Privacy policy
Effective 28 September 2026 · 1001569350 Ontario Inc.
G Force Logbook and Scheduling (the "app", at gforcelog.com and the iPhone and Android apps) is a pilot logbook and crew schedule for airline crews, run by 1001569350 Ontario Inc., a corporation registered in Ontario, Canada ("G Force", "we"). Access is by invitation only, for adults working as flight crew. This page explains what the app stores, why, who can see it, and how to get it deleted. There are no ads, we never sell or rent your information, and there are no advertising or analytics SDKs inside the app.
What the app stores
| Your account and profile | Email address (for signing in with a one-time code, and for the messages described below), your name, and what you choose to add: phone number, licences and type ratings, a signature image for the printed logbook, your home base, and display preferences. |
|---|---|
| Your logbook | The flights you log or import (dates, aircraft, route, times, crew names you type, remarks) and the exports you generate (PDF, CSV). It is your record; we don't use it for anything else. |
| Your schedule | If you connect your airline's crew portal, the app reads your roster with your crew credentials: flights and duties, check-in and check-out times, hotels, the names and IDs of crew on your flights, and roster notices. In the phone app the sync runs from your phone and your crew password stays in the phone's secure storage; our servers never receive it. On the website, the password is stored encrypted on our servers so the sync can run there; you can remove it at any time. The app only reads your roster. It presses nothing in your airline's system, except Confirm on a schedule change when you ask it to, in two steps, and it never bids or changes anything. |
| Crew | Who you have flown with (from your rosters), plus any contact details or notes you add about crew members. Contacts and notes you add are visible only to you. If you turn on sharing, crew at your airline on the app can see your upcoming schedule and, if you allow it, your email address and phone number. You choose who sees your number (pilots, flight attendants or both, and which bases) and can hide it from anyone; you see other crew's numbers only when you both share with each other. Sharing is off by default and can be switched off at any time. |
| Crew tips | Recommendations you post (restaurants, hotels, airport notes) are shown to other crews under a byline with only your airline and whether you're a pilot or flight attendant, never your name. The administrator can see who posted a tip, to keep the tips honest, and receives an email when a tip is posted. |
| Suggestions | What you send with Suggest a feature or fix, and any screenshots you attach, is kept with your account so you can follow it, and emailed to the administrator. Only you and the administrator can see it. Screenshots are made smaller on your device before they are sent, and are deleted a year later, or with your account. |
| Technical | A sign-in code sent to your email; a device key kept in your browser or app so your sign-in works only on that device; a session cookie; server logs with IP address, request details and error messages, kept for a short time by our hosting provider; and counts of which features are used (for example "synced" or "exported a PDF"). The contents of your logbook are never part of those counts. Sessions opened through a test link (for testers and security auditors) are logged in detail and deleted together with the test account. When you ask for a sign-in code or send the "Help add your airline" form, Cloudflare Turnstile checks that a person is sending it, using signals from your browser and connection; it isn't used for advertising or to follow you across websites. |
What the app does not do
- No advertising, no sale or rental of personal information, no data brokers.
- No location tracking: hotel and airport pins come from your roster, not from your phone's location.
- No access to your phone's contacts or photos beyond what you pick yourself (for example a photo of your signature).
- Face ID, Touch ID and fingerprint unlock are handled by your phone. The app only learns whether the check passed; no biometric data is stored or sent anywhere.
- The website may use Cloudflare's cookie-less, aggregate web analytics (page views only, no personal profile).
Who processes the data for us
Cloudflare (hosting and database), Twilio SendGrid (sending emails such as sign-in codes and invitations), Google Drive (an encrypted daily backup copy of the database that can only be read with a key kept offline by G Force), and Apple and Google (distribution of the phone apps). Each of them processes data only to provide those services. The service runs on Cloudflare's global network, so data may be processed outside the country you live in.
If you help add your airline
If you send us pages, screenshots or a recording from your airline's crew portal to help add your airline (gforcelog.com/airlines), the page first removes sign-in cookies, tokens and codes from them in your own browser, then sends them to us by email (through Twilio SendGrid). We use them only to build the reader for that airline. The files are kept off our servers and out of the app, and deleted once the reader works. To stop misuse of the form, we note who sent what (your email address, the airline, the size and your network address) for 30 days. Never send a password; the instructions show how to record without one.
How long we keep it, and how to delete it
Everything is kept for as long as your account exists. You can delete your account yourself in Settings → Devices → Delete my account: your account, logbook, schedule, crew contacts and settings are removed immediately, and your tips lose their link to you. You can also email us and we will do it for you within a few days. Encrypted backup copies are replaced on a rolling basis and are only used to recover the service. Server logs are kept for days, not months.
Your rights
You can see, correct, export and delete your information from inside the app, and switch sharing on or off at any time. Depending on where you live (for example Canada, the European Union or California) the law may give you further rights, such as asking what we hold about you or objecting to a use. Write to us and we will help.
Security
Connections are encrypted (TLS). Sign-ins are one-time codes, tied to the device that requested them; session cookies are HttpOnly and cannot be moved to another computer. Personal details are visible to the administrator only where this page says so. The app has been through independent security assessments, and we fix what they find.
Changes
If this policy changes, the new version is posted here with a new effective date. Changes that matter to you will also be announced inside the app.
Contact
1001569350 Ontario Inc. · Ontario, Canada · info@gforcelog.com
