HonestAbove — Privacy Policy
Last updated: 24 September 2026
This Privacy Policy explains how HonestAbove PTE. LTD. (UEN 202415853R) ("HonestAbove", "we", "us"), a company registered in Singapore, collects, uses, and protects your information when you use the HonestAbove mobile application (the "App") and related services. HonestAbove PTE. LTD. is the data controller responsible for your personal data, and handles it in line with Singapore's Personal Data Protection Act (PDPA).
By using the App, you agree to this Policy. If you do not agree, please do not use the App.
Contact: info@honestabove.com
1. Information we collect
Information you give us
- Account details — your name/display name, email address, and (if you provide it) phone number, used to create and secure your account and to contact you about orders.
- Delivery information — the delivery address and contact details you enter for an order.
- Content you create — posts, photos, comments, and messages you choose to share in the App's social feed, and chats you send to the AI concierge.
- Private messages and group chats — direct messages you send to other users, and messages in event group chats. These are not public, but they are not end-to-end encrypted: they are stored on our servers, and our moderation team can access them where needed to investigate a report, prevent harm, or comply with law. Every such access is logged. If in-chat translation is switched on for a conversation, the text of the messages in it is also sent to our translation provider and the resulting translation is stored with that chat — see §4 for exactly when this happens and who can see it.
- Identity verification recordings — if you take part in an event that requires verification, the short video you record for that purpose, plus the decision made on it. It is never shown publicly. Our review team watches it to verify you, and if you host a Social, the person you pick sees this video so they know who they are meeting; no one else does.
- Social application videos — when you apply to a Social, the short video (up to 25 seconds) and the text you write for that application. The Host of that Social sees this video and text in order to pick an applicant; it is not shown to anyone else, and it is not published.
- Inquiry details — information you submit when requesting a yacht charter, travel itinerary, or made-to-order item (e.g. headcount, preferred dates, preferences).
Information collected automatically
- Usage and device data — basic app interaction and device information needed to operate the App, keep it secure, and fix problems.
- Order and wallet history — your purchases, store-credit (balance) movements, and refunds.
- Date of birth — if you give it, used only to enforce the minimum age on age-restricted events.
- Card fingerprint (event seats only) — a non-reversible identifier supplied by Stripe, stored solely so that a banned person cannot rebook a seat with the same card. It is not a card number and cannot be used to charge you.
Information from connected services
- Payments — card payments are processed by Stripe and Apple Pay. We do not store your full card number; Stripe handles card data under its own security standards and privacy policy.
Precise location (GPS) — only at the moments listed here, never in the background
- Sailing check-in. When you tap "I'm at the marina" to check in for an event, we read your device location once, at that moment, to confirm you are at the departure point. This is what releases your seat hold. We do not read it before or after, and never in the background.
- Socials (one thing, one price). A Social is met in person, and the App uses location readings to confirm it: once when you tap "I'm here" at the meeting place; once each time you tap "Refresh" to see roughly which direction and how far the other person is (you are shown a direction and a distance, never their coordinates); once with each of the two codes you exchange; and once if you report, or answer a report, that the other person has left. Each of these is a single reading taken when you tap — never in the background. For Socials, these readings are stored on our server, because they are the evidence a dispute is decided on; they are deleted automatically 24 hours after the Social ends (or, if a dispute is open, 24 hours after it is decided). They are not used for anything else.
- Adding a place to a post. If you tap "Add current location" while writing a post, we read your device location once, at that moment, and use it to look up nearby place names for you to choose from. You can also search a place by name, but the search only returns places within about 3 km of that same reading — so what you are able to pick is still somewhere you actually are. The list sits under a map of where you are, with a fixed pin in the middle; if you move the map, the App lists places near the pin instead. The map can only be moved about 2 km from that same reading. The first option is always "Use this pin": if you choose it, the point under the pin is stored on that post, rounded to about 10 metres, and anyone signed in who can see the post can open it on a map and get directions there — so choose it only for a spot you are happy for others to find. If you pick a place from our list instead, the post points to that place and no pin is stored. When you publish, the App sends that same reading with the post — it does not take a fresh one — so our server can confirm the place or pin you chose really is near where you were; if you have moved on since, the post goes out without the place and the App tells you so. If you don't move the map, the pin is where you are, so that spot (rounded to about 10 metres) is what gets stored — move the map first if you would rather mark somewhere else. The reading sent for the check is not stored: it stays in the App on your phone while you write, is used only for that lookup and that one check, and is then discarded (the only readings we keep are the Social check-in readings described above, for the time stated there). A post you share from a sailing you checked in to is placed at that sailing's departure marina. You can remove the place before you publish; after that, deleting the post removes it. Every post requires this to be done again; there is no "always add my location" setting, by design.
