Privacy Policy
Last updated: September 18, 2026
1. Introduction
This Privacy Policy explains how JEMS Marine, LLC (“JEMS Marine,” “we,” “us,” or “our”), a Maryland limited liability company, handles information in connection with theONE Vessel Command Center (“theONE” or the “app”), an iOS application currently in private beta, and this website at theonevcc.com. It describes what the shipping app and this site actually do. Where a feature is not in the current build, we say so rather than reserving the right.
2. Accounts and Sign-In
theONE works with no account at all, and that is the ordinary way to use it: open the app, enter your boat, and nothing is ever asked of you. Everything in this policy about where your vessel data lives applies whether or not you ever sign in.
There is also an optional sign-in, and there is no password anywhere in it. You ask the app to email you a link, you tap the link, and that is the whole mechanism. We do not store a password because we never have one. Signing in is what lets a second device of yours reach the same boat; it is not required to use theONE.
During setup you can enter your name, email, and phone number as the owner record. That information is written to the vessel file on your iPhone. It is not transmitted to us, and we have no copy of it. If you asked for a Founding Captain spot through the form on this website, we do hold that email address — see section 8. That is the website, not the app.
If you never sign in, there is no profile of you on our side at all, and no vessel data of yours anywhere but your own device. Deleting the app from your device removes its data with it. If you do sign in, see section 3a for exactly what then leaves the phone and what does not.
3. What theONE Stores, and Where
Everything you put into theONE is stored on your device:
- Vessel data you enter. Vessel specifications, crew and contacts, maintenance records, documents, notes, trips, and playbooks.
- Telemetry and NMEA data. Values read on-device from your vessel's NMEA 2000 network — engine hours, fuel burn, depth, temperatures, voltages, and tank levels.
- Tracks you record. A passage track is logged only while you have started recording, and it is saved on the device. You start and stop it.
These live in the app's own storage on your iPhone as ordinary files. They are included in your iPhone's backup — iCloud Backup or an encrypted local backup, whichever you use. That backup is Apple's, under your control and Apple's privacy policy, and we cannot read it.
Until you sign in, nothing on that list leaves the device. The sync row in the app reads “Local only” and means exactly that.
3a. If You Sign In
Signing in is optional and it changes what we hold, so it is set out separately here rather than folded into the section above.
We do run a server for this. It is ours, at api.theonevcc.com, and the app names it on its own settings screens. When you sign in we hold: the email address you signed in with, a record of each device session, and which boats your account is a member of.
What your boat then sends up. Changes you make to the vessel record travel to that server so your other devices and your crew can receive them. That is what sync is for and there is no way to have sync without it.
What never travels, whether you sign in or not. Documents and scans. Bills and fuel logs. Medical and crew health notes. These stay on the device by design, and the app tells you so before it sends anything.
Deleting your account. Deleting an account removes the identity — the account itself, its sign-in method, its sessions and its memberships. Records of work done on a vessel remain part of that vessel’s record, because a boat’s maintenance history must not develop holes when a person leaves it. Write to privacy@jems-marine.com and we will do it.
4. Location and What Leaves Your Device
This is the largest of the few places information leaves your device, and the one that runs constantly, so it is worth being exact. The others are named elsewhere in this policy: the optional sign-in and sync in section 3a, the optional crash and analytics reporting in section 5, and chart regions you choose to download.
When theONE refreshes weather, tides, radar, or charted depth, it sends a position — a latitude and longitude — directly from your device to the public services below. It does not route through any server of ours, because we do not have one.
- NOAA / National Weather Service (api.weather.gov) — forecast and active marine alerts for your position.
- NOAA CO-OPS (api.tidesandcurrents.noaa.gov) — tide predictions for the nearest station.
- Open-Meteo (api.open-meteo.com, marine-api.open-meteo.com) — wave height and swell, and the forecast where NOAA has no coverage.
- Iowa State University (mesonet.agron.iastate.edu) — NEXRAD weather radar imagery for the area you are viewing.
- NOAA chart services (gis.charttools.noaa.gov, encdirect.noaa.gov, distribution.charts.noaa.gov) — charted depth and aids to navigation used by auto-routing, and chart region downloads.
- U.S. Army Corps of Engineers National Channel Framework, hosted on ArcGIS (services7.arcgis.com) — maintained-channel data. This one receives a bounding box around the area you are routing through rather than a single point.
What goes with that position: nothing about you. No name, no vessel name, no email, no account, no advertising or device identifier. Requests to NOAA also carry a User-Agent header that identifies the app, its version, our website, and our operations address (ops@jems-marine.com) — NOAA requires callers to identify themselves. That is our contact information, not yours. Positions sent to NOAA are rounded to four decimal places.
