Privacy Policy
1. Scope
This policy covers the mobile applications and web applications published by amenai technologies for general aviation, including NOTAM Briefer and Pilot Briefer, together "the Applications", and the backend services they connect to.
2. The short version
The Applications have no user accounts. We never ask for your name, your email address or your payment details, and we have no way to identify you as a person. We show no advertising, we use no advertising identifier, we do no tracking in the sense of Apple's App Tracking Transparency, and we never sell or share your data with anyone for advertising or marketing.
3. What we collect, and why
| Data | Where it goes | Why |
|---|---|---|
| Device identifier: a random identifier generated on your device at first launch | Our servers, and Firebase as an app-instance identifier | Rate limiting, deciding which subscription tier your device holds, and counting usage. It is not an advertising identifier and is not derived from your hardware. |
| Precise location, while live tracking is switched on | Our servers only | To return the NOTAMs near your aircraft. Coordinates are rounded before they are recorded in any log. |
| Crash reports, performance and diagnostic data | Firebase Crashlytics | To find and fix faults. |
| Product interaction: which features are used, and for a briefing the four-letter codes of the airports briefed | Firebase Analytics, and our own servers as counts | To understand how the Applications are used and how many people reach the limits of the free tier. |
| Purchase receipt, when you subscribe | Our servers only | To verify the purchase with Apple or Google and unlock the tier you paid for. |
Airport codes are the only place a location-like value reaches analytics, and they are filtered to four-character identifiers so that free text you typed cannot be sent.
4. What we do not collect
- No name, email address, postal address or telephone number.
- No payment data. Apple and Google process the payment; we receive only a receipt confirming that a purchase happened, never a card number.
- No voice recording. Where an Application offers voice entry, it calls the speech recognition service built into your operating system. Apple or Google performs the recognition under their own privacy policies. We receive only the resulting text, we do not store it, and no audio ever reaches our servers, our crash reports or our analytics.
- No advertising identifier, and no advertising SDK of any kind.
- Your position never reaches analytics or crash reports. It goes to our own servers and nowhere else.
5. Legal basis
Under the General Data Protection Regulation we rely on:
- Performance of the service for the device identifier, location while tracking is on, and purchase receipts. Without them the corresponding feature cannot work.
- Consent for crash reporting and for analytics. Both are switched on by default and each can be switched off independently, at any time, in the Application's settings. Switching one off stops the corresponding collection.
- Consent for microphone access and location access, which your operating system asks for separately and which you can withdraw in system settings.
6. Who else processes your data
| Processor | What they receive | Their policy |
|---|---|---|
| Amazon Web Services | Our backend services and their data, hosted in the United States | aws.amazon.com/privacy |
| Google Firebase, for Crashlytics and Analytics | Crash, performance and product interaction data, and an app-instance identifier | firebase.google.com/support/privacy |
| Apple, Google Play | The purchase and its receipt, if you subscribe | apple.com/legal/privacy, policies.google.com/privacy |
| Apple, Google, for speech recognition | The audio, if you use voice entry, under their own policies | as above |
Data processed by our backend is stored in the United States. Transfers out of the European Economic Area rely on the European Commission's Standard Contractual Clauses as implemented by these providers.
7. Data kept on your device
The Applications store data locally so they work without a network connection: your settings, saved routes, briefings you have opened, and for NOTAM Briefer up to 150 MB of aeronautical chart tiles and NOTAM data around your aircraft. This stays on your device. Deleting the Application deletes it.
8. How long we keep it
- Usage counts and subscription state: for as long as your device uses the service, plus a rolling window needed to apply monthly and weekly limits.
- Crash and analytics data: for the retention period set by Firebase, at most 14 months for analytics.
- Server logs: coordinates are rounded before being written, and logs are kept for a limited operational period only.
9. Your choices
- Turn crash reporting off in the Application's settings.
- Turn analytics off in the Application's settings, independently.
- Deny or withdraw location and microphone permission in your operating system's settings. The rest of the Application keeps working.
- Delete the Application. Everything held on the device goes with it.
10. Your rights
You have the right of access, rectification, erasure, restriction, portability and objection. Because the Applications hold no identity, the only key to your data is the device identifier described in section 3. Write to contact@amenai.net and we will tell you how to locate it for your device and platform, then act on your request. You may also lodge a complaint with the Commission Nationale de l'Informatique et des Libertés (CNIL) in France, or with your own supervisory authority.
11. Children
The Applications are aviation tools intended for pilots and are not directed at children. We do not knowingly collect data from children.
12. Security
Traffic between the Applications and our servers uses TLS. Data at rest on our servers is encrypted. Access to production systems is restricted and logged.
13. Changes
We will update this policy when what we collect changes, and the version and date at the top will change with it. Material changes will be announced in the Application.