- Viewing a place page or the 📍 on a post. If you have already allowed location access, the App reads your location once when a place page or a post's 📍 map opens, so it can show how far away that place is (for example "2.3 km"). The distance is worked out on your phone: your location is not sent to our servers or anyone else, and it is discarded when you leave. If you have not allowed location access, the App does not ask and simply shows no distance.
- Maps in the App are drawn by Apple Maps (iOS) or Google Maps (Android). On a place page, and when you open the 📍 on a post, the App asks that service for the map around that place or pin. When you add a place to a post, the map starts around where you are, so that service loads the map of your area — the same as opening any map app there. The App does not hand your GPS reading to the map service, and it does not show your own position on that map.
- Delivery drivers. The driver app reads location while a delivery is in progress, so the order can be tracked to your door. This applies to driver accounts only.
- In every case your device asks for permission first, and you can refuse — check-in is then handled by staff at the pier, and a post simply carries no place.
- We never turn your GPS reading into a street address. The App offers the neighbourhood you are in, plus any venues from our own list that are near you. We load that list country by country, so in a country we have not opened yet there are no venues to offer, and the App says so rather than guessing. Some of those venues are residential developments, because people often want to be found by neighbours — those are labelled Residence in the list, so you always know what you are about to attach to a post. The "Use this pin" option is labelled with the landmark name your own phone's map service (Apple or Google) returns for that spot — or the neighbourhood if it returns none, and never a street number: that lookup is made by your phone's operating system, not by us, and a name that comes back this way is only ever printed on your post — it never enters our place list and is never offered to anybody else, because Apple's developer terms forbid using those results to build a database. If you would rather stay vague, pick the "Just the area" option instead: it stores only the neighbourhood name, no pin.
- We do not use GPS for anything else: not to rank the social feed, not for advertising, and not to build a movement history. A pin exists only on a post where you chose "Use this pin", and is never shown to people who are not signed in.
A place you add to a post is public
- If you choose to add a place, that place name appears on the post to anyone who can see the post. If it is a place from our own list, the post is also listed on that place's page inside the App alongside other public posts from the same place; a pin has no such page — it is shown only as that one post's place on a map. Place pages list content only — never a list of people. Deleting the post removes it from that page.
Approximate location from your IP address
- We do derive an approximate region from your IP address — country, or province/state within mainland China. We use this in two ways, both visible to other users:
- On content you publish (posts, comments, and each message you send in a chat) we record the region you were connecting from at the moment you sent it. This is a fixed record attached to that content; it does not change afterwards.
- On your profile we show the country you most recently connected from. While you are online this appears as your current country; otherwise it is shown as your most recent one.
- This applies to every account equally, including staff and administrator accounts. Other users see your region on the same terms you see theirs.
- We show country level only on your profile. We do not display your city, and we do not build or retain a history of your movements.
- Your IP address is sent to our geolocation provider (ipwho.is) to perform this lookup. We store only the resulting region name; we do not store your raw IP address alongside your posts or messages.
- This is a signal, not proof. IP-based region can be inaccurate, and it can be changed with a VPN or proxy. We present it as information, never as a verified location.
- If you do not want your region shown, you can stop using the App; we cannot serve the App without processing your IP address, as it is technically required to deliver any internet request.
We do store your IP address in one other case: when you accept our Terms of Service, we record the IP address and timestamp of that acceptance as proof of consent.
2. How we use your information
- To create and manage your account and authenticate you.
- To process orders and payments, settle weight-based items, issue refunds to your original payment method or your store credit, and arrange delivery.
- To power features you ask for, including AI concierge recommendations, the social feed, and translation of content into your chosen language (§4).
- To send you transactional and service notifications (e.g. order status). You can control push notifications in your device settings.
- To provide customer support and respond to inquiries.