These services are independent of us and handle requests under their own policies. NOAA and the Corps of Engineers are U.S. government services; Open-Meteo and Iowa State University's Mesonet are third parties.
Turning it off. Location is a standard iOS permission. You can revoke it at any time in Settings → Privacy & Security → Location Services → theONE. With location off, theONE falls back to the homeport coordinates you set on the vessel; if you have set no homeport, weather, tides, and sun times simply show as unavailable. Nothing else in the app depends on it.
theONE also uses your location on-device to follow your position on the chart, to stamp where a vendor work session began, and to record a passage track while you have recording switched on. Those stay on the device.
5. Crash Reporting and Analytics
theONE includes two optional components, both switched off:
- Crash reporting (Sentry). Off by default. It starts only if you turn it on in Settings → Privacy & Lock → Crash Reporting. When it runs it is configured to send no personal information: no screenshots, no view hierarchy, no session replay, and crash reports are scrubbed of email addresses, file paths, vessel name, owner name, and homeport before they leave.
- Product analytics (PostHog). Off by default. It starts only if you turn it on.
The app itself holds no Sentry key and no PostHog key. Both travel by way of our own server at api.theonevcc.com, which adds the key — which also means we can shut either tap off entirely without waiting for an app update. The toggles govern: nothing is sent unless you have turned it on, and both are off until you do.
6. Apple Calendar
If you grant calendar access, theONE can write your trips and maintenance dates into a calendar it creates in your calendar account, named for your vessel. If your iPhone is signed into iCloud, that calendar lives in iCloud and those events sync through iCloud like any other calendar event, under Apple's privacy policy. Only what you put on the event goes into it. This is optional; declining calendar access leaves the rest of the app working.
7. Beta Distribution
theONE is distributed for beta testing through Apple's TestFlight. Apple provides us with the standard TestFlight information about the beta — installs, sessions, and crash logs from testers who chose to share them with developers. That comes from Apple under Apple's privacy policy, not from anything the app sends us.
8. The Founding Captain Form on This Website
The homepage of theonevcc.com has a form where you can ask for a Founding Captain spot. It is the one place on this site that collects anything, and it only collects what you type into it.
When you submit that form we store three things: the email address you entered, the date and time you submitted it, and the browser user-agent string your browser sends with the request. That record is kept in a private storage bucket at Vercel, our web host. It is not public and it is not indexed. We may also receive a notification at our operations address when a new signup arrives.
We use that address for one thing: to contact you about Founding Captain access to theONE. We do not sell it, and we do not pass it to anyone else.
The rest of this site sets no cookies, uses no analytics, and stores nothing in your browser. Reading these pages is not logged by us beyond the ordinary server request logs our host keeps.
To have your address removed from that list, email privacy@jems-marine.com and we will delete the record.
9. What We Do Not Do
- We do not sell or rent your information.
- We do not use advertising networks or ad tracking, and the app contains no advertising SDK.
- We do not build a profile of you. If you never sign in, no vessel data of yours is on any server of ours. If you do sign in, section 3a says exactly what we then hold and why.
The only circumstance in which we would disclose information is where we are required to comply with applicable law, legal process, or an enforceable governmental request — and in practice we hold very little that could be disclosed.
10. Your Choices
Because your data stays on your device, most of your control is exercised there rather than by writing to us:
- Location. Revoke it in iOS Settings, as described above.
- Calendar, contacts, camera, microphone, Bluetooth. Each is a separate iOS permission you can grant or revoke at any time.
- Crash reporting and analytics. Both are off unless you turn them on, and can be turned back off in the app.
- Deletion. Deleting the app removes its data from the device. Check your device backups if you also want it gone from those. To be removed from the Founding Captain list, write to us.
If you have a question about information we hold as a business — a Founding Captain signup, or an email you have sent us — write to privacy@jems-marine.com and we will tell you what we have and delete it on request, subject to any legal obligation to keep it.
11. Children's Privacy
theONE is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided us with personal information, please contact us so we can remove it.
12. International Users
theONE is operated from the United States, and NOAA-backed weather, tides, and charts cover US coastal waters. The services listed in section 4 are operated in the United States, so a position sent from outside the US is processed there, where data protection laws may differ from those in your jurisdiction.
13. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will revise the “Last updated” date at the top of this page. theONE is currently in private beta; features may change and beta data may be reset before general availability.
14. Contact
Questions about this policy can be sent to privacy@jems-marine.com.
JEMS Marine, LLC, Maryland, USA.