PassageMail Weather

Privacy Policy — PCN, LLC

Effective: October 4, 2026
Last Updated: October 4, 2026
Applies to: PassageMail websites, PassageMail Weather iOS and Android apps, and Thunderbird extension

PCN, LLC ("PassageMail," "we," "us," or "our") operates the PassageMail websites and services, including PassageMail Weather for iOS and Android, PassageMail Blog, and the Thunderbird extension (collectively, the "Service"). This Privacy Policy explains what information we collect, how we use it, and your rights regarding your data.

If you have questions about a data use described here, contact us using the details at the end of this policy.

1. Information We Collect

1.1 Account Information

When you purchase a subscription and create an account, we collect:

1.2 Device Information

When you activate the Service on a device, we record:

1.3 Email and Weather Data

The Service sends and receives email on your behalf through your @passagemail.com mailbox:

If you choose to sync your PassageMail calendar and contacts with your device, that calendar and contact data is stored with your account on the PassageMail mail server and made available to your configured devices.

1.4 Settings and Preferences

If you use Settings Backup, we store a copy of your app settings on our server, including:

Settings backups are associated with your @passagemail.com account. They do not contain your license key. Backups are stored in readable form on our server and are protected by account authentication and server access controls; they are not end-to-end encrypted. The on-device fallback copy is restricted to the account that created it. If preset syncing is enabled in a later release, synced presets will also be readable on our server.

1.5 Usage and Technical Data

We may collect limited technical data to operate and improve the Service:

The PassageMail apps do not contain a crash-reporting service. Apple or Google may separately collect crash information through their operating systems or store testing tools under their own policies.

On iOS, if you grant Contacts access, the app reads email addresses on your device to suggest recipients while you compose. It does not upload your contacts list. An address you choose becomes part of the email you send. The Android app does not currently request Contacts access.

With Share diagnostics on, the apps can upload reports automatically at most once per day over regular internet. You can also choose Upload in Settings; an explicit upload can use a satellite connection.

We do not use advertising networks or analytics SDKs in the mobile apps. Cloudflare provides network and security services for our websites and may receive network error and performance information as part of those services. Cloudflare's privacy policy describes its processing.

1.6 Location Information

Location features are optional. PassageMail collects a position only when you use a feature that needs it. The apps request your phone or tablet's own location only while the app is open and after you grant its location permission. A sync that you started may continue sending an Iridium GO! position while the screen is locked; this does not use background device-location permission.

Current weather. If you turn on Allow location for weather and request current conditions, an available Iridium GO! position or a device position you allowed may be sent to PassageMail. Our server rounds the position to three decimal places and requests conditions from Apple Weather. Current-weather requests use regular internet, not satellite.

Allow location for weather. This setting is off by default. When on, sync may send an available Iridium GO! position or, if you have enabled device location, the device's coordinates, accuracy and fix time so we can deliver nearby U.S. thunderstorm and tornado warnings. If no usable fix exists, no position is sent and no nearby warning can be matched. If storm alert regions are set to Automatic, the same position also selects tropical storm advisories; otherwise tropical advisories follow the regions you select. This setting does not add a position to email.

Add vessel location to email. This separate setting is off by default. When on, new emails begin with your Iridium GO!'s last known coordinates, time, speed and course. You may edit or remove the text before sending. Everyone who receives the email can see a position left in it.

Voyage tracker (PassageMail Blog). If you configure your Iridium GO! to send interval or Quick GPS reports to your PassageMail tracker address, we receive and store those positions as tracks. This choice is separate from the weather and email settings. Visibility defaults to Public after you choose to use the tracker: anyone who visits your public tracker page or an embedded tracker can see positions, times and the latest location. You may select Private to hide the track from public view. Turning reports off stops new reports but does not delete stored positions; you can delete a track or all positions. A separate Iridium backup stores the GO serial number, not its satellite phone number.

Diagnostics. If you turn on Share diagnostics and Allow location for weather, hourly satellite-connection telemetry in a report you send us may include your position rounded to a one-degree grid.

Photos and local GPS log. Location and camera details are removed from photos attached to blog drafts before they are saved. If you turn on Save GPS log, positions are stored encrypted on your device. The default keeps them until you delete them; you can choose automatic deletion after 30 or 90 days. That log is not uploaded to PassageMail.

We do not sell location information or use it for advertising. We do not make positions used for weather or alerts public. You choose whether to share your vessel's position by including it in an email or making your Voyage tracker Public. Mobile apps send location to the PassageMail relay over certificate-validated HTTPS, including on satellite data calls. The local Wi-Fi connection to an Iridium GO! uses the GO's HTTP interface.

