# Privacy Policy

This is a minimal privacy policy for flightside.app.

Last updated: June 22, 2026

## 1. Operator And Contact

FlightSide is operated as an independent web project at flightside.app.

For privacy questions, use the
[contact page](https://flightside.app/contact).

## 2. What We Collect

FlightSide does not require an account. Most flight calculations run in
your browser.

FlightSide uses your browser's local storage, session storage, and
IndexedDB for preferences and cached reference data. That data stays on
your device and is not used for cross-site advertising.

| Category | Examples | Processed by |
|---|---|---|
| Contact submissions | Any details you choose to submit in the contact form | Form, hosting, and abuse-prevention providers |
| Shared result links | Flight details encoded in a URL you share; nothing is stored server-side | Anyone you choose to share the link with |
| Technical request data | IP address, user agent, and request metadata | Hosting, CDN, and security providers |
| Performance analytics | Aggregate traffic and performance metrics (page path, referrer, browser/OS, country) | Cloudflare (analytics disabled for visitors in the EU/EEA) |
| Product analytics | Product metrics (page path, referrer, browser/OS, approximate country, and selected in-app actions) | FlightSide and its infrastructure providers |

## 3. How We Use Data

Contact form data is used to respond to messages, handle support, and
reduce spam or abuse.

## 4. Tracking, Do Not Track, And Cross-Site Collection

FlightSide does not sell personal data or share it for cross-context
behavioral advertising.

FlightSide does not run cross-site behavioral advertising or invasive
profile tracking.

Because FlightSide does not run cross-site tracking on its own, it does
not currently act on browser Do Not Track signals.

FlightSide runs its own first-party product analytics to understand how
the website is used and improve it. It does not use analytics cookies or
client-side analytics storage.

Cloudflare provides hosting, security and abuse prevention, and (outside
the EU/EEA) lightweight first-party performance analytics. Strictly
necessary cookies or request metadata may be processed to deliver and
secure the website.

## 5. Retention, Security, And Requests

Contact submissions are retained only as long as reasonably needed for
support, security, and operations.

Reasonable technical and organizational safeguards are used, but no
method of storage or transmission is guaranteed to be perfectly secure.

To make a privacy request, use the contact page and include enough detail
for verification and response.

## 6. Policy Changes

This policy may be updated over time. Material changes are reflected by
the "Last updated" date on this page.
