Who is responsible
UXDuck is operated by [company name], a company registered in England and Wales with company number [company number]. For privacy questions, contact support@uxduck.com.
What stays on your computer
UXDuck connects to your vehicles and simulations on your own computer, or in your browser when nothing is installed. Telemetry, logs, parameters, missions and recorded flights stay there unless you choose to share them, for example by sending feedback with flight data or turning on sync.
What we collect
What we process depends on how you use UXDuck:
- Account: your email address, sign-in codes (stored hashed and valid for ten minutes), sessions, and your choice of product updates.
- Product updates: the email address you give, when you confirmed it and when you unsubscribed. An address counts only after you confirm it from the email we send.
- Usage analytics: event names with small, fixed properties such as the version and platform, never free text, coordinates, or names or identifiers of vehicles. On by default in the app, and you can turn it off in Settings > Data. Some counts carry no identifier and continue when it is off: downloads, new installs, and update checks by version and platform.
- Conversations: when you use the hosted model, your messages and the context the agent sends are passed to the model provider to answer you. When conversation sharing is on (the default for free accounts, and you can turn it off in Settings > Data), we keep them to review failures and test changes, with coordinates coarsened and secrets removed. We do not train models on them.
- Flight data: off by default, and shared one flight at a time when you choose.
- Feedback: what you send in a report: your text, and when you include them, a screenshot, technical details (versions, where you were in the app, recent errors and log lines, with secrets removed and coordinates coarsened), flight data and an email for a reply. You see each part and can remove it before sending.
- Errors: the error's type, a code and its stack, never its message text, under the usage analytics switch.
- Place search and maps: what you search for and the map area you view are sent to Esri through our API, which does not log them.
- Website: which pages are visited and download clicks, as described under Cookies. Downloads are counted by our server with no identifier.
- Support: the emails you send to support@uxduck.com.
Why we use data
- To create and secure accounts and sign-in.
- To provide the hosted model, sync, place search, downloads, updates and support.
- To prevent abuse, enforce rate limits, find and fix failures, and protect UXDuck.
- To send sign-in codes and, where you asked for them, product updates.
- To understand how UXDuck is used and whether it works, when analytics allow.
Legal bases
For UK and EU users, we rely on contract where processing is needed to provide UXDuck; consent for product update emails and for analytics cookies on the website; legitimate interests for security, abuse prevention, error reports, counts without an identifier and product improvement; and legal obligation where records are required.
When data is shared
We share data with service providers only where needed to run UXDuck. The current list is at /subprocessors.
We do not sell personal data, and we do not use it for advertising.
International transfers
UXDuck is operated from the United Kingdom, and most of the providers at /subprocessors are based in the United States, so using an account, the hosted model, email, analytics or feedback involves transferring personal data outside the UK. We rely on the safeguards in each provider's data processing terms: the UK International Data Transfer Addendum to the EU Standard Contractual Clauses, or the provider's certification under the UK Extension to the EU-US Data Privacy Framework. Contact support@uxduck.com for the safeguards that apply to a specific provider.
Retention and deletion
Data on your computer stays there until you delete it. Account data is kept while your account is active. Shared conversations are kept for 180 days; those linked to feedback are kept until the test made from them is retired. Deleting your account deletes both, and you can see and delete what you shared.
Product update addresses are kept until you unsubscribe; unconfirmed addresses are not sent anything but the confirmation email. Feedback reports are kept in Linear until the issue is closed and no longer needed.
Your rights
Depending on where you live, you may have rights to access, correct, delete or export your personal data, or to object to some processing. Contact support@uxduck.com to make a request. You may also complain to your local data protection authority; in the UK, that is the Information Commissioner's Office.
Children
UXDuck is not intended for children under 13, and not for UK or EU children under 16 without consent from a parent or guardian.