Privacy Policy
This Privacy Policy explains how Daite Software Pvt Ltd ("RoRoSAFE", "we", "us") collects, uses, shares and protects personal data in connection with our website, our pilot programs, and our commercial engagements with shipowners, port operators, marine insurers, and classification societies.
We design our products to minimise personal data. The telemetry our sensors generate on cargo decks describes vehicles, temperatures and network state — not individuals. The personal data we do process is primarily contact data for commercial counterparties and limited operator identifiers in incident logs.
1. Who is the controller
Daite Software Pvt Ltd, registered in 1/734b, Padianallur, Chennai - 600052, Tamil Nadu, India, acts as the data controller for personal data described in this policy. For pilot deployments and operator engagements, we typically act as a data processor under a separate Data Processing Agreement with the operator, who remains the controller of their personnel data.
2. Categories of personal data we collect
Business contact data
Name, business email, employer, role, country, phone number, and the contents of any communication you initiate with us — via the website contact form, demo requests, Calendly bookings, email or LinkedIn.
Pilot and deployment data
For executed pilot deployments: vessel identifier, voyage metadata, sensor telemetry (per-cell temperature time series, anomaly events, network health). This telemetry is not personal data. Where incident logs or maintenance records reference named crew (e.g. an officer who acknowledged an alert), we process those identifiers strictly as a processor on the operator's instructions.
Website analytics
Two kinds, both loaded only after you accept analytics cookies. Aggregated, IP-anonymised usage statistics — pages viewed, referring source, approximate region, device class. And session analytics via Microsoft Clarity, which records individual browsing sessions on this website: pages visited, clicks, scrolling and mouse movement, replayed as a reconstruction of the page. Text you type into form fields is masked by Clarity and is not captured. We run no advertising trackers, and we do not use any of this to build profiles about you as an identified individual or to make decisions affecting you.
3. Purposes and legal bases (GDPR Art. 6)
- To respond to enquiries, demos, and pilot requests — Art. 6(1)(b) (steps prior to entering into a contract).
- To deliver and support pilot deployments — Art. 6(1)(b) (contract) and, where applicable, 6(1)(c) (legal obligation).
- To send technical updates, security advisories, and account communications — Art. 6(1)(f) (legitimate interest in operating a B2B service).
- To send commercial newsletters where you opted in — Art. 6(1)(a) (consent), withdrawable at any time.
- To comply with legal, regulatory or class-society obligations — Art. 6(1)(c).
- To defend or establish legal claims — Art. 6(1)(f).
4. Recipients and sub-processors
We share personal data only with a small number of sub-processors selected for their security posture and engaged under written agreements containing the GDPR Art. 28 obligations. Current categories include cloud hosting and storage, transactional email, calendar scheduling, customer-relationship management, accounting, and website analytics — the last of these being Google (Google Analytics) and Microsoft (Clarity session analytics), engaged only where you have accepted analytics cookies. The current list is available on request to sales@rorosafe.in.
5. International transfers
RoRoSAFE is established in India. Where we process personal data of individuals in the European Economic Area or the United Kingdom, transfers outside those territories are protected by the European Commission's Standard Contractual Clauses (or the UK International Data Transfer Addendum) and, where appropriate, supplementary technical and organisational measures. Copies of the relevant clauses are available on request.
6. Retention
- Business contact data: retained for the duration of the commercial relationship and for up to 36 months thereafter, then deleted or anonymised.
- Pilot telemetry: retained on the vessel for the voyage at full resolution, downsampled on shore upload, and deleted in line with the operator's instructions in the DPA — typically 24 months.
- Website analytics (aggregated statistics): retained for up to 24 months.
- Session recordings (Microsoft Clarity): retained for up to 30 days, then deleted.
- Records required by law (tax, accounting, litigation holds): retained for the period the applicable law requires.
7. Your rights
Subject to applicable law, you have the right to access, rectify, erase, restrict, or object to the processing of your personal data, and the right to data portability. You may withdraw consent at any time for processing based on consent. To exercise any of these rights, contact sales@rorosafe.in.
If you are in the European Economic Area or the United Kingdom and you consider that our processing infringes data protection law, you have the right to lodge a complaint with your local supervisory authority. We would appreciate the opportunity to address your concern first.
8. Cookies
Strictly necessary cookies for session state are set on every visit. Analytics cookies — Google Analytics and Microsoft Clarity, including third-party cookies set by those providers — are set only if you accept them in the consent banner, and never before. Nothing is loaded until you choose. We use no advertising cookies. You can change your mind at any time by clearing this site's cookies in your browser, which restores the banner, and the site works fully either way.
9. Security
We apply technical and organisational measures appropriate to the risk, including encryption in transit and at rest for personal data, role-based access control, least-privilege production access, audit logging, and a documented incident response process. For deployed systems, we follow secure software development practices and align our controls with widely recognised information-security frameworks. RoRoSAFE does not currently hold ISO/IEC 27001 certification; we will list a certificate here only if and when one is awarded by a UKAS/IAF-accredited certification body.
10. Children
Our website and services are not directed to children under 16, and we do not knowingly collect personal data from children. If you believe we have, please contact us so we can delete it.
11. Changes to this policy
We update this policy when our practices change or the law requires. Material changes will be highlighted on this page and, for active commercial counterparties, notified by email at least 30 days before they take effect.
12. Contact
Privacy enquiries: sales@rorosafe.in. Postal correspondence: Daite Software Pvt Ltd, 1/734b, Padianallur, Chennai - 600052, Tamil Nadu, India.
