Skip to the content.

Privacy Policy

Last updated: 26 July 2026

Volar (“the app”, “we”, “us”) is a personal pilot logbook application. This policy explains what data the app handles, why, and your rights over it. We have designed Volar to collect as little as possible.

Who is responsible for your data

Volar is operated by William Spence, based in the United Arab Emirates. For any privacy question or request, contact: wrspence1@gmail.com.

What we collect

Account information. When you create an account we store your email address and an encrypted password, handled by our authentication provider (Supabase). We do not see or store your password in plain text.

Logbook data you enter. This is the core of the app: your flights, duty periods, times, routes, aircraft, ratings/hours, approaches, simulator sessions, crew names you choose to record, and any pay, per-diem, and limit settings you configure. You provide this data; it belongs to you.

Calendar events, if you choose to import them. Volar can build your planned flights from a roster your airline publishes to a calendar. If you use this feature, the app asks your permission and then reads events from the calendar you select. It reads only what it needs to identify your pairings, and it does this on your device. We do not upload your calendar, and we do not read your calendar unless you start an import.

Your roster feed address, if you configure one. Volar can subscribe to a roster feed published by your airline’s rostering system. If you set one up, the subscription address — which usually contains an access token — is stored in your device’s Keychain, and the app fetches your roster directly from that system. The address is not sent to us. What your airline’s system logs about those requests is governed by your airline, not by this policy.

Diagnostic data. If the app encounters an error, limited technical crash and error information may be sent to our error-reporting provider (Sentry) to help us fix problems. This is diagnostic in nature and is not used to identify you or to build a profile. Personally identifying information is explicitly disabled, and we do not collect performance or usage telemetry.

We do not collect advertising identifiers, device location, contacts, or passive analytics about how you use the app, and we do not use your data for advertising.

Beta testing

While Volar is in closed beta, the app includes a Report a problem feature. It sends nothing unless you choose to submit a report. When you do, the report includes a screenshot of the screen you were on, a short trail of recent actions within the app (for example “opened Logbook”, “sync completed”), your app version and device model, your account email, and basic counts such as how many trips you have. You are shown the screenshot before anything is sent and can remove it.

Please note that a screenshot may capture whatever is on screen, which can include crew names or your own pay figures. Reports are stored in our cloud database and may also be attached to the diagnostic report described above. This feature will be removed, and the reports deleted, when the beta ends.

Beta distribution is through Apple TestFlight. Apple collects its own data about installs, crashes, and any feedback you send through TestFlight itself, under Apple’s privacy policy rather than this one.

How your data is stored

Your logbook is stored locally on your device, in a database encrypted at rest; your session credentials are held in your device’s Keychain. When you are signed in and sync, a copy is stored in a cloud database hosted by Supabase. Cloud data is protected by row-level security so that you can only access your own records.

Where your data is held. Our cloud database is hosted in the European Union (Frankfurt, Germany). Our error-reporting provider may process limited diagnostic data outside the EEA; where it does, that transfer is made under the standard contractual clauses in our agreement with that provider.

Signing out does not erase your device data. If you sign out, your logbook stays on the device so it is there when you sign back in. To remove it, delete your account (below), or delete the app.

Why we are allowed to process your data

Where UK or EU data protection law applies to you, we rely on:

Other people’s data

A logbook records who you flew with. If you enter crew names, you are recording information about other people. We store it only as part of your logbook, never share it, and never use it to build any profile of those individuals. Keep in mind that a name is personal data, and record only what you need for your own professional records.

How we use your data

We use your data only to provide the app’s features: storing and displaying your logbook, syncing it across your devices, calculating hours/limits/pay, and keeping the service working. We do not sell your data or share it with third parties except the infrastructure providers named here (authentication, cloud storage, error reporting) acting on our behalf to run the service.

Your rights and choices

Access and export. You can export your logbook from within the app at any time, as a CSV file, as a formatted PDF logbook, or as a full backup file you keep yourself.

Deletion. You can permanently delete your account and all associated data from within the app (Settings → Account → Delete account). This removes your records from the cloud and the auth account, and wipes the data from your device. Deletion is immediate and cannot be undone.

Permissions. Calendar access can be revoked at any time in your device settings; a roster feed can be removed in the app.

Depending on where you live, you may have additional rights (access, correction, portability, erasure, objection, and complaint to your local supervisory authority). Contact us at the email above to exercise them.

Data retention

We keep your data for as long as your account exists. When you delete your account, your data is removed as described above. Our current hosting plan does not retain database backups, so deleted data is not recoverable from a backup copy. If that changes, this policy will be updated.

Children

Volar is intended for professional and private pilots and is not directed at children under 16. We do not knowingly collect data from children.

Changes to this policy

We may update this policy as the app evolves. Material changes will be reflected by the “Last updated” date above and, where appropriate, surfaced in the app.

Contact

Questions or requests: wrspence1@gmail.com