The privacy model in four points.
No advertising software, data brokers, or tracking across apps or websites.
Settings, saved flight boards, history, and logs normally remain on your computer or phone.
Community Relay, Remote Companion, Standalone, support, and diagnostics connect only for the feature you select.
Privacy choices explains reports, resets, pairing revocation, erasure, and data requests.
- Companion and supported HUB75 LED matrix panels connect to the computer running Local Flight first. Remote Companion can carry encrypted messages when your home connection is unavailable; Standalone connects directly to the shared online service.
- Manual reports leave your device only when you send them. Automatic crash reports run only after you opt in.
- Optional mobile support purchases are handled by Apple or Google, unlock nothing, and do not create a Local Flight account.
- Local Flight is an informational display aid, not a navigation, dispatch, operational-control, or safety system.
What stays on your devices.
The computer running Local Flight keeps saved flight boards, settings, your own aviation-data API keys, movement history, logs, desktop state, paired-phone details, Remote Companion encryption secrets, and LED matrix settings. Your aviation-data keys go only to the provider you selected when Local Flight requests data from that provider. Browsers on your home or local network (LAN), Companion phones, and matrix boards ask your own Local Flight computer for their information.
Mobile Standalone keeps its connection details, selected airport, appearance, diagnostics choice, pinned flight, and recent movement history on the phone. Beacon Tools does not store that movement history.
Home-screen widgets read a small saved copy already written by the mobile app. A widget does not contact your Local Flight computer, Community Relay, or an aviation-data provider by itself.
When an online feature connects.
If you choose Beacon Tools’ shared online service (Community Relay), Remote Companion, or mobile Standalone, Local Flight connects to https://relay.beacontools.cc. The service can provide shared airport boards, radar and map helpers, activate a connection, apply fair-use limits, pass along encrypted paired-phone messages, and deliver reports you choose to send.
The service reuses recent shared results where possible. If you use your own aviation-data API keys instead, those keys stay on your Local Flight computer and are sent only to the provider you selected.
Beacon Tools keeps only the service records needed to run and protect the feature: a random ID used to operate the service, not an account; usage counts; broad app and device details; encrypted-message routing details; last-connected times; and short-lived shared data.
The Local Flight application database does not store raw IP addresses. Fly.io, Cloudflare, and other network providers may briefly process connection data in infrastructure or security logs under their own policies. The service does not store your personal aviation-data keys, names or email addresses from normal app use, readable Remote Companion messages, local movement history, Standalone movement history, payment-card details, or local logs unless you explicitly include cleaned logs in a report.
Mobile, Remote Companion, LED matrices, and VATSIM.
Companion, Standalone, and LED matrices
Companion keeps the Local Flight computer address, pairing identity, appearance, pinned flight, profiles, diagnostics choice, and optional Remote Companion access on the phone. Standalone keeps its separate service identity and access token, airport, appearance, pinned flight, diagnostics choice, and movement history on the phone. LED matrix boards receive only display and configuration data from your Local Flight computer.
Remote Companion
Remote Companion messages are end-to-end encrypted. The encryption key stays on the paired phone and Local Flight computer; Community Relay passes along the encrypted request and response without receiving that key or readable content.
VATSIM
VATSIM mode uses public virtual-network data for the flight board. Local Flight keeps callsigns, aircraft, filed route or flight-plan details, airport and timing data, and aircraft position where useful. It intentionally avoids storing or displaying pilot names, controller names, CIDs or account IDs, server names, and other person-identifying VATSIM fields.
Reports and diagnostics remain your choice.
A manual app report can include the title and description you write, Local Flight version, public Support ID, operating system, Python version, configured airport and data mode, diagnostics choice, display settings, and the app area that sent the report.
The public website contact and bug-report forms can include the fields you submit, such as an optional name and reply email, your message, product, area, version, device details, and optional text or log files. Uploaded logs have size limits, are cleaned, and are included as short excerpts rather than stored as raw attachments.
For spam and duplicate protection, the service turns the connection address into a one-way code and then discards the original address. That code can accompany a support email or developer report. Support messages, report events, and duplicate-protection records may remain in the service database, support mailbox, or developer report system until routine cleanup or a valid deletion request.
