1. Introduction
Aerobase ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our jetlag recovery service.
2. Information We Collect
2.1 Information You Provide
- Account Information: Name, email address, and password when you create an account
- Profile Information: Timezone preferences, sleep patterns, and travel preferences
- Flight Data: Flight numbers, dates, origins, destinations, and booking references
- Payment Information: Billing details processed securely through Stripe
- Communications: Messages you send us through support channels
2.2 Information Collected Automatically
- Usage Data: Pages visited, features used, and interaction patterns
- Device Information: Browser type, operating system, and device identifiers
- Log Data: IP addresses, access times, and referring URLs
- Cookies: Session cookies, authentication tokens, and analytics cookies
2.3 Information from Third Parties
- Authentication Providers: Profile information from Clerk (SSO provider)
- Calendar Services: Calendar event data when you enable sync
- Flight Data Providers: Real-time flight status and schedule information
3. How We Use Your Information
We use your information to:
- Provide personalized jetlag recovery plans based on your flights
- Sync recovery events to your connected calendars
- Send flight status updates and delay notifications
- Process payments and manage subscriptions
- Improve our algorithms and service quality
- Respond to your inquiries and provide customer support
- Send important service announcements
- Detect and prevent fraud or abuse
4. How We Share Your Information
We share your information only in these circumstances:
- Service Providers: With vendors who help operate our service (hosting, analytics, payments)
- Calendar Integrations: With calendar providers when you authorize sync
- Legal Requirements: When required by law or to protect our rights
- Business Transfers: In connection with a merger, acquisition, or sale of assets
We never sell your personal data to third parties.
5. Data Security
We implement industry-standard security measures to protect your data:
- TLS/SSL encryption for all data in transit
- AES-256 encryption for data at rest
- Regular security audits and penetration testing
- Access controls and authentication requirements
- Secure data centers with SOC 2 compliance
6. Data Retention
We retain your data for as long as your account is active or as needed to provide services. After account deletion:
- Personal data is deleted within 30 days
- Anonymized analytics data may be retained longer
- Billing records are kept for 7 years for tax compliance
7. Your Rights
Depending on your location, you may have the right to:
- Access: Request a copy of your personal data
- Correction: Update or correct inaccurate data
- Deletion: Request deletion of your personal data
- Portability: Export your data in a machine-readable format
- Opt-out: Unsubscribe from marketing communications
- Restriction: Limit how we use your data
To exercise these rights, contact us at privacy@aerobase.app.
8. Cookies and Tracking
We use cookies and similar technologies for:
- Essential Cookies: Required for authentication and security
- Functional Cookies: Remember your preferences and settings
- Analytics Cookies: Understand how you use our service (PostHog)
You can manage cookie preferences in your browser settings. Disabling essential cookies may affect service functionality.
9. International Data Transfers
Your data may be transferred to and processed in the United States and other countries where our service providers are located. We ensure appropriate safeguards are in place for international transfers, including Standard Contractual Clauses.
10. Children's Privacy
Our Service is not intended for children under 16 years of age. We do not knowingly collect personal information from children. If you believe we have collected data from a child, please contact us immediately.
11. GDPR Compliance (EEA Users)
For users in the European Economic Area, we process data under these legal bases:
- Contract: To provide the services you requested
- Legitimate Interest: To improve our service and prevent fraud
- Consent: For marketing communications and optional features
- Legal Obligation: To comply with applicable laws
12. CCPA Compliance (California Users)
California residents have additional rights under the CCPA, including the right to know what personal information we collect and to request deletion. We do not sell personal information. To exercise your CCPA rights, contact us at privacy@aerobase.app.
13. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of material changes by posting the updated policy on this page and updating the "Last updated" date. We encourage you to review this policy regularly.
14. Contact Us
For privacy-related questions or concerns, please contact us: