Veoma Back to Veoma

Draft — this policy takes effect at launch and may be refined before then. Questions: veoma.app@gmail.com

Privacy Policy

Last updated: 3 September 2026.

Veoma exists so professional flight crew can coordinate their flying lives in one place. That only works if you can trust us with sensitive information — so this policy is written to be read, not skimmed. Veoma is intended for professional flight deck and cabin crew aged 18 and over and is not directed at children.

What we collect

  • Account & profile — your name, email, airline and base, whether you are flight deck or cabin crew, and — for flight deck — your rank and fleet. Plus an optional profile photo and bio, and the licence/ID document you submit for verification (used only to confirm you are crew).
  • Roster data you import — duties, sectors, times and layovers from your crew-app export.
  • Activity on Veoma — swap posts, offers, messages and connections you create.
  • Gender — we ask when you set up your profile, and you must answer before you can use Hangouts. Prefer not to say is a complete answer and opens Hangouts exactly like any other. It is never shown to other crew and never appears on your profile. We use it for one purpose: deciding who can see and join a women-only hangout, so that crew who want that option have it. Everywhere else on Veoma it stays a count across all crew, used to plan community features. You answer once, and it cannot be changed or cleared afterwards. That is deliberate: an answer that decides who can see a women-only hangout would protect nobody if it could be rewritten. If yours is wrong, write to veoma.app@gmail.com and we will correct it. Deleting your account erases it along with everything else.
  • When you last opened the app — a single date, so the team can tell who may be stuck partway through joining and offer help. It is visible only to the Veoma team, never to other crew, and we record the date only, never what you looked at.
  • Notification devices — if you turn push notifications on, we store the delivery address your browser issues for that device. Turning notifications off removes it.
  • Safety reports — if you report a crew member, a swap post or a hangout, we store the report along with who filed it, so the team can act on it and follow up.
  • Usage & performance — privacy-light, cookieless analytics that measure which pages are used and how the app performs, not tied to your identity and never used for advertising.
  • Crash and error reports — when something in the app breaks, we record what broke and where in our code, so we can fix it instead of waiting for someone to tell us. These reports carry the technical failure only: not your name, not your account, not your IP address, and never a recording of your screen.

The roster promise

Your roster is airline-confidential material and we treat it that way. Your imported roster is visible to you alone. It is never shown to other pilots, never sold, never shared with airlines or third parties, and never used for anything except the features you invoke — such as posting a specific duty for swap, where only that duty (never your full roster) becomes visible, anonymously, to eligible pilots at your own airline.

What other crew see

A swap post is anonymous on the board. Your identity is revealed only when the poster opens a private chat with an interested pilot, and only to those two pilots. Showing interest — or declining — never reveals who you are to anyone else.

Hangouts: where you are, and where you are going

Hangouts helps crew meet up on a layover, and it is the one part of Veoma that touches your location. Nothing here runs unless you switch it on, and each piece switches off on its own.

  • Where you are now. When you turn location on, your browser gives your position to your own device, and your device works out which airport you are nearest using a list carried inside the app. The position itself never leaves your phone. Only the airport code is sent to us. We do not receive your coordinates, we do not store them, and we cannot reconstruct where in a city you were.
  • That you are there. While you are on the board, other verified crew in the same city can see your name, your photo, your airline, rank or fleet, your note and how long you are around — and you can only see them if you are visible yourself. Nobody sees you who is not equally visible to you. Visibility lasts between four and twenty-four hours and then expires by itself. The record is deleted rather than archived, so Hangouts keeps no history of the airports you have been at.
  • Where you will be. You can open up a layover from your imported roster, which tells other crew you will be at that airport on those dates. It covers that trip only, never your wider roster, and it clears once the dates have passed.
  • Plans and their group chats. A plan you host or are approved for, who is in it, and the messages in its group chat. Asking to join shows the host a count — your name reaches the host when they look at their guest list, and the other guests only once you are approved. If a plan is women-only, it is shown only to crew who can join it.

Who processes your data

Data is stored with Supabase (hosted infrastructure, encrypted in transit and at rest) with row-level security, so each member's private records are technically inaccessible to others. The app is hosted on Vercel, which also provides the cookieless usage analytics described above. Live weather is fetched from the NOAA Aviation Weather Center, the VATSIM METAR relay and the Open-Meteo forecast model, so each report can be cross-checked against another source. Those requests are made by our server rather than your device, so the weather providers never see who asked. Sentry receives error diagnostics when something in the app breaks — what failed and where in the code, so we can fix it. It is deliberately limited: we have turned off the settings that would attach your IP address, your session or your account, and we have not enabled session recording, which would have captured rosters and private chats. These providers process data on our behalf under their own security terms — we do not sell your data, and we do not share it with third parties for their own purposes.

Blocking and reporting

Blocking someone is private — they are never told, and it removes them from your view without changing anything for anyone else. Reporting is the opposite: it tells the Veoma team, so we store what you reported and that it was you who reported it. The person you report is never told who filed it.

How long we keep things

We keep your data while your account is active. Some things go sooner: your verification document is deleted once the decision on it has been made — it has no purpose after that — swap posts are cleaned up automatically once the duty has flown, your Hangouts visibility expires within a day and is deleted rather than archived, and a layover you opened up clears once those dates have passed.

Deletion & your control

You can delete your account yourself at any time from your account settings (Danger zone); this permanently removes your profile, roster, posts, offers, messages and connections. You can also clear imported roster data by re-importing it. Full instructions, including what to do if you no longer have the app installed, are on our account deletion page.

Your rights

You can ask us for a copy of the data we hold about you, ask us to correct it, ask us to delete it, and withdraw any consent you have given. Your gender is the one answer you cannot edit yourself — write to us and we will correct it, or delete your account and it goes with it. You can turn Hangouts visibility off whenever you like, and it lapses on its own in any case. You can also complain to us about how your data has been handled, and we will respond. Write to veoma.app@gmail.com for any of these and we will come back to you within 30 days.