Privacy Policy

Last updated: 8/21/2025

Introduction

SeaTime ("we," "our," or "us") is committed to protecting your privacy and ensuring the security of your maritime data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our maritime vessel tracking and crew management platform.

This policy applies to all users of SeaTime, including vessel owners, crew members, and maritime professionals who access our services through our website, mobile applications, or API.

Information We Collect

Personal Information

  • Account Information: Name, email address, phone number, and password
  • Professional Details: Maritime position, certifications, and employment history
  • Vessel Information: Vessel name, MMSI, IMO number, and callsign
  • Location Data: Vessel positions, sign-on/off locations, and activity coordinates
  • Duty Records: Work schedules, duty sessions, and sea time calculations

Automatically Collected Information

  • Usage Data: How you interact with our platform, pages visited, and features used
  • Technical Data: IP address, browser type, device information, and operating system
  • AIS Data: Real-time vessel position data from Automatic Identification System
  • Log Data: Server logs, error reports, and performance metrics

How We Use Your Information

Primary Purposes

  • Provide maritime vessel tracking and crew management services
  • Calculate and track personal sea time for regulatory compliance
  • Manage crew assignments, duty schedules, and vessel activities
  • Generate MCA-compliant reports and testimonials
  • Ensure vessel safety and operational efficiency

Secondary Purposes

  • Improve our services and develop new features
  • Provide customer support and technical assistance
  • Send important updates about our services
  • Ensure platform security and prevent fraud
  • Comply with legal obligations and maritime regulations

Legal Basis for Processing (GDPR)

Contract Performance

Processing necessary to provide our maritime services and fulfill our contractual obligations.

Legitimate Interest

Processing for vessel safety, operational efficiency, and service improvement.

Legal Obligation

Processing required to comply with maritime regulations and legal requirements.

Consent

Processing based on your explicit consent for optional features and communications.

Data Sharing and Third Parties

Service Providers

  • Supabase: Database hosting and authentication services
  • Datalastic: AIS data provider for vessel tracking
  • Resend: Email delivery services for notifications
  • Vercel: Application hosting and CDN services

Legal Disclosures

We may disclose your information when required by law, to protect our rights, or in response to valid legal requests from maritime authorities or regulatory bodies.

Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of the business transaction, subject to the same privacy protections.

Data Security

Security Measures

  • End-to-end encryption for data transmission
  • Row-level security (RLS) for vessel data isolation
  • JWT-based authentication with secure token management
  • Regular security audits and vulnerability assessments
  • Secure hosting on enterprise-grade infrastructure
  • Access controls and permission-based restrictions

Maritime-Specific Security

  • Vessel-specific data isolation and access controls
  • Secure AIS data handling and processing
  • Audit trails for all maritime operations
  • Compliance with maritime cybersecurity standards

Data Retention

Active Accounts

Data retained while your account is active and for 7 years after account closure to comply with maritime regulations and legal requirements.

Sea Time Records

Sea time calculations and duty records retained for 10 years to support professional certifications and regulatory compliance.

AIS Data

Vessel position data retained for 2 years for operational purposes, then anonymized or deleted unless required for legal compliance.

Log Data

System logs and audit trails retained for 1 year for security monitoring and troubleshooting purposes.

Your Rights (GDPR)

Right to Access

Request a copy of your personal data

Right to Rectification

Correct inaccurate or incomplete data

Right to Erasure

Request deletion of your personal data

Right to Portability

Receive your data in a structured format

Right to Restriction

Limit how we process your data

Right to Object

Object to certain processing activities

Right to Withdraw Consent

Withdraw consent for optional processing

Right to Complain

Lodge a complaint with supervisory authorities

International Data Transfers

SeaTime operates globally and may transfer your data to countries outside your residence. We ensure adequate protection through:

  • Standard Contractual Clauses (SCCs) for EU data transfers
  • Adequacy decisions where applicable
  • Additional safeguards for maritime data security
  • Compliance with local maritime regulations

Contact Us

Data Protection Officer

For privacy-related inquiries, data subject requests, or complaints:

Email: privacy@seatime.app

Subject: "Privacy Request - [Your Name]"

General Support

For general questions about our services:

Email: support@seatime.app

Response Time: Within 48 hours

Updates to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. We will notify you of any material changes through our platform or via email at least 30 days before the changes take effect.

© 2025 SeaTime. All rights reserved.