Legal

Privacy Policy

Last updated August 7, 2026

This Privacy Policy explains how Oh See Arr ("Oh See Arr," "we," "us," or "our") collects, uses, and shares personal information when you use ohseearr.com, our dashboards, and related websites (the "Sites"), and when you create an account or interact with us as a customer or prospect.

Scope. This Policy covers personal information we process as a business / data controller — for example account details, billing records, product analytics, and crash or debugging telemetry about the Service itself. It does not govern how we process documents and other Customer Content you submit to our OCR APIs for inference. That is described in our Data Policy. For Customer Content that includes personal data, you are typically the controller and we act as your processor; enterprise customers may request a Data Processing Addendum at support@ohseearr.com.

1. Information we collect

Account and authentication

When you sign up or sign in, our authentication provider may collect identifiers such as your name, email address, profile information you choose to provide, and authentication metadata needed to manage your account and secure access.

Billing and commercial information

If you purchase credits or use paid features, our payment processor collects payment details. We receive limited billing information (for example payment status, amounts, invoices, and customer identifiers). We do not store full payment card numbers on our servers.

API credentials and usage metadata

We store API keys and related metadata (name, creation time, and association with your account). We also record usage metadata needed to operate and bill the Service — for example request counts, pages processed, model selected, status codes, latency, and timestamps. Usage metadata does not include the contents of your documents or OCR Outputs (see the Data Policy).

Analytics

We collect product and website analytics (for example pages viewed, feature usage, referral URLs, device and browser details, and approximate location derived from IP address) to understand how the Sites and Service are used and to improve them.

Crashes and debugging data

We collect crash reports, error logs, and related diagnostic data to operate, secure, and fix the Service. This may include stack traces, request metadata, timestamps, and environment information. Customer Content submitted for OCR is not retained in these systems unless you expressly permit it, as described in the Data Policy.

Communications

If you email us or otherwise contact support, we collect the information you include in that correspondence.

Cookies and similar technologies

We and our providers may use cookies, local storage, and similar technologies for authentication, preferences (such as theme), security, and analytics. You can control many cookies through your browser settings; disabling some cookies may limit Site functionality.

2. How we use information

We use the information described above to:

We do not use Customer Content to train models. See the Data Policy.

3. Legal bases (EEA/UK)

Where the GDPR or UK GDPR applies, we process personal information under these bases as applicable: (a) performance of a contract with you; (b) our legitimate interests in operating, securing, and improving the Service, balanced against your rights; (c) compliance with legal obligations; and (d) consent, where we rely on it (for example certain analytics or marketing), which you may withdraw at any time.

4. How we share information

We share personal information with:

We do not sell personal information, and we do not share it for cross-context behavioral advertising as those terms are defined under the California Consumer Privacy Act (CCPA/CPRA).

5. Retention

We keep account, billing, usage, analytics, and debugging records for as long as needed to operate the Service, meet legal and accounting obligations, resolve disputes, and enforce our agreements. Retention periods vary by data type. Customer Content submitted for OCR is not retained by default; see the Data Policy.

6. Security

We use reasonable technical and organizational measures designed to protect personal information, including encryption in transit (TLS) where supported. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.

7. International transfers

We and our providers may process information in the United States and other countries. Where required by law, we use appropriate safeguards for cross-border transfers (such as standard contractual clauses).

8. Your choices and rights

Depending on where you live, you may have rights to access, correct, delete, or export personal information; to object to or restrict certain processing; and to appeal a denied request. You can update some account details in your dashboard or through your authentication provider.

California and other U.S. state rights. Residents of California and certain other U.S. states may have additional rights, including to know the categories of personal information collected, to delete or correct personal information, and to opt out of "sale" or "sharing." We do not sell or share personal information as defined by those laws. We will not discriminate against you for exercising your privacy rights.

To make a privacy request, email support@ohseearr.com. We may need to verify your identity before responding. You may use an authorized agent where permitted by law.

9. Children

The Service is not directed to children under 16, and we do not knowingly collect personal information from them. If you believe a child has provided us personal information, contact us and we will take appropriate steps to delete it.

10. Changes

We may update this Privacy Policy from time to time. We will post the updated policy with a new "Last updated" date. Material changes may also be communicated by email or in-product notice when appropriate.

11. Contact

Privacy questions and requests: support@ohseearr.com.

Related: Terms of Service · Data Policy