Automatic crash reports, when enabled, can include crash details, an error trace, the desktop or mobile area involved, and—only for the stronger diagnostics option—a short cleaned excerpt from the latest text log. Reports are cleaned on your device, checked for duplicates and rate limits by Beacon Tools, and sent to the developer’s Linear report inbox.
Diagnostics do not intentionally include API keys, activation tokens, raw install IDs, raw IP addresses, screenshots, recordings, stored flight history, full local logs, or account data.
Purchases and in-app payments (IAP).
The mobile app can offer three optional one-time consumable support products through Apple App Store or Google Play. They unlock nothing and create no lasting paid entitlement. They create no subscription, paywall, or Local Flight account. The store shows its localized price before its purchase sheet opens.
Who processes the payment
Apple or Google processes the purchase, payment-card details, store account, refunds, and store purchase history under its own terms. Local Flight does not receive your card details, Apple ID, or Google account identity.
What is sent for verification
After the store reports a successful purchase, Local Flight sends the store platform, product ID, random Local Flight installation identifier, app version, bundle or package identifier, and either the Apple transaction ID or Google purchase token over HTTPS to Beacon Tools’ shared online service (Community Relay). The service checks that purchase with Apple’s App Store Server API or the Google Play Developer API.
The app finishes or consumes the purchase only after verification succeeds. If verification is interrupted, the unfinished purchase remains with the store so Local Flight can try again. A pending, cancelled, rejected, refunded, or revoked purchase does not unlock or change any Local Flight feature.
What Beacon Tools retains
Community Relay immediately turns the store proof into a keyed one-way hash and short reference. Its verification record keeps only that hash and reference, product ID, store platform and environment, installation fingerprint, verification status, first and last attempt times, attempt count, and a short error code when verification fails. A one-way network code may also be used for rate limits and abuse protection; the original connection address is discarded from the Local Flight application database.
Beacon Tools does not retain the raw Apple transaction ID, signed Apple transaction body, raw Google purchase token, price, currency, payment-card details, or store-account identity. Purchase evidence is never added to diagnostics, reports, heartbeats, or operator dashboards.
Your choices and requests
You can use every Local Flight feature without making a support purchase. Removing the app does not erase records held by Apple or Google; use the store’s own controls for store purchase history or refunds. For a Beacon Tools data request, use the Support ID shown by Local Flight and, if available, the short purchase reference or approximate purchase time. See Privacy choices or contact privacy@beacontools.cc.
Other services are used only when your setup needs them.
Depending on your choices, Local Flight may communicate with AeroDataBox, AviationStack, ADS-B Exchange or RapidAPI, OpenSky, VATSIM, aviationweather.gov, OurAirports, OpenStreetMap or Overpass, public terrain tile sources, Linear for consent-based report triage, the configured mailbox provider for website contact messages, and Apple App Store or Google Play for an optional mobile purchase.
Requests made with your own aviation-data keys use those locally stored keys. Community Relay paths use the hosted relay and shared cache. See Linear, Apple, and Google privacy information.
Where data-protection law applies, Beacon Tools relies on legitimate interests for the limited service-operation and security records described here, consent for automatic diagnostics you enable, and your request when processing support messages or manual reports. Optional mobile purchases use the minimum transaction details needed to perform the purchase you requested, prevent duplicate processing, and meet store and security requirements. Apple or Google processes the payment separately under its own store terms.
Your controls and rights.
Email and support
Local Flight does not require an email address and does not collect one during normal app use. If you use a Beacon Tools website form or email Beacon Tools directly, the optional reply email and message you provide are handled by the relay and mailbox provider so Beacon Tools can reply.
Reset and erasure
Your local app data is under your control. Reset Setup is different from erasing all desktop, Linux, or Raspberry Pi data. Mobile reset, Remote Companion revocation, and full app removal are also separate actions. See privacy choices for the exact steps.
Data rights
You may have rights to access, correct, erase, restrict, object to, or obtain a portable copy of personal data. Local Flight has no accounts, so include the Support ID shown by the app, a report reference, an approximate time, or the reply email you supplied when asking Beacon Tools to locate a record. Contact privacy@beacontools.cc or use Privacy choices. You may also contact your local data-protection authority.