Security
How your data is handled.
FlightReady stores information pilots reasonably consider sensitive — routes, aircraft, currency, personal minimums. This page states, plainly, what protects it and who provides each layer. Where a certification belongs to a vendor rather than to us, we say so.
Technical measures
The layers, and who runs them.
FlightReady is built on managed infrastructure from Supabase, Vercel, and Stripe rather than self-operated servers.
TLS in transit
Traffic between your device and FlightReady is encrypted with TLS, and HTTPS is enforced across web endpoints.
Encryption at rest
User data lives in Supabase-managed PostgreSQL, which encrypts data at rest at the infrastructure level. Backups inherit the same encryption.
Supabase Auth
Sign-in is handled by Supabase authentication with token-based sessions. Passwords are hashed by the auth provider and never stored in plaintext by FlightReady.
Stripe payment processing
Subscriptions are processed by Stripe. Card data is entered on Stripe-hosted payment surfaces and never touches FlightReady servers.
Vercel hosting
The web application is deployed on Vercel's managed platform, with the database and authentication on Supabase's managed infrastructure.
Data practices
What your data is for.
Your data produces your assessments
Pilot profile, aircraft, routes, and personal minimums are used to produce your readiness assessments and saved history. That is what they are collected for.
Not sold
We do not sell your data.
Account deletion
Email support@flightready.ai to request account deletion and we will remove your account and associated personal data.
Questions
Ask us anything about this page.
If something here is unclear — or you think we've gotten something wrong — email us. Security questions get read by a person, and if you find a vulnerability we'd like to hear about it privately first.