Role (captain, crew, etc.), certifications, and preferences
  • Communication Data: Messages, voice commands, and support inquiries
  • Work Orders: Maintenance requests, descriptions, and photos
  • Payment Information: Billing details processed through secure payment providers

2.2 Automatically Collected Information

  • Usage Data: Features used, time spent, and interaction patterns
  • Device Information: Device type, operating system, browser type, and IP address
  • Location Data: Geographic location for weather and supplier services (with permission)
  • Cookies and Tracking: Session data, preferences, and analytics information

2.3 AI Service Data

  • Voice Recordings: Audio data from voice commands (processed by ElevenLabs)
  • Vision Data: Photos uploaded for AI analysis (processed by Anthropic Claude)
  • AI Conversations: Chat history and command logs
  • AI-Generated Content: Recommendations, analysis results, and reports

3. How We Use Your Information

We use the collected information for the following purposes:

  • To provide and maintain the Service
  • To process voice commands and AI interactions
  • To analyze maintenance photos and provide recommendations
  • To deliver weather forecasts and maritime information
  • To manage work orders and crew coordination
  • To connect you with suppliers and service providers
  • To process payments and manage subscriptions
  • To send notifications and updates
  • To improve and personalize your experience
  • To detect and prevent fraud or security issues
  • To comply with legal obligations

4. Third-Party AI Services

YachtOS Command uses advanced AI services from trusted providers. Your data may be processed by:

Anthropic Claude (AI Intelligence)

Processes conversational AI and vision analysis. Subject to Anthropic's Privacy Policy.

ElevenLabs (Voice AI)

Processes voice commands and audio interactions. Subject to ElevenLabs Privacy Policy.

OpenAI (Speech Recognition)

Processes speech-to-text transcription. Subject to OpenAI's Privacy Policy.

Supabase (Database)

Stores your data securely. Subject to Supabase Privacy Policy.

Vercel (Hosting)

Hosts the application infrastructure. Subject to Vercel Privacy Policy.

5. Data Sharing and Disclosure

We may share your information in the following circumstances:

  • Service Providers: Third-party vendors who perform services on our behalf
  • AI Processing: AI service providers as described above
  • Suppliers: When you request quotes or services
  • Legal Requirements: When required by law or to protect rights and safety
  • Business Transfers: In connection with mergers, acquisitions, or asset sales
  • With Your Consent: When you explicitly authorize sharing

We do not sell your personal information to third parties.

6. Data Retention

We retain your information for as long as necessary to provide the Service and fulfill the purposes outlined in this policy. Specifically:

  • Account Data: Retained while your account is active
  • Voice Recordings: Retained for up to 30 days for quality improvement
  • Work Orders: Retained for historical records and warranty tracking
  • Payment Records: Retained as required by law (typically 7 years)
  • Analytics Data: Aggregated and anonymized data may be retained indefinitely

You may request deletion of your data at any time by contacting us.

7. Data Security

We implement industry-standard security measures to protect your information:

  • Encryption in transit (TLS/SSL) and at rest
  • Secure authentication with password hashing
  • Regular security audits and monitoring
  • Access controls and role-based permissions
  • Secure data centers and infrastructure
  • Incident response and breach notification procedures

However, no method of transmission over the internet is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.

8. Your Rights and Choices

Depending on your location, you may have the following rights:

  • Access: Request a copy of your personal data
  • Correction: Request correction of inaccurate information
  • Deletion: Request deletion of your personal data
  • Portability: Receive your data in a structured format
  • Restriction: Request restriction of processing
  • Objection: Object to certain types of processing
  • Withdraw Consent: Withdraw previously given consent
  • Opt-Out: Unsubscribe from marketing communications

To exercise these rights, please contact us using the information provided below.

9. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to enhance your experience:

  • Essential Cookies: Required for the Service to function
  • Analytics Cookies: Help us understand how you use the Service
  • Preference Cookies: Remember your settings and preferences
  • Performance Cookies: Monitor and improve Service performance

You can control cookie preferences through your browser settings. Note that disabling cookies may affect Service functionality.

10. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws.

When we transfer data internationally, we ensure appropriate safeguards are in place, such as:

  • Standard contractual clauses
  • Data processing agreements
  • Compliance with GDPR, CCPA, and other privacy regulations
  • Secure data transfer protocols

11. Children's Privacy

The Service is not intended for use by individuals under the age of 18. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.

12. California Privacy Rights (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):

  • Right to know what personal information is collected
  • Right to know if personal information is sold or disclosed
  • Right to say no to the sale of personal information
  • Right to access your personal information
  • Right to equal service and price

13. European Privacy Rights (GDPR)

If you are in the European Economic Area (EEA), you have rights under the General Data Protection Regulation (GDPR):

  • Right to access your personal data
  • Right to rectification of inaccurate data
  • Right to erasure ("right to be forgotten")
  • Right to restrict processing
  • Right to data portability
  • Right to object to processing
  • Right to lodge a complaint with a supervisory authority

14. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by:

  • Posting the new Privacy Policy on this page
  • Updating the "Last updated" date
  • Sending you an email notification (for material changes)
  • Displaying a prominent notice in the Service

You are advised to review this Privacy Policy periodically for any changes. Changes are effective when posted.

15. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Email: privacy@yachtos.com

Subject Line: Privacy Inquiry - YachtOS Command

We will respond to your inquiry within 30 days.