SVCrew Hub
Privacy Policy
Last updated: 16 July 2026
SVCrew Hub is a roster and crew-life companion app for Saudia airline crew.
This policy explains — in plain language — what data the app handles, why,
where it lives, and how you stay in control of it. We collect only what the
app needs to work: no ads, no analytics trackers, and we never sell
your data.
1. Who is responsible
SVCrew Hub is independently operated by its developer (the "data
controller"). For anything related to your data, contact
support@svcrew.com — this inbox is
actively monitored.
SVCrew Hub is an independent app made by crew, for crew. It is
not affiliated with, endorsed by, or operated by Saudia or CAE.
2. What we collect and why
Your account & profile
- Email address and password — to sign you in (passwords are handled by Firebase Authentication; we never see them in plain text).
- Name, staff number (PRN), phone number, role, rank, base and fleet — to show your profile, target relevant announcements, and match you with compatible flight-trade partners.
To make "sign in with PRN" work before you're signed in, the app keeps a
lookup entry linking your PRN to the email address you signed up with. This
entry is technically readable by anyone who knows a PRN; it exposes only the
email you used, nothing else.
Your roster & duties
- Flights, duty times, layovers and hotel details imported from the company crew portal.
- When you use the in-app portal import, you sign in to the portal directly on its own page. Your portal credentials are never transmitted to us and never stored on our servers.
Staying signed in to the crew portal (optional)
This is off unless you switch it on.
Normally you type your crew-portal password into the portal's own page and the
app never sees it. If you turn on auto-update (Roster → Set up, or
Profile → Crew portal), you give the app your portal username and password so it
can sign in for you and keep your roster current without you importing by hand.
- They are saved on your phone only, in the operating system's
hardware-backed secure storage (Android Keystore / Apple Keychain).
- They are never sent to us, never stored on our servers, never
attached to your account, and never shared with anyone. They do exactly one
thing: sign in to the crew portal to read your own roster.
- They are only ever entered into the crew portal's own sign-in page — the app
verifies it is on the portal's address before filling anything in.
- If a sign-in ever fails, the app immediately deletes the saved
password and stops trying, so an out-of-date password can't lock your
portal account. You then choose whether to enter it again.
- Remove them whenever you like: Profile → Crew portal → Remove.
Uninstalling the app removes them too.
Data about your colleagues
This one deserves its own section.
When you import a flight or layover, the crew list for that flight — the same
list you can already see in the company portal — is saved into your own
roster so the app can show who you're flying with and whether you've flown
together before.
- It contains professional data only: name, staff number, rank, position, crew category and joining date. The import deliberately excludes passports, visas, medical data, dates of birth and any other personal records.
- It is stored only inside your account's roster — there is no public directory of crew.
- It is deleted together with your account. Copies of the same operational lists held by your colleagues in their rosters are their records, sourced from the same portal, and are not affected by your deletion.
Everything else
- Documents — expiry dates you track in the document wallet (passport, licence, medical). Stored as text; the app does not upload document photos.
- Flight trading — posts you create (flights, dates, notes) are visible to crew who are eligible to trade with you (same role, rank, base and fleet), together with your name.
- Notifications — your in-app inbox, and a push token identifying your device to Firebase Cloud Messaging so notifications can reach your phone.
- On your device only (never uploaded): biometric-lock preference, theme choice, notification preferences, your parsed bid-line data, and — only if you switch on auto-update — your saved crew-portal sign-in (see above).
3. Where your data lives
All app data is stored in Google Firebase (Firestore and
Firebase Authentication) in Google's European Union region.
Google acts as our data processor under its
Firebase data-protection terms.
A few features talk to external services and send them technical data
only (your IP address and the request itself — never your identity,
roster or profile):
- CARTO / OpenStreetMap — map tiles for the flight map.
- Open-Meteo — weather for layover destinations (receives airport coordinates).
- open.er-api.com — currency exchange rates.
4. Legal bases
- Performing our service to you — account, roster, documents, trading, notifications (GDPR Art. 6(1)(b)).
- Legitimate interest — showing you the crew lists of your own flights, which mirror operational information already available to you in the company portal (GDPR Art. 6(1)(f)).
- Consent — anything optional, which you can withdraw at any time.
We honour both the EU/UK GDPR and the Saudi Personal Data
Protection Law (PDPL).
5. How long we keep it
Until you delete your account. There is no secondary retention: deleting
your account removes your data (see below). We keep a minimal deletion-request
log (your request and when it was completed) as evidence the deletion happened.
6. Deleting your account
In the app: Profile → Edit profile →
Delete account. Confirm with your PRN. You'll be signed out,
receive an email confirming the request, and your account and all associated
data — profile, roster, documents, trade posts and notifications — are
permanently deleted within 24 hours, followed by a
confirmation email. Changed your mind? Reply to the request email or sign
back in and tap Cancel deletion request.
Without the app: email
support@svcrew.com from your account
email with the subject "Delete my account" — same 24-hour commitment.
Not removed by account deletion: operational crew lists in your
colleagues' rosters (their records — see section 2), and the minimal
deletion log above.
7. Your rights
You can ask us at any time to access, correct,
export, or delete your data, to
restrict or object to processing, and you may lodge a complaint
with your data-protection authority. Most of it you can do yourself in the app
(Edit profile fixes your data; Delete account erases it) — for everything else,
email support@svcrew.com. We respond
within 30 days, usually much faster.
8. Security
- All traffic is encrypted in transit (HTTPS/TLS).
- Access is enforced by Firebase security rules — your roster, documents and notifications are readable by your account only.
- Optional biometric lock (fingerprint/Face ID) protects the app on your device; biometrics never leave your phone.
- Saved sign-ins (your app login for biometric sign-in, and your crew-portal sign-in if you enable auto-update) are held in your device's hardware-backed keystore/keychain and never leave your phone.
- Administrative actions (announcements, account management) are restricted to named, permission-scoped admin accounts.
9. Changes to this policy
If we change what we collect or how we use it, we'll update this page and
the "last updated" date, and announce significant changes in the app.