Privacy Policy
Last updated 12 August 2026
Flown collects no data about you. There is no account to create, no server to send anything to, and no analytics of any kind. Your logbook lives on your device and, if you choose, in your own iCloud account — which only you can read.
This policy explains what Flown does with information on your device, why it asks for each permission, and what leaves your phone. It is short because there is not much to say.
What we collect
Nothing. Flown has no user accounts, no login, no backend server, and no third-party analytics, advertising, or tracking software of any kind. We do not receive your flights, your name, your location, your email address, or any identifier for you or your device. We could not look up your logbook if we wanted to.
Flown does not track you across apps or websites, and it does not use the Advertising Identifier.
What stays on your device
Everything you enter into Flown is stored on your device: flights, aircraft, endorsements, instructor signatures, GPS tracks, photographs of paper endorsements, and your pilot profile.
iCloud sync
If you are signed in to iCloud, Flown syncs your logbook through your own iCloud private database, so it appears on your other devices and is included in your Apple backups. This uses your personal iCloud storage and is governed by Apple's privacy policy. We have no access to it — a private database is readable only by the Apple ID that owns it. You can turn iCloud off for Flown at any time in iOS Settings.
Permissions, and why each one is asked for
| Permission | Why Flown asks | Where it goes |
|---|---|---|
| Location | To record the GPS track of a flight and detect when one starts and ends. Flown asks for background ("Always") access so a flight is still logged with your phone locked in the cockpit. | Stored on your device with the flight. Never transmitted to us. |
| Camera | To photograph an endorsement written in a paper logbook. | Stored on your device with the endorsement. |
| Photo library | To attach an existing photograph of an endorsement. | Stored on your device with the endorsement. |
| Local network | To receive position data from an external ADS-B receiver on the same Wi-Fi network as your phone. | Read from the receiver, stored on your device. Nothing is sent outward. |
| Notifications | To warn you before a currency or medical lapses. | Scheduled locally on your device. No push server is involved. |
Every one of these is optional. Declining any of them leaves the rest of Flown fully usable — automatic flight logging and external receiver support simply will not run.
Date of birth
Flown can compute the validity of a medical certificate, which under FAA rules depends on your age. If you would rather not enter a date of birth, leave it blank and enter the expiry date yourself instead. If you do enter it, it is stored with the rest of your logbook and never leaves your device except through your own iCloud.
Purchases
Flown offers an in-app purchase to remove the free tier's entry limit. Purchases are handled entirely by Apple through the App Store. We never see your payment details — not your card, not your name, not your address. Flown asks Apple only whether this Apple ID has bought the app, and stores that yes-or-no answer on the device. Purchases are governed by Apple's privacy policy.
Data you export
Flown can export your logbook as CSV, PDF, or JSON. Exported files are produced on your device and handed to the iOS share sheet — nothing passes through us. Once you send a file somewhere else, it is covered by that destination's privacy policy, not this one.
Children
Flown is a tool for pilots and is not directed at children. It collects no data from anyone, of any age.
Changes to this policy
If this policy changes, the revised version will be posted on this page with a new date at the top. Because Flown collects nothing, any change is likely to be a clarification rather than a change in what happens to your data.
Contact
Questions about this policy, or about privacy in Flown, can go to flownsupport@gmail.com.