Privacy Policy
Effective 5 August 2026 · version 2026-08-05. PureOceanMotion is operated by PureOceanMotion LLC. This policy explains how we process account, conversation, safety, usage, and payment data. The registered address remains pending publication before paid production launch.
Data we process
We process usernames, password hashes, recovery-code hashes, sessions, security event metadata, conversations, selected models, usage, credit ledger entries, orders, reports, appeals, and support records. Image upload is currently disabled.
Why we process it
Data is used to authenticate users, provide AI responses, calculate credits, complete payments, prevent fraud and abuse, enforce policies, investigate reports, handle appeals, maintain security, and meet lawful obligations.
AI, moderation, and hosting providers
Conversation text is sent to the model provider selected in the interface and to Sightengine when configured for text moderation. Cloudflare, Vercel, and Neon may process network, application, and database data needed to host and protect the service. Provider secrets remain server-side. Moderation records normally contain a keyed content fingerprint, categories, scores, policy version, and action—not complete prompt or response text.
Payments
The customer chooses an available payment provider, including Dodo Payments or Airwallex. Hosted checkout processes payment details outside PureOceanMotion. We store the billing email when supplied, provider customer and order references, amount, currency, status, and reconciliation metadata, but do not request or store complete card numbers or postal codes. If a selected payment method requires additional billing details, Dodo collects them directly on its hosted checkout.
International processing
Hosting, moderation, model, and payment providers may process data outside the user's country or region. A separate Cross-border Data Transfer Notice explains the categories, purposes, recipients, and choices. Consent can be withdrawn by closing the account or contacting info@pureoceanmotion.com, but services that require the transfer may then be unavailable.
Retention and deletion
Active conversations remain until the user deletes them or closes the account. A deleted conversation is hidden from ordinary use and can be restored for 30 days; contact info@pureoceanmotion.com to review a deletion request. Payment, ledger, fraud-prevention, audit, policy-acceptance, safety-case, legal-hold, and dispute records may be retained for the period required to establish transactions, protect the service, resolve claims, and meet applicable law. Legal holds override routine deletion.
Cookies and local storage
The service uses essential session and locale cookies and local browser storage for interface preferences. These are required for authentication, security, language, and theme behavior. Non-essential advertising or analytics storage must not be introduced without updating this notice and, where required, obtaining consent.
Security and access
We use hashed session tokens, private server-side credentials, least-privilege administration, append-only audit events, request validation, rate limits, and restricted case access. No Internet service can guarantee absolute security.
Your choices and contact
Authenticated users can manage sessions, export account data, request account deletion, and appeal safety decisions. Privacy access, correction, deletion, objection, consent-withdrawal, and transfer questions may be sent to info@pureoceanmotion.com. We verify the requester before disclosing or changing account data.
Age
The service is not offered to people under 18. If you believe a minor has created an account or that child-safety content is present, use the priority abuse-report channel.