GlassOcean
Legal

Privacy Policy

Last updated: June 4, 2026

This policy explains how GlassOcean collects, uses, and protects your personal information when you use our maritime intelligence platform and services.

1. Overview

GlassOcean Maritime Intelligence ("GlassOcean", "we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform, website, and related services (collectively, the "Services").

By accessing or using our Services, you agree to the collection and use of information in accordance with this policy. If you do not agree with the terms of this policy, please do not access the Services.

2. Information We Collect

We collect information in several ways:

  • •Information you provide directly:
  • •Account registration details (name, work email, company, role)
  • •Communication preferences and support requests
  • •Demo request forms and contact submissions
  • •Payment and billing information (processed by secure third-party providers)
  • •Information collected automatically:
  • •Usage data and analytics (pages visited, features used, session duration)
  • •Device and browser information (IP address, browser type, operating system)
  • •Log data and error reports
  • •Cookies and similar tracking technologies
  • •Information from third parties:
  • •Integration data from connected systems (TMS, ERP, data warehouses)
  • •Publicly available maritime data sources (AIS, vessel registries, port records)
  • •Identity verification services for compliance screening

3. How We Use Your Information

We use the information we collect to:

  • •Provide and improve our Services — deliver real-time maritime intelligence, vessel tracking, risk scoring, and all platform features
  • •Account management — create and manage your account, authenticate users, and provide customer support
  • •Communications — send product updates, security alerts, and administrative messages; send marketing communications where you have consented
  • •Analytics and research — understand how our Services are used, improve performance, and develop new features
  • •Compliance and legal obligations — meet regulatory requirements, prevent fraud, and enforce our Terms of Service
  • •Safety and security — detect, investigate, and prevent security incidents and abuse of our platform

4. How We Share Your Information

We do not sell your personal data. We may share your information with:

Service providers: Third-party vendors who assist us in providing our Services, including cloud hosting, data processing, analytics, payment processing, and customer support. These providers are contractually obligated to protect your information.

Business transfers: If GlassOcean is involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you before your information is transferred and becomes subject to a different privacy policy.

Legal requirements: We may disclose your information if required by law, regulation, legal process, or governmental request, or if we believe disclosure is necessary to protect our rights, your safety, or the safety of others.

With your consent: We may share information with third parties when you have explicitly consented to such sharing.

5. Maritime Intelligence Data

GlassOcean processes substantial quantities of maritime data, including vessel position data (AIS), satellite imagery, port records, and commercial intelligence. This data is used solely to provide our Services.

AIS and vessel tracking data is sourced from public terrestrial and satellite AIS networks. This data is considered public domain information under international maritime law (SOLAS Chapter V).

Satellite imagery is licensed from third-party satellite operators and is used only for vessel detection, oil spill monitoring, and environmental protection purposes within our Services.

Customer-generated intelligence — case notes, reports, alerts, and analyses created by customers within GlassOcean — remains the property of the customer and is not shared with third parties without explicit consent.

6. Data Security

We implement industry-standard security measures to protect your information:

  • •Encryption: All data is encrypted in transit (TLS 1.3) and at rest (AES-256)
  • •Access controls: Role-based access control (RBAC) with multi-factor authentication required for all accounts
  • •Infrastructure security: Our platform is hosted on ISO 27001-certified cloud infrastructure with SOC 2 Type II compliance
  • •Regular audits: We conduct regular security audits, penetration testing, and vulnerability assessments
  • •Incident response: We maintain a documented incident response plan and will notify affected users of security breaches in accordance with applicable law

No method of transmission over the Internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your information, we cannot guarantee absolute security.

7. Data Retention

We retain your personal information for as long as necessary to provide our Services and fulfill the purposes outlined in this policy, unless a longer retention period is required or permitted by law.

  • •Account data: Retained for the duration of your account and for 2 years after account closure
  • •Usage logs and analytics: Retained for 12 months in detailed form, then aggregated
  • •Maritime intelligence data: Vessel tracking history is retained for up to 5 years as part of our platform features
  • •Customer intelligence reports: Retained for the duration of the customer contract plus 1 year

You may request deletion of your personal data at any time (see Section 9).

8. Your Rights

Depending on your location, you may have the following rights regarding your personal information:

  • •Access: Request a copy of the personal information we hold about you
  • •Rectification: Request correction of inaccurate or incomplete information
  • •Erasure: Request deletion of your personal information ("right to be forgotten")
  • •Portability: Request your data in a structured, machine-readable format
  • •Objection: Object to processing of your personal information for direct marketing
  • •Restriction: Request that we restrict processing of your information in certain circumstances

For users in the European Economic Area (EEA) and UK, these rights are provided under GDPR and UK GDPR respectively. For California residents, additional rights apply under CCPA/CPRA.

To exercise any of these rights, contact us at [email protected].

9. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to operate and improve our Services:

Essential cookies: Required for the platform to function (authentication, security, session management). Cannot be disabled.

Analytics cookies: Help us understand how our Services are used (page views, feature usage, performance). Can be disabled via cookie preferences.

Marketing cookies: Used to personalize content and measure the effectiveness of marketing campaigns. Disabled by default; enabled only with your consent.

You can manage your cookie preferences through our Cookie Preferences Center, accessible from the footer of our website, or by adjusting your browser settings.

10. International Data Transfers

GlassOcean operates globally, with infrastructure and team members in Singapore, Indonesia, the Netherlands, and the United States. Your information may be transferred to and processed in countries other than your country of residence.

For transfers from the EEA and UK, we rely on appropriate safeguards including Standard Contractual Clauses (SCCs) approved by the European Commission, and where applicable, adequacy decisions.

For transfers from other jurisdictions, we ensure appropriate protections are in place in accordance with applicable local law.

11. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us at [email protected].

We respond to privacy requests, including access, correction, deletion, and objection requests, at the same address.

This Privacy Policy may be updated from time to time. We will notify you of significant changes by email or via a prominent notice on our platform. Continued use of our Services after changes become effective constitutes your acceptance of the revised policy.