Legal
Privacy Policy
Last updated: December 23, 2025
This policy explains how NatureBot AI collects, uses, and safeguards information when you use our biosystem management platform and AI assistant service.
Policy Snapshot
Primary purpose
Operate the service, provide AI guidance, and improve features.
Data sharing stance
We do not sell personal information.
Retention
Stored until deletion or legal retention requirements apply.
Contact
support@naturebot.ai1. Information We Collect
1.1 Information You Provide
We collect information you directly provide to us.
- Account information — Email address, username, password (encrypted), and optional profile details.
- Biosystem data — Tank specs, water parameters, equipment details, creature information, photos, and maintenance logs.
- AI interactions — Questions and conversations with our AI assistant, including uploaded images.
- Settings & preferences — Measurement units, timezone, notification preferences, and display settings.
- Support communications — Messages you send to our support team.
1.2 Information Collected Automatically
- Device information — Browser type, operating system, device type, and unique identifiers.
- Usage data — Pages visited, features used, timestamps, and interaction patterns.
- Log data — IP address, access times, referring URLs, and error logs.
- Cookies — Session cookies, authentication tokens, and preference cookies.
2. How We Use Your Information
- Provide, maintain, and improve the Service.
- Create and manage your account.
- Process and store your biosystem management data.
- Power our AI assistant to provide relevant recommendations.
- Improve AI models and develop new features using aggregated or de-identified data.
- Send notifications about tanks and scheduled maintenance.
- Respond to inquiries and provide customer support.
- Send important service announcements and updates.
- Analyze usage patterns to improve user experience.
- Detect, prevent, and address technical issues and security threats.
- Comply with legal obligations.
3. Data Storage and Security
We implement industry-standard security measures to protect your data.
- Encryption — All data is encrypted in transit (TLS/SSL) and passwords are hashed using bcrypt.
- Access controls — Strict access controls limit who can access your data within our organization.
- Secure infrastructure — Data is stored on secure servers with regular security audits.
- Authentication — Secure session management with token expiration and rate limiting.
While we strive to protect your data, no method of transmission over the Internet is 100% secure.
4. Data Sharing
We do not sell your personal information. We may share your data in limited cases:
- Service providers — Third-party vendors who help us operate the Service (hosting, email delivery, analytics).
- AI services — Queries and data may be processed by AI providers to generate responses.
- Legal compliance — When required by law, subpoena, or to protect our legal rights.
- With your consent — When you explicitly authorize us to share your data.
- Aggregated form — Non-identifiable, aggregated data may be used for research and analytics.
5. Cookies and Tracking
We use the following types of cookies:
- Essential cookies — Required for authentication and basic Service functionality.
- Preference cookies — Remember your settings and preferences.
- Analytics cookies — Help us understand how users interact with the Service.
You can control cookies through your browser settings. Disabling certain cookies may limit some features.
6. Your Rights
Depending on your location, you may have the following rights:
- Request access to the personal data we hold about you.
- Request correction of inaccurate or incomplete data.
- Request deletion of personal data (subject to legal retention).
- Request your data in a portable format.
- Withdraw consent for data processing.
- Object to certain types of data processing.
To exercise these rights, contact us at support@naturebot.ai. We respond within 30 days.
7. Data Retention
- Account data — Retained until you delete your account.
- Biosystem data — Retained until you delete the data or your account.
- AI conversation history — Retained for service improvement and may be periodically purged.
- Log data — Typically retained for 90 days.
- Backup data — May persist in backups for up to 30 days after deletion.
8. Children's Privacy
The Service is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13.
Users between 13 and 18 years old may use the Service with parental or guardian consent.
9. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws.
We ensure appropriate safeguards are in place for international data transfers, including standard contractual clauses and compliance with applicable regulations.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by:
- Posting the new Privacy Policy on this page.
- Updating the Last updated date.
- Sending an email notification for significant changes.
11. Contact Information
If you have questions about this Privacy Policy or our data practices, contact us at: