Flown

A flight logbook for private pilots

Privacy Policy

Last updated 12 August 2026

Flown collects no data about you. There is no account to create, no server to send anything to, and no analytics of any kind. Your logbook lives on your device and, if you choose, in your own iCloud account — which only you can read.

This policy explains what Flown does with information on your device, why it asks for each permission, and what leaves your phone. It is short because there is not much to say.

What we collect

Nothing. Flown has no user accounts, no login, no backend server, and no third-party analytics, advertising, or tracking software of any kind. We do not receive your flights, your name, your location, your email address, or any identifier for you or your device. We could not look up your logbook if we wanted to.

Flown does not track you across apps or websites, and it does not use the Advertising Identifier.

What stays on your device

Everything you enter into Flown is stored on your device: flights, aircraft, endorsements, instructor signatures, GPS tracks, photographs of paper endorsements, and your pilot profile.

iCloud sync

If you are signed in to iCloud, Flown syncs your logbook through your own iCloud private database, so it appears on your other devices and is included in your Apple backups. This uses your personal iCloud storage and is governed by Apple's privacy policy. We have no access to it — a private database is readable only by the Apple ID that owns it. You can turn iCloud off for Flown at any time in iOS Settings.

Permissions, and why each one is asked for

PermissionWhy Flown asksWhere it goes
Location To record the GPS track of a flight and detect when one starts and ends. Flown asks for background ("Always") access so a flight is still logged with your phone locked in the cockpit. Stored on your device with the flight. Never transmitted to us.
Camera To photograph an endorsement written in a paper logbook. Stored on your device with the endorsement.
Photo library To attach an existing photograph of an endorsement. Stored on your device with the endorsement.
Local network To receive position data from an external ADS-B receiver on the same Wi-Fi network as your phone. Read from the receiver, stored on your device. Nothing is sent outward.
Notifications To warn you before a currency or medical lapses. Scheduled locally on your device. No push server is involved.

Every one of these is optional. Declining any of them leaves the rest of Flown fully usable — automatic flight logging and external receiver support simply will not run.

Date of birth

Flown can compute the validity of a medical certificate, which under FAA rules depends on your age. If you would rather not enter a date of birth, leave it blank and enter the expiry date yourself instead. If you do enter it, it is stored with the rest of your logbook and never leaves your device except through your own iCloud.

Purchases

Flown offers an in-app purchase to remove the free tier's entry limit. Purchases are handled entirely by Apple through the App Store. We never see your payment details — not your card, not your name, not your address. Flown asks Apple only whether this Apple ID has bought the app, and stores that yes-or-no answer on the device. Purchases are governed by Apple's privacy policy.

Data you export

Flown can export your logbook as CSV, PDF, or JSON. Exported files are produced on your device and handed to the iOS share sheet — nothing passes through us. Once you send a file somewhere else, it is covered by that destination's privacy policy, not this one.

Children

Flown is a tool for pilots and is not directed at children. It collects no data from anyone, of any age.

Changes to this policy

If this policy changes, the revised version will be posted on this page with a new date at the top. Because Flown collects nothing, any change is likely to be a clarification rather than a change in what happens to your data.

Contact

Questions about this policy, or about privacy in Flown, can go to flownsupport@gmail.com.