Legal

Privacy Policy

Effective date: August 3, 2026

This Privacy Policy explains how Spectrum Group Indonesia collects, uses, shares, and protects information when you use NAVORA.

Introduction

  • Spectrum Group Indonesia ("we", "us", or "our") operates NAVORA, a structured safety assessment workspace for drone operations. This Privacy Policy explains how we collect, use, disclose, and protect information when you access or use NAVORA and related services (the "Service").
  • By using the Service, you acknowledge the practices described in this Policy. If you do not agree with it, please do not use the Service.

Information we collect

  • Account information — your name, email address, and authentication credentials used to create and access your account.
  • Organization and workspace data — organization names, membership, roles, and project access settings.
  • Operational data — project details, aircraft specifications, flight geography, operational parameters, and assessment inputs you enter.
  • Documents and evidence — files, document metadata, and supporting materials you upload to the Service.
  • Usage and technical data — records of system activity required to operate, secure, and audit the Service.

How we use information

  • Provide, operate, and maintain the Service, including authentication, workspace access, project workflows, evidence management, and export preparation.
  • Secure the Service, prevent misuse, and maintain system integrity and audit records.
  • Communicate with you about your account, the Service, and support requests.
  • Comply with legal obligations and enforce our agreements.

How we share information

  • We do not sell your personal data. We share information only as described below.
  • Service providers — we engage trusted third-party providers for hosting, authentication, and data storage. These providers process information on our behalf under appropriate safeguards and are not permitted to use it for their own purposes.
  • Within your organization — workspace content is visible to members of your organization according to their assigned roles and permissions.
  • Legal and safety — we may disclose information where required by law, regulation, legal process, or to protect the rights, property, or safety of our users, the public, or the Service.

Data retention

  • We retain information for as long as your account is active or as needed to provide the Service.
  • We may retain certain records where required by law, for legitimate business purposes, or to preserve security and audit trails.
  • When information is no longer needed, we delete or de-identify it in accordance with our retention practices.

Data security

  • We apply administrative, technical, and organizational measures designed to protect your information, including access controls, authentication, authorization, encrypted transport, and audit logging.
  • No method of transmission or storage is completely secure. While we work to protect your information, we cannot guarantee absolute security.

Your rights and choices

  • Depending on your jurisdiction, you may have rights to access, correct, update, or delete your personal data, and to object to or restrict certain processing.
  • To exercise these rights or ask questions about your information, contact us at [email protected].

International data transfers

  • Your information may be processed in locations other than where you reside.
  • Where we transfer personal data internationally, we take measures designed to ensure an appropriate level of protection consistent with applicable law.

Changes to this policy

  • We may update this Privacy Policy from time to time. We will post the revised version on this page and update the effective date.
  • Where appropriate, we will notify you of material changes through the Service or by email.

Contact us

For questions about this Privacy Policy or our data practices, contact us at [email protected].