Privacy policy

Last updated 24 August 2026 · Provided in English

Who we are

Skiff is operated by SURPCODE LIMITED, trading as BoatSmart HQ. This policy explains what we collect while you use the Skiff apps and website, why we collect it, and how you can ask for it to be deleted.

What we collect

Skiff stores the information you add while looking after your boat: your name, email, phone number, vessel details, inspection checklists and verdicts, written notes, work requests and messages, documents you put in the vault, and the photos and videos you take during inspections, camera scans, and spot checks.

If you record a trip, we collect the GPS track for that trip so the log can show where you went. If you dictate a note, we collect the recording long enough to turn it into text on the device or with a speech service, then keep the text with the check-up. If you allow notifications, we store a push token so we can remind you a check-up or a service is due.

If you subscribe, the app store or our web payment provider tells us the plan you bought, when it renews, and when it is cancelled. We do not store your full card number.

How photos are used

When you photograph part of your boat, our automated analysis looks at the image and writes a note about its condition. To keep those notes accurate, our staff may review a photo and its note, especially where the analysis was unsure of its answer. Where a note needs correcting, a copy of the photo and the corrected answer may be kept to improve the analysis for all owners.

Photos are never used in marketing, never shared with other customers, and never sold. Review copies are only visible to Skiff staff.

Diagnostics and usage

We collect crash reports and basic usage information, such as which screens are opened and how often, so we can find bugs and understand what is working. Crash reports are not linked to your email. Usage information is analysed in aggregate and is not used to build advertising profiles. We do not sell data, and we do not track you across other companies' apps for advertising.

Where your data lives

Data is stored with our hosting provider in private, access-controlled storage. Photos and records are only readable by your account, and by staff systems that operate under audit logging. Data is encrypted in transit.

Service providers

We use a small number of trusted service providers to run Skiff: cloud hosting and storage, payment processing (the App Store, Google Play, or Stripe on the web), crash reporting, usage analytics, speech-to-text when you dictate a note, and email delivery. Each provider only receives the data it needs to do its job, and none of them may use your data for their own purposes. A current list of providers is available on request via support.

Sharing you control

Vessel dossiers are private until you share them. A QR share link shows read-only history to whoever holds the link, and you can turn contact options on or off per share. Work requests you send to a service partner include only the details needed to quote the job.

Deleting your data

Deleting your account from Profile in the app removes your vessels, inspections, photos, and messages. If a corrected copy of one of your photos was kept to improve the analysis, you can ask for it to be removed too: contact support from the app or email us and we will delete it.

Contact

Questions about this policy or your data: message support in the app, or email support@surpcode.com.