1.7 PassageMail Blog Content

If you use PassageMail Blog, drafts stay on your device until you choose to publish. Publishing uploads the post and its photos to PassageMail Blog. You choose Public or Private visibility for your Blog content; Public posts and photos are visible to visitors. Location and camera metadata are removed from photos attached through the app before storage.

2. How We Use Your Information

Purpose Data Used
Provide the Service — deliver weather charts, manage your account Account info, email, settings
License validation and device limit enforcement License key, device ID, @passagemail.com email
Verify and restore in-app subscriptions, including PassageMail Blog Store purchase identifiers, receipts or tokens, subscription status, and the PassageMail account they unlock
Scheduled automatic chart requests (server-side) Schedule config, @passagemail.com identity
Settings backup and cross-device restore Preferences, presets, schedule, location and safety choices, and previous GO tracking recipient and interval; no license key
Customer support and troubleshooting Account info, API logs
Service security — fraud prevention, abuse detection IP address, license key, device ID
Transactional email — welcome email, license confirmation Purchase email, @passagemail.com address
Account recovery and PassageMail updates Personal recovery email address if provided
Sync your PassageMail calendar and contacts with your devices, if you enable it Calendar and contact data stored with your account on the mail server
Current weather, tropical storm advisories and nearby warnings Available Iridium GO! or permitted device position, fix time and accuracy where applicable
Voyage tracker, if you configure GO reports Positions, times, optional speed and course, track name and visibility choice
Deliver enabled push alerts and investigate diagnostics you choose to send Push token, app and connection details, and coarse diagnostic location when enabled
Operate PassageMail Blog Posts and photos you publish; unpublished drafts stay on your device

We do not sell your personal information. We do not use your data for advertising purposes.

3. Satellite and Low-Bandwidth Operation

PassageMail Weather is designed for use over satellite connections including Iridium GO! and similar low-bandwidth links. In satellite mode:

4. Data Sharing and Third Parties

4.1 NOAA / National Weather Service

Weather chart requests are sent to NOAA's FTPmail service ([email protected]) on your behalf. These requests identify your @passagemail.com address and the weather products and request parameters you selected. NOAA's use of this data is governed by their own policies.

4.2 Subscription Payments

Apple handles purchases made in the iOS app, Google handles purchases made in the Android app, and our website payment provider handles purchases made on the web. To verify an in-app purchase, restore access or keep subscription status current, the app sends the store's purchase identifier, receipt or token to PassageMail, and our server checks it with the applicable store. For website purchases, we receive payment confirmation and your purchase email. We do not receive or store your full payment card details.

4.3 App Distribution Platforms

The iOS app is distributed via Apple's App Store and TestFlight. The Android app is distributed via Google Play. These platforms may collect their own usage data per their respective privacy policies. The Thunderbird extension is distributed via Mozilla's Add-ons site (addons.mozilla.org).

4.4 Apple Weather

When you request current weather, our server sends Apple's WeatherKit service a position rounded to three decimal places to retrieve conditions. Apple's privacy policy applies to data Apple receives.

4.5 Website and Blog Providers

Cloudflare serves and protects our websites and may receive network error and performance information. PassageMail Blog runs on WordPress.

4.6 Other Sharing

We do not sell personal information or share it for advertising. We may disclose information when required by law or to protect users and the Service. Your own choices to send an email, make a Blog post Public, or make a Voyage tracker Public make that content visible to recipients or visitors as described above.

5. Data Storage and Security

Our core account, mail, backup and relay systems use the following servers in the United States. The third-party services described in Section 4 process their own data under their policies:

We implement security measures including TLS encryption on the relay paths described in Section 3, firewall restrictions on database access, and access controls on server infrastructure. Section 3 also describes older or extension satellite paths that use HTTP. No method of transmission over the internet is 100% secure, and we cannot guarantee absolute security.

6. Data Retention

In the app, you can choose Schedule Deletion or Delete Now. If you have an active paid Weather subscription, scheduled deletion takes effect 30 days after the paid period ends. If you have no active paid subscription, it takes effect 30 days after your request, subject to the free-trial rule below. The app shows the deletion date. Your account keeps working until then, and you can cancel scheduled deletion in the app before that date. Delete Now requires a second confirmation and removes the account immediately after it completes; it cannot be reversed. When account deletion takes effect, we remove the account's mailbox, mail, calendar, contacts, settings backups, device bindings, Blog content and Voyage tracker positions from the live service. We keep the retired email address so it cannot be given to another person. Payment records, short-lived server logs and backup copies are retained separately for the periods listed below. Deleting your PassageMail account does not cancel an Apple or Google subscription; cancel it separately in the store to stop future charges. Copies of messages already delivered to recipients or content saved by other people are outside our control.

If you do not convert a seven-day free trial to a paid subscription, service ends when the trial ends. Your account and its data are deleted three days later, on day 10. There is no 30-day account-deletion period or 90-day Blog viewing period for an unconverted free trial. The retired email address cannot be used again. Backup copies may remain for up to 90 days as described below.

Data Type Retention Period
Account directory and recovery email Removed when account deletion takes effect; the retired email address remains so it cannot be reassigned
@passagemail.com mailbox and email content Removed from the live service when scheduled deletion takes effect as described above, or immediately after the second confirmation if you choose Delete Now. For an unconverted free trial, removed three days after trial expiry. Backup copies may remain for up to 90 days.
PassageMail calendar and contacts Stored with your account until you delete them or account deletion takes effect
Settings backups Kept until replaced by a newer backup or account deletion takes effect
Device activation records Duration of license validity or until account deletion takes effect
Blog posts, photos and site Kept while your paid Blog subscription is active. After cancellation or expiry, your Blog remains viewable in read-only mode for 90 days, then its site, posts and photos are deleted. If your PassageMail Weather subscription ends while your Blog subscription is active, your Blog becomes read-only (no new posts or edits) and remains viewable until the Blog subscription ends and for 90 days afterward. You can delete posts or your Blog sooner, and Blog content is also removed when your requested account deletion takes effect.
API request logs Up to 30 days, including after account deletion
Mail and web server logs Up to 30 days, including after account deletion. These may contain your email address, IP address, request time or account activity while the logs remain.
Server backup copies Deleted account data may remain in backup copies for up to 90 days, after which those copies are overwritten.
Payment records 7 years, including after account deletion
Positions used for storm advisories and warnings Stored with your account and device and deleted automatically 30 days after the last update
Weather and chart caches Tracker weather cache entries expire after one hour. Storm-targeting cache entries expire after 30 days. The shared NOAA chart library has no automatic expiration.
Diagnostic and telemetry reports you send Used for satellite connection performance, sync troubleshooting and transfer accounting. Removed when account deletion takes effect. Otherwise there is currently no automatic deletion schedule; retention periods for these categories are under review.
Voyage tracker positions Kept until you delete them, your Blog subscription expires, or account deletion takes effect. Turning reports off or changing visibility does not delete them.
On-device GPS log Stored only on your device until you delete it by default, or deleted automatically after 30 or 90 days if you choose that setting
Released @passagemail.com addresses (username reservation) Permanent — never reassigned to any customer

Retention of released usernames

When a PassageMail email address is released, it is permanently retired. We do not reassign it to any other customer — including the original holder if they return later. This is a deliberate security measure to prevent account-takeover attacks against services where you may have used your PassageMail address for password recovery or two-factor authentication.

If you delete your account and later decide to return, you may create a new PassageMail address, but your previous address will remain permanently retired. If you used your PassageMail address as a recovery or two-factor email at any other service (bank, social media, code hosting, etc.), please update those services before deleting your PassageMail account. After deletion we keep the retired email address so that it is never issued to anyone else. The directory also retains its own creation and deletion timestamps. The deletion record contains no mailbox content, recovery email or request metadata. Short-lived logs and backup copies follow the periods in the table above.

7. Your Rights

You have the following rights regarding your personal information:

To exercise any of these rights, contact us at [email protected]. We will respond within 30 days.

8. Children's Privacy

The Service is not directed to children under the age of 13. We do not knowingly collect personal information from children under 13. If you believe we have inadvertently collected such information, please contact us at [email protected] and we will delete it promptly.

9. California Privacy Rights (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):

To submit a CCPA request, contact us at [email protected].

10. International Users

PassageMail Weather is operated from the United States. If you access the Service from elsewhere, your information may be transferred to and processed in the United States. The service providers described in Section 4 may also process information where they operate.

11. Changes to This Privacy Policy

We may update this Privacy Policy when our services or data practices change. We will update the "Last Updated" date at the top of this page and, where appropriate, notify you by email or in the app of material changes.

12. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us:

PCN, LLC — PassageMail Weather
Email: [email protected]
Support: [email protected]
Website: passagemail.net

Response time: We aim to respond to all privacy inquiries within 30 days.