AirDrive — Pilot Logbook
Flight Smart, Log Smarter
Cómo AirDrive recoge, usa y protege tus datos como piloto durante la beta cerrada. Aplica a la app iOS/Android y a los servicios que la sostienen.
How AirDrive collects, uses and protects your data as a pilot during the closed beta. Applies to the iOS/Android app and the services behind it.
AirDrive Logbook es un logbook digital para pilotos, diseñado para cumplir AMC1 FCL.050. Guarda tus vuelos en el dispositivo primero (offline-first) y los sincroniza con nuestro backend cuando hay red, para que no dependas de la conexión en el aeropuerto ni pierdas datos si cambias de teléfono.
Esta beta es cerrada: un grupo reducido de pilotos la prueba antes de cualquier publicación abierta. Este documento describe el tratamiento de datos tal y como funciona hoy, incluidas las piezas que aún son manuales mientras cerramos el resto del camino a producción.
Todo lo que introduces para llevar tu logbook, más lo estrictamente necesario para que la app funcione offline y sincronice.
| Dato | Dónde vive | Para qué | Con quién se comparte |
|---|---|---|---|
| Email, contraseña (hash), identidad Apple/Google | Autenticación | Acceso a tu cuenta | Supabase |
| Tu nombre y nº de licencia | Perfil de piloto | Portada del logbook. El nombre lo exige AMC1 FCL.050 (a)(1); el nº de licencia no es un dato mínimo, pero figura en la portada del formato modelo | Supabase |
| Tu crew code, posición y base (opcionales) | Perfil de piloto | Rellenar vuelos y roles por defecto; no los exige la norma | Supabase |
| Vuelos: rutas, horas UTC, función, matrículas | Local + nube | Función principal de la app | Supabase |
| Nombre del PIC de cada vuelo | Registro de vuelo | Campo obligatorio AMC1 FCL.050 | Supabase |
| Otros datos de tripulantes (crew code, alias, empresa, base, teléfono, email) — opcionales | Tu lista de tripulación | Autocompletar y distinguir compañeros; no los exige la norma (ver §2b) | Supabase |
| Firma manuscrita (imagen) | Almacenamiento | Firma del logbook | Supabase Storage |
| Del piloto que te contrafirma (PICUS/SPIC): nombre e imagen de su firma | Tu registro de vuelo | Contrafirma exigida por AMC1 FCL.050 (ver §2b) | Supabase |
| Del piloto que te contrafirma: nº de licencia (opcional) | Tu registro de vuelo | Solo si tu autoridad lo pide, p. ej. la IAA irlandesa (ver §2b) | Supabase |
| Del piloto que te contrafirma: crew code (opcional) | Tu registro de vuelo | Vincular la firma a su ficha de tripulante; no lo exige la norma (ver §2b) | Supabase |
| Foto de perfil / de avión | Almacenamiento | Cosmético | ImageKit |
| Foto de roster (OCR) | Solo el dispositivo | Importar turnos | Nadie — se borra al terminar |
| PDF de logbook escaneado | Solo el dispositivo | Importar histórico | Nadie |
| Email de roster reenviado | Bandeja de import | Importar por email | Resend, Supabase |
| Token push, modelo de dispositivo | Notificaciones | Avisos de caducidad | Expo, Firebase |
| Informes de fallos: traza del error, modelo de dispositivo, versión de la app | Diagnóstico | Detectar y arreglar fallos | Sentry |
No hay anuncios ni venta de datos a terceros. Cada tercero de la tabla presta un servicio concreto (auth, almacenamiento, envío de email, push) y solo recibe lo que ese servicio necesita.
Tu logbook incluye datos de otras personas. No todos tienen el mismo origen, así que los separamos:
Tus vuelos y tu perfil se conservan mientras tu cuenta exista — son tu historial profesional, no algo que caduque. Los payloads de importación (roster, texto, CSV) se purgan del dispositivo una vez procesados; puedes revisar y forzar esa limpieza desde Import & Sync en cualquier momento.
Mientras dure la beta, conservamos los datos de los testers en el mismo proyecto que usaremos en producción — es, de hecho, la mejor prueba de que la sincronización y las futuras migraciones no pierden nada. Si en algún momento decidimos borrar el entorno de beta, se avisará con antelación en la propia app.
Cada fila de tus datos está aislada por usuario mediante Row Level Security en Postgres — ni siquiera otro piloto de la beta puede leer tus vuelos. Las imágenes que subes se etiquetan con tu identidad y el backend verifica esa propiedad antes de dejar borrar nada. Los secretos de servidor (claves de servicio, webhooks) nunca viajan al cliente.
Para dudas de privacidad, solicitar el borrado de tu cuenta durante la beta, o mandar feedback: andyrosete17@gmail.com.
Al ser una beta activa, este documento cambiará a medida que cerremos piezas (analítica, compras). La fecha de "Vigente" en la cabecera siempre refleja la última revisión.
AirDrive Logbook is a digital logbook for pilots, built to satisfy AMC1 FCL.050. It saves your flights on-device first (offline-first) and syncs with our backend whenever there's a connection, so you're never dependent on airport wifi and never lose data when you switch phones.
This beta is closed: a small group of pilots is testing it before any open release. This document describes data handling as it actually works today, including the pieces that are still manual while we finish the road to production.
Everything you enter to keep your logbook, plus the minimum required to make the app work offline and sync.
| Data | Where it lives | What for | Shared with |
|---|---|---|---|
| Email, password (hashed), Apple/Google identity | Authentication | Account access | Supabase |
| Your name and licence no. | Pilot profile | Logbook cover. Your name is required by AMC1 FCL.050 (a)(1); the licence no. isn't minimum content, but it appears on the cover of the model format | Supabase |
| Your crew code, position and base (optional) | Pilot profile | Prefilling flights and default roles; not required by the rules | Supabase |
| Flights: routes, UTC times, function, registrations | Local + cloud | The app's core function | Supabase |
| Name of the PIC on each flight | Flight record | Required field, AMC1 FCL.050 | Supabase |
| Other crew details (crew code, alias, company, base, phone, email) — optional | Your crew list | Autocomplete and telling colleagues apart; not required by the rules (see §2b) | Supabase |
| Handwritten signature (image) | Storage | Logbook signature | Supabase Storage |
| Of the pilot who countersigns for you (PICUS/SPIC): name and signature image | Your flight record | Countersignature required by AMC1 FCL.050 (see §2b) | Supabase |
| Of the pilot who countersigns for you: licence no. (optional) | Your flight record | Only if your authority asks for it, e.g. the Irish IAA (see §2b) | Supabase |
| Of the pilot who countersigns for you: crew code (optional) | Your flight record | Linking the signature to their crew record; not required by the rules (see §2b) | Supabase |
| Profile / aircraft photo | Storage | Cosmetic | ImageKit |
| Roster photo (OCR) | Device only | Importing rosters | Nobody — deleted when done |
| Scanned logbook PDF | Device only | Importing history | Nobody |
| Forwarded roster email | Import inbox | Email import | Resend, Supabase |
| Push token, device model | Notifications | Expiry reminders | Expo, Firebase |
| Crash reports: error trace, device model, app version | Diagnostics | Detect and fix crashes | Sentry |
No ads, no selling data to third parties. Every third party in the table performs one specific service (auth, storage, email delivery, push) and receives only what that service needs.
Your logbook includes other people's data. Not all of it comes from the same place, so we keep it apart:
Your flights and profile are kept for as long as your account exists — they're your professional record, not something that expires. Import payloads (rosters, pasted text, CSV) are purged from the device once processed; you can review and force that cleanup anytime from Import & Sync.
For the duration of the beta we keep testers' data in the same project we'll use in production — it's actually the best test that sync and future migrations don't lose anything. If we ever decide to wipe the beta environment, you'll be notified in advance inside the app itself.
Every row of your data is isolated per user with Row Level Security in Postgres — not even another beta pilot can read your flights. Images you upload are tagged with your identity and the backend verifies that ownership before allowing a delete. Server secrets (service keys, webhook secrets) never travel to the client.
For privacy questions, to request account deletion during the beta, or to send feedback: andyrosete17@gmail.com.
Since this is an active beta, this document will change as we close out remaining pieces (analytics, purchases). The "Effective" date in the header always reflects the latest revision.