FlightLynk · Pointiful
Privacy & account management
This notice explains how Pointiful handles personal data in FlightLynk and its associated account and administration services.
Who is responsible?
Pointiful is the controller of user data. FlightLynk is a collaboration between CDM.Watch, Pointiful, Groundcontrol and FlightLynk.
For privacy, account management and support: stijn.devreede@groundcontrol.aero.
What information do we use?
- Your account: email address, internal user ID, verification and approval status, registration and sign-in times. Supabase securely processes your sign-in credentials. Administrators cannot view your password in the dashboard.
- Your preferences: selected airlines are linked to your account and used in the administration dashboard to show which airlines users follow. Followed flights and display settings are stored on your device.
- Technical information: IP address, request time, API route and error information may appear in our hosting and authentication providers' security and diagnostic logs.
- Correspondence: when you email us, we use your message to handle your question or account request.
Purposes and legal grounds
We use account details and preferences to provide the service you request and manage your access. We have a legitimate interest in security, preventing abuse, reliable operation and understanding use of airline filters. This information supports FlightLynk development and administration; it is not used to assess your work performance.
You must provide an email address to use an account. New accounts require email verification and human approval by an authorised administrator. We do not make solely automated decisions with legal or similarly significant effects.
Who has access?
Authorised FlightLynk administrators, including the designated Groundcontrol administrator, can see account applications, approval status and selected airlines. We use Supabase for authentication and Hetzner for our backend and data storage. Service providers process the data needed to deliver their services. Your email address and password are not included in requests for Schiphol flight information.
We do not sell user accounts or personal preferences. Flight and airport performance analysis concerns operational flight data, not individual app users' performance.
App analytics and location
Firebase Analytics collection is disabled in version 2.7.0. Earlier versions used Google Analytics for Firebase to collect device identifiers and app interactions; previously collected data may remain at Google according to configured retention periods. Contact us about requests concerning that data. Google and other international providers may process data outside the EEA. See Firebase privacy information and the Supabase privacy policy for provider details.
Version 2.7.0 does not request your GPS location and does not include advertising tracking. A future radar or receiver feature is outside this version; new processing will be explained before it is introduced.
Retention and deletion
Account details and linked preferences remain available while your account exists. Account deletion immediately removes access and records in the active account database. Removal of your Supabase sign-in account is placed in a durable queue. This normally completes within minutes; failed attempts are retried.
A technical deletion marker without your email address remains for up to 30 days after completion to prevent a delayed synchronisation from recreating your account. Our own database backups rotate: we keep the seven most recent successful backups, which may temporarily contain deleted records. Technical logs and correspondence are retained only as needed for security, handling requests or a legal obligation. Provider backups and logs are also subject to their retention policies.
Operational flight data and non-identifiable totals are not removed when you delete your account. Account deletion does not erase local files on other devices; remove the app on those devices to clear that local data.
Delete your account or exercise your rights
In FlightLynk 2.7.0, open Settings → Delete account and confirm deletion. This option is also available on the account-approval waiting screen.
If you cannot sign in, want access, correction, a copy, restriction or erasure of your personal data, or wish to object to processing based on legitimate interests, email stijn.devreede@groundcontrol.aero. We may verify your identity to protect your account. You can also complain to the Dutch Autoriteit Persoonsgegevens or your local data protection authority.
FlightLynk support
Sign in and use Airlines to choose the airlines you want to follow. Then select arrivals or departures and a date. For a new account, verify your email first and await administrator approval. Email the contact above if you need help. Never share your password.
Changes
We update this notice when processing materially changes and notify users in the app or by email where appropriate.