Legal

Privacy Policy

Last updated: September 16, 2025

Overview

This Privacy Policy explains how BessieAI collects, uses, and shares information when you use the Service. BessieAI is a request qualification layer: it structures charter requests and delivers them to the broker or operator you represent.

1) Information We Collect

We collect information in two main ways: information you provide and information collected automatically for operation and security.

a) Request and contact information
  • Trip details (route, dates/times, passengers, notes)
  • Transport type and trip type
  • Contact details if provided (name, email, phone)
b) Broker/account information
  • Business name and operational contact email
  • Allowed domain and configuration settings
c) Usage and technical information
  • IP address, device and browser type (for security and debugging)
  • Timestamps and basic interaction logs
  • Error logs to keep the Service reliable
2) How We Use Information
  • To provide the Service and deliver structured request summaries
  • To validate, normalize, and enforce completeness (marking missing fields as TBD)
  • To operate, maintain, and improve reliability and security
  • To communicate account-related notices to Customers
  • To prevent abuse, spam, and unauthorized domain use
  • To comply with legal obligations
3) Legal Basis (GDPR)

Where GDPR applies, we process data based on: (a) performance of a contract (providing the Service to Customers), (b) legitimate interests (security, abuse prevention, reliability), and (c) consent where required (for example, when an end user provides contact details).

4) Sharing & Subprocessors

We share information only as needed to run the Service and deliver requests to the Customer. We do not sell personal data.

  • The Customer (broker/operator) — to deliver the request summary
  • Email providers — to send notifications and request summaries
  • Infrastructure providers — hosting, storage, and monitoring required to operate the Service
  • Legal authorities — if required by law
5) Data Retention

We retain request data and operational logs only as long as needed to operate the Service and support Customers. Unless legally required otherwise, we aim to retain request and log data for up to 6 months, after which it may be deleted or anonymized.

6) Cookies & Tracking

We do not use cookies or third-party tracking technologies for analytics or advertising. We only use strictly necessary technical measures required to operate the Service securely.

7) Security

We implement reasonable safeguards to protect information, including access controls and operational monitoring. No system is perfectly secure, and you are responsible for securing your own access and inbox credentials.

8) Your Rights

Depending on your jurisdiction, you may have rights to access, correct, delete, or restrict processing of your data, and to object to processing. To request action, contact us by email.

9) International Transfers

We may process data in countries other than your own, depending on where our service providers operate. Where required, we use appropriate safeguards for cross-border transfers.

10) Children’s Privacy

The Service is not directed to children under 16, and we do not knowingly collect personal data from children.

11) Changes to This Policy

We may update this Privacy Policy from time to time. We will update the “Last updated” date and, if changes are material, provide a notice on the website or by email.

Contact

Privacy questions or requests: bessie-support@kekolabs.eu.