Privacy Policy
This policy describes how Krewflight processes information when you use the service.
Information you provide
We process your account identity (Firebase ID, email, name, and authentication provider), optional crew profile and preferences, extracted bid package fields, source text, and saved selections. Do not upload information you are not authorized to process. Avoid sensitive personal details in documents and AI questions.
PDF processing and private storage
The current PDF analyzer reads the original file on your device. The original PDF is not uploaded by this feature. Extracted line data, source text, package metadata, and your saved bid orders are stored in your private Firebase workspace. Account access is governed by authentication and ownership rules. Technical request logs may include timestamps, IP addresses, errors, and browser information needed to operate and protect the service.
Payments
Stripe collects and processes payment details in its hosted checkout and billing portal. Krewflight does not receive or store your full payment card number. We retain customer and subscription identifiers, billing state, and agreement acceptance records to administer your subscription. Stripe may retain transaction records for its legal and regulatory obligations.
Optional AI assistance
AI runs only when you request an answer and consent to send your question and the selected line summary. Up to 20 extracted lines, relevant package period information, and your question are sent through Vercel AI Gateway to the configured model provider. Your original PDF, password, card information, and crew profile are not included in the request. Do not enter sensitive information in your question. Krewflight displays answers in your current session and does not save AI question or answer text to your workspace. Infrastructure or AI providers may process and retain request information under their own policies and settings; we do not promise zero retention or that providers never use data for training.
Why and with whom we process information
We use information to authenticate you, save and retrieve your workspace, deliver requested analysis, administer billing, prevent abuse, respond to support requests, and comply with law. Service providers include Google/Firebase for authentication and data storage, Vercel for hosting and AI routing, Stripe for billing, and the AI model provider used for your request. We do not sell your workspace data or use it for targeted advertising. Data may be processed outside your country.
Cookies and browser storage
Authentication uses browser storage so your session can persist. Essential security cookies or similar storage may also be used by our hosting and payment providers. Signing out hides your private workspace on the device. This service does not currently deploy marketing cookies through its workspace code.
Retention and deletion
Workspace data stays available while your account exists. In Settings, Delete account cancels future subscription billing and permanently removes your authentication identity, profile, preferences, extracted packages, and saved bids. If deletion is interrupted, sign in again and resume deletion. Limited billing references, agreement records, and provider transaction or technical records may be retained where needed for accounting, disputes, security, or legal obligations. Provider backups may expire according to provider retention schedules; deletion does not imply immediate erasure from every backup.
Your choices and requests
You can edit your profile and preferences, export selected lines, cancel your subscription, decline AI analysis, and delete your account. Contact support@krewflight.com for access, correction, export, deletion, or privacy questions. Depending on your location, additional statutory rights may apply. We will handle verified requests as required by applicable law. Krewflight is intended for adults, not children under 18.
Updates
We will update the effective date when this policy changes and communicate material changes as appropriate.