Privacy Policy
RosterRadar is a crew-roster app. It fetches your own duty roster from your airline's AIMS-based crew portal and shows it to you, along with your rest, your crew, your stations and your reminders. This policy explains exactly what data that involves, who processes it, and how to have it removed.
1. Who we are
RosterRadar is the data controller for the personal data described in this policy. You can reach us at support@r-r.ae.
RosterRadar is an independent application. It is not affiliated with, endorsed by, sponsored by, or operated by any airline, nor by the vendor of any eCrew or crew-management system. Airline names appear in the app only so that you can identify your own employer when connecting your account.
2. What RosterRadar does
RosterRadar is a crew-roster application built for airlines whose crew portal runs on AIMS. With credentials that you provide, it signs in to your airline's crew portal on your behalf and retrieves your own published duty roster. The integration that is live today is Etihad Airways' eCrew portal; additional AIMS airlines may be added over time, and this policy applies equally to them. It then presents that roster to you, calculates your rest, schedules your reminders, and — only where you explicitly choose to — shares limited information with crew colleagues or family members you have connected with.
The connection to your airline's system is read-only. RosterRadar does not bid, swap, accept, drop, or write anything back to your crew account.
3. Data we collect and why
Account details
Your email address and password, used to create and secure your RosterRadar account. Authentication is handled by Supabase; your password is stored by Supabase in hashed form and is not visible to us.
Crew portal credentials
The sign-in credentials for your airline's AIMS crew portal. These are used for one purpose only: to fetch your own roster.
They are stored using envelope encryption with the libsodium library (XSalsa20-Poly1305 authenticated encryption). Each credential is encrypted with its own randomly generated data key, and that data key is itself encrypted under a separate master key held apart from the database. The credential is decrypted only in memory, at the moment a roster fetch is performed.
Roster data
The duties, dates and times, flight numbers, crew lists and stations returned by your airline's system. This is stored so the app can show your roster, calculate rest, schedule reminders, and display the crew you are operating with.
Profile details (optional)
Your name, phone number and airline, if you provide them at sign-up. Where crew data returned by your airline includes nationality, that value may be stored alongside the rest of the roster record.
Push notification tokens
A device push token issued by Expo and Firebase Cloud Messaging. This is used to deliver roster-change notifications, duty and check-in reminders, and crew connection requests. It is not used for marketing.
4. Sharing with crew and family
RosterRadar lets you connect with crew colleagues and family members by email address. Connections are opt-in on both sides: the person you invite receives a request and can accept or decline it.
- Connections are mutual. If either person removes the connection, it is removed for both.
- Connections are revocable at any time from within the app.
- What a connected person can see depends on the type of share. A family share shows read-only presence information — where you are, when you land, when you are next off. A crew connection allows roster-overlap comparison and features such as the wake-up nudge.
We do not share your roster with anyone you have not connected with.
5. Service providers
We use the following third parties to operate the service. Each processes only the data needed for its function.
| Provider | Purpose | Data involved |
|---|---|---|
| Supabase | Authentication and database | Account details, roster data, encrypted credentials |
| Fly.io | Server hosting (United States) | Roster sync processing |
| Firebase Cloud Messaging | Push notification delivery | Device push token, notification content |
| Expo | Push notification delivery | Device push token, notification content |
| Your airline's AIMS crew portal | Source of your roster | Your crew credentials, at the moment of fetch |
| Our email provider for r-r.ae | Transactional email | Email address, message content (e.g. password resets) |
6. What we do not do
- We do not sell personal data.
- There are no advertising SDKs and no analytics SDKs in the app today.
Our marketing materials describe the free plan as advertisement-supported. That describes an intended commercial model; no advertising software is present in the application at the date above. If advertising is introduced, this policy will be updated to name the advertising provider and disclose what data is shared with it, before any such data sharing begins.
7. Where data is processed
RosterRadar's servers and database are hosted on United States infrastructure operated by Fly.io and Supabase. If you use RosterRadar from outside the United States, your personal data will be transferred to and processed in the United States. By using the service you consent to that transfer.
8. Retention and deletion
- Roster data and stored credentials are retained while your account is active.
- Disconnecting your crew portal deletes the stored credential. You can do this yourself from within the app at any time; it takes effect immediately.
- Account deletion is currently handled on request. Email support@r-r.ae from the address associated with your account and we will delete your account and its associated data.
An in-app "delete account" control is not yet available. Until it is, deletion is by request to support@r-r.ae.
9. Security
- Encryption at rest for credentials — envelope encryption as described in section 3.
- Biometric application lock — the app can be locked behind Face ID, Touch ID or your device passcode, with automatic re-locking after a period of inactivity.
- Verified API requests — requests to our servers are cryptographically signed and verified. Signing algorithms are checked against a strict allowlist, and any request that cannot be verified is refused rather than allowed through.
No system is perfectly secure. We take the measures above and keep them under review, but we cannot guarantee absolute security.
10. Your rights
You may request access to the personal data we hold about you, request a copy of it, request correction of anything inaccurate, or request its deletion. To exercise any of these, email support@r-r.ae from the address associated with your account.
Depending on where you live, you may have additional rights under local data-protection law, including the right to object to or restrict processing and the right to complain to your local supervisory authority.
11. Children
RosterRadar is intended for professional airline crew, who are adults. It is not directed at children, and we do not knowingly collect personal data from children. If you believe a child has provided us with personal data, contact support@r-r.ae and we will delete it.
12. Changes to this policy
If we change this policy we will post the updated version on this page and revise the "Last updated" date at the top. Where changes are significant — for example the introduction of advertising, or a new category of data — we will make reasonable efforts to notify you in the app before they take effect.
13. Governing law
This policy and any dispute arising from it are governed by the laws of the United Arab Emirates, and the courts of the United Arab Emirates shall have jurisdiction.
14. Contact
Questions about this policy, or requests relating to your data: