Vetromar

Privacy Policy

Last updated: July 22, 2026 · Version 2026-07-22

1. Who we are and our roles

This policy describes how Vetromar, a sole proprietorship operated by Leo Dries (“Vetromar,” “we,” “us”), handles personal data in connection with the Vetromar desktop application, cloud services, and the vetromar.com website (together, the “Service”). Contact: leo@vetromar.com.

We act in two distinct roles:

2. Information we collect

Account and workspace data (we are controller)

Workspace Content (we are processor)

Website

3. How we use information

We do not use your data for advertising, and we do not sell it (Section 7).

4. AI processing

The Service’s core function is processing your content with AI: speech-to-text transcription and language-model extraction and linking of knowledge. In the managed cloud tier this processing is performed through our AI subprocessors (Anthropic for language-model processing, Deepgram for transcription), under agreements that prohibit them from using your content to train their models. Content sent for processing is used to produce your results and is not retained by us beyond what Section 2 describes. The desktop application also offers a fully local mode in which transcription and extraction run entirely on your own machine and content is not sent to AI providers at all.

5. Service providers and subprocessors

We use a small set of providers to run the Service. Where they touch Workspace Content they act as subprocessors under data-protection law:

ProviderPurposeData involvedLocation
AnthropicLanguage-model processing (knowledge extraction and linking) in the managed AI tierText content submitted for processingUSA
DeepgramCloud speech-to-text transcriptionAudio streamed for transcription; resulting transcriptsUSA
RailwayCloud hosting and database for the workspace serviceAccount data, workspace administration data, replicated Workspace ContentUSA
StripePayment processing and billing portalPayment details (held by Stripe), billing identifiersUSA
ResendTransactional email deliveryEmail addresses and message content of service emailsUSA
VercelWebsite hosting (vetromar.com)Standard web-server request dataUSA
GitHubDistribution of app downloads and updatesStandard web-server request data when downloadingUSA

We will update this table when providers change; for notice of subprocessor changes under a DPA, contact leo@vetromar.com.

6. Local-first: what stays on your device

7. What we don’t do

8. Retention

9. Deletion and your controls

10. Security

Measures we apply include:

No system is perfectly secure. If we learn of a breach affecting your personal data, we will notify you and the relevant authorities as required by law.

11. International data transfers

Our cloud systems and providers are located in the United States. If you use the Service from the EU, EEA, UK, or Switzerland, your data is transferred to the U.S. For such transfers we rely on appropriate safeguards, including the European Commission’s Standard Contractual Clauses (and UK/Swiss equivalents) with our providers, and, where a provider is certified, the EU–U.S. Data Privacy Framework. A data processing agreement incorporating these safeguards is available on request.

12. Your rights — EU, EEA, UK, Switzerland (GDPR)

Where the GDPR (or UK/Swiss equivalents) applies and we act as controller, you have the right to access, rectify, erase, and receive a portable copy of your personal data; to restrict or object to processing (including any processing based on legitimate interests); and to withdraw consent where processing is based on consent. Exercise these rights by emailing leo@vetromar.com; we respond within one month. You also have the right to lodge a complaint with your local supervisory authority.

For personal data inside a customer’s Workspace Content, the customer is the controller — send requests to them first (Section 1); as processor, we will assist the customer in fulfilling them.

13. Your rights — U.S. states

Depending on your state (for example under the California Consumer Privacy Act as amended), you may have rights to know, access, correct, delete, and obtain a portable copy of your personal information, and to opt out of its sale or sharing. We do not sell or share personal information, and we collect only the categories described in Section 2 (identifiers, commercial information, and internet activity), for the purposes in Section 3. To exercise any right, email leo@vetromar.com. We will not discriminate against you for exercising your rights. Note that most Service data belongs to business accounts and is covered by our contract with your organization.

14. Children

The Service is for business use and is not directed to children. We do not knowingly collect personal data from anyone under 18 as a user of the Service. If you believe a child has created an account, contact us and we will delete it.

15. Cookies and tracking

The vetromar.com website sets no cookies and uses no analytics or advertising trackers. When you pay, Stripe’s checkout pages (hosted by Stripe) may use cookies as described in Stripe’s own privacy policy. The desktop application does not embed trackers.

16. Changes to this policy

We will update this policy as the Service evolves. For material changes we will give notice by email to workspace admins and/or in the app or on the website before the change takes effect. The “Last updated” date and version above identify the current policy.

17. Contact

Vetromar (operated by Leo Dries)
Email: leo@vetromar.com