- To show the approximate region of accounts and content, so you can judge for yourself whether someone is where they say they are.
- To keep the App safe — preventing fraud, abuse, and violations of our Terms, including reviewing reported private messages.
- To meet legal and accounting obligations.
Proof of payment. If you pay by bank transfer, you can upload a screenshot of your remittance receipt so we can match your payment against our bank statement. You choose whether to send it — an order is never blocked by not sending one. The image is stored privately, is never shown publicly or to other users, and is visible only to our staff for reconciliation. It may contain your bank account details and name; do not include anything you do not want us to hold. Uploading a receipt never confirms payment by itself — we release an order only after the funds appear on our own bank statement.
3. Photos and notifications (App permissions)
- Photo library / camera — only used when you choose to add a photo to a post or your profile, or to upload proof of a bank transfer for an order you placed. We access photos you select; we do not scan your library.
- Push notifications — used for order updates and service messages. You can turn these off any time in iOS Settings.
4. AI features: the concierge and translation
Two features send text to our AI provider (Anthropic, the Claude API) for processing: the AI concierge, and translation. In both cases the text is sent only so that the provider can produce the answer or the translation you are looking at. It is not used to train AI models.
The AI concierge. When you chat with the AI concierge, your messages are processed by Anthropic to generate responses. We may store a short summary of your stated preferences (e.g. dietary notes, budget level, favourite items) to personalise future help. This is tied to your account, is never shared with other users, and you can ask us to clear it at info@honestabove.com.
Translation of public content. So that the App reads in one language throughout, public content is machine-translated into other languages the App supports: posts and comments in the social feed, event titles, and product descriptions. This happens automatically when the content is published — nobody has to switch anything on, and there is no way to publish public content and opt its text out of translation. Because the underlying content is public, these translations are stored next to it and are visible to anyone who can already see the original.
Translation inside private messages — off unless someone turns it on. Direct messages and event group chats are private, so they are handled differently and more narrowly:
- It is off by default. No message text from a chat is sent for translation until translation is switched on for that chat. When a message in another language first arrives, the App offers to turn it on once; if you decline, we do not ask again for that conversation. You can switch it on or off yourself at any time from the chat's menu, and switching it off stops any further text being sent.
- Only the messages you receive. With translation on, the App translates what the other person sent you. What you type and send is not translated for you and is not sent for translation on your side.
- Only text — never photos. A photo sent in a chat is never sent for translation; only the written text of a message is.
- The translation is exactly as private as the message. It is stored with that chat and is readable only by the people in that chat, on the same terms as the message itself (see §1, including the same logged moderation access). It never appears in the public feed and is never shown to anyone outside the conversation.
- It dies with the message. If a message is deleted or unsent, its stored translation is deleted at the same moment, automatically.
A conversation has two ends. Each person controls translation only for their own side of a chat, and you cannot see the other person's setting. So if the person you are talking to has translation switched on, the messages you send them are translated in the same way: their text is sent to our translation provider, and the translation is stored in that chat and visible to the people in it. Treat anything you send in a chat as something that may be translated for the person receiving it.
5. How we share information
We do not sell your personal data. We share it only with:
- Service providers that operate the App on our behalf — payment processing (Stripe/Apple Pay), backend hosting and authentication (Supabase), AI processing and translation (Anthropic), push delivery (Expo/Apple), and IP-to-region lookup (ipwho.is). Each handles data only to provide their service.
- Delivery partners, limited to the information needed to deliver your order.
- Legal and safety — when required by law, or to protect the rights, safety, and property of HonestAbove, our users, or the public.
Map data. The places in our list — their names and their coordinates — come from the Overture Maps Foundation: © Overture Maps Foundation and its data contributors, licensed under CDLA-Permissive-2.0 (https://cdla.dev/permissive-2-0/). We load that data into our own database in bulk, one country at a time, and when you look for a place we query only our own copy: your location is never sent to Overture, and our servers call no outside map service to answer you.
6. Social / user-generated content
Content you post in the social feed may be visible to other users, together with the approximate region you posted from. Please do not share sensitive personal information publicly. We moderate content and act on reports of objectionable material; see our Terms of Service for the rules and our zero-tolerance policy.
Top Spenders (spending leaderboard). The total amount you have spent on HonestAbove — shown in US dollars, rounded — may appear publicly on the Top Spenders leaderboard, on your profile, under your name on the posts you publish, and next to your name in messages and event applications. Alongside the total we show the categories you have bought in (for example yachts or food) as small icons, and your REAL record lists the month of each time you showed up in person. We never show what individual item you bought, what you paid for it, or the day you bought it. You can hide your identity on the leaderboard at any time in Settings (your rank and amount stay listed anonymously), and we may remove an account from the board where we suspect abuse.
Blocking. You can block any other user at any time. Blocking stops that person from messaging you and removes their content from your view. This applies to every account on the platform, including staff and administrator accounts — we do not exempt any account from being blocked, and we do not remove a block on your behalf without your own confirmation. You can unblock someone yourself at any time in Settings.
7. Data retention
We keep your information for as long as your account is active and as needed to provide the App, comply with legal, tax, and accounting requirements, resolve disputes, and enforce our agreements. When no longer needed, we delete or anonymise it.
Identity verification recordings and Social application videos are kept for one year from when they were recorded, then deleted. Social location readings are kept for 24 hours after the Social ends (or after its dispute is decided), then deleted; the distances derived from them (for example "60 m apart at 16:34") are kept with the Social's record.
Proof-of-payment images are payment records: they are kept with the transaction they belong to, for as long as accounting and tax requirements apply to that transaction.
Translations (§4) never outlive what they translate. A stored translation of a post, comment or message is deleted automatically the moment the original is deleted or unsent — it has no separate retention period of its own.
8. Your choices and rights
- Access and correction — view and update your profile in the App, or contact us.
- Delete your account — you can delete your account and associated personal data from within the App (Me → Account → Delete account), or by emailing info@honestabove.com. Deletion takes effect after a seven-day grace period: during those seven days simply signing in again cancels it and restores your account, and we do not lock you out in the meantime. After seven days the data is permanently deleted. Some records (e.g. transaction and tax records) may be retained where required by law.
- Notifications — manage push notifications in your device settings.
- Store credit — store credit is in-app value. It can be spent in the App, and credit that arose from a refund can be returned to your original payment method on request (see the Terms of Service, §3). It cannot be purchased, and it is not a cash account.
9. Children
The App is not intended for anyone under 18. We do not knowingly collect data from children. If you believe a child has provided us data, contact us and we will remove it.
10. Security
We use industry-standard measures to protect your data, including encryption in transit and access controls. No method is 100% secure, but we work to protect your information and to notify you and the authorities of any breach as required by law.
11. International transfers
Our service providers may process data outside Singapore. Where they do, we rely on those providers' safeguards and contractual protections consistent with the PDPA.
12. Changes to this Policy
We may update this Policy from time to time. We will post the new version here and update the "Last updated" date. Continued use of the App after changes means you accept the updated Policy.
13. HA Business (our merchant app)
HA Business is a separate app for businesses that list their goods on HonestAbove. It is not a shopping app. Any registered business can apply for an account at https://honestabove.com/sell; we verify the business and the goods it sells before the account is switched on.
What we collect in HA Business, in addition to the sign-in details above:
- Business contact — the business name, and the email or phone number the business applied with and signs in with.
- Stock records — the items a merchant records: brand, model, condition, materials, and for vehicles the registration month, COE expiry and mileage.
- The merchant's own cost or asking price. This is business information, not personal data. It is visible only to that merchant and to HonestAbove. It is never shown to shoppers, and one merchant can never see another merchant's items or prices.
- Photos of goods — taken in the app or chosen from the phone's library. Photos are re-encoded before upload, which removes camera metadata including any GPS coordinates. Photos of an item that is listed are shown publicly on HonestAbove.
HA Business asks for camera and photo-library access only to photograph goods. It does not use location, contacts, or advertising identifiers, and it does not track merchants across other apps or websites.
Merchants can delete their account from inside HA Business at any time. Deletion follows the same 7-day process described in section 8: signing in again within those 7 days restores the account, and after 7 days the account and its personal data are permanently deleted. Listings that were already sold are kept as transaction records, as required for accounting and tax.
14. Contact
Questions or requests about your data:
HonestAbove PTE. LTD. (UEN 202415853R) — info@honestabove.com