Terminair
––:––Z
PRIVACY POLICY

Last updated 1 October 2026

Privacy policy

This policy explains what personal data we handle when you use this site, why, who else handles it, how long we keep it, and what you can do about it. It is written to match what the site actually does.

1. Who we are

The controller of your personal data is App Dragons Ltd, United Kingdom. Contact: hello@terminair.com. We handle personal data under the UK GDPR and the Data Protection Act 2018, and the Privacy and Electronic Communications Regulations (PECR) for cookies, browser storage and email.

2. What we collect, why, and on what basis

You can use the terminal without an account. Anonymous visitors give us nothing beyond what is in the last row of the table.

DataPurposeLawful basis
Account email address and your sign-in method (Google, Apple or an email link), held by Supabase Auth. If you sign in with Google or Apple we receive the verified email they provide. We do not store passwords.Create and secure your account, sign you in, send sign-in links.Contract: providing the account you asked for (Art. 6(1)(b)).
Profile: your email again, when the account was created, when you were last seen, your theme (green or amber).Restore your theme on any computer.Contract.
Saved layout: which widgets are on and in what order.Restore your layout on any computer.Contract.
Follows: the airlines, airports, vendors and other entities you follow.Your watchlist, and the watchlist section of the daily bulletin.Contract.
Daily bulletin subscription: whether you are subscribed, when you subscribed or unsubscribed, a secret token for the unsubscribe link in each email. Send records: for each issue sent to you, the date, whether it was accepted, and any error from the email provider.Send the daily bulletin you opted into, send it once only, and prove your opt-in.Consent (Art. 6(1)(a)) and PECR consent. It is off until you turn it on. Withdraw at any time from the account page, the account menu, or the unsubscribe link in any issue.
Free newsletter, if you sign up without an account: your email address, when you asked for the confirmation link, whether you have confirmed and when, whether you have unsubscribed and when, and two secret tokens (one in the confirmation link, one in the unsubscribe link of each issue). Send records: for each issue sent to you, the date, whether it was accepted, and any error from the email provider. We store no IP address or other detail about you with it.Send you the confirmation link, then the daily newsletter you asked for, send it once only, and prove your opt-in.Consent (Art. 6(1)(a)) and PECR consent, by double opt-in: nothing is sent except one confirmation email until you click its link. Withdraw at any time with the unsubscribe link in any issue. If you later create an account with the same address and turn the daily bulletin on, we send you the bulletin only, not both.
Alerts: when a story about something you follow (or, if you opt in, a warning-level story in a region or country you chose) is published, a record that links you to that story, with the time, whether you have read it and whether it was emailed. Alert settings: your importance threshold, your email choice (off, instant or daily digest), your region-warning choice, when you turned email on, when we last emailed you and how many alert emails we sent you today, and a secret token for the unsubscribe link in each alert email.Show you your alerts in the terminal, send the alert emails you opted into (at most one every 30 minutes and ten a day), and prove your opt-in.Contract for alerts in the terminal. Consent (Art. 6(1)(a)) and PECR consent for alert emails, which are off until you turn them on. Withdraw at any time from the account page or the unsubscribe link in any alert email.
Subscription, only if you subscribe to Pro: your Stripe customer and subscription identifiers, the plan and billing interval, the subscription status, the end of the current period and whether it is set to cancel. Payment card details, your billing name and address and any tax number you enter are collected by Stripe on its own page and are not held by us. We receive your email address back from Stripe only as part of the customer record.Give you Pro, show your plan, and stop it when it ends.Contract. Keeping invoices for tax: legal obligation.
Ask, where it is available: the question you type, and the answer.Answer your question.Contract.
Activity events, only after you accept activity recording: which page you viewed, which widgets you opened, closed or moved, theme changes, commands (the kind and code, such as "airport LHR", never what you typed), signal, airport, news, column and source links opened, sign-in steps and sign-out (with the method), follows and unfollows, and Ask submissions (that one was made). Each event carries the time, the page path, the page you came from, whether your screen is desktop or small, a random anonymous ID, a random session ID, and your account ID if you are signed in.Understand how the terminal is used so we can improve it.Consent (Art. 6(1)(a) and PECR). Nothing is recorded before you accept or after you reject.
Product analytics and session replay (PostHog), only after you accept activity recording: the same kinds of activity as above, plus which stories were shown to you, how far you read them, how long you spent on each part of the terminal, the steps of the setup questions, alerts opened, and errors in the page. A recording of your session (what the page showed and where you clicked and scrolled) is kept too, with anything you type and your account details masked; the account and pricing pages are never recorded. These are linked to a random anonymous ID, or to your account ID after you sign in (never your email address), and to your setup answers (company type, job function, topics, regions) and your plan.Understand how the terminal is used and where it fails, so we can improve it.Consent (Art. 6(1)(a) and PECR). Nothing is sent before you accept. Rejecting or withdrawing stops it and removes PostHog's items from your browser.
Your consent choices (activity recording, and advertising: refuse, non-personalised or personalised). These are kept in your browser only; we do not yet write them to our servers.Remember what you chose.Legal obligation and legitimate interests (Art. 6(1)(c), (f)): we must be able to honour your choice.
Technical data when you load a page: IP address, browser details and the requested address, handled by Cloudflare as it serves the site and keeps request logs for operating and securing it. Our code does not store your IP address. It reads your country from Cloudflare only to choose an advertising network. When you use the newsletter sign-up form, it also keeps a salted one-way hash of your IP address in the server's memory for up to an hour, to limit abuse; the hash is never written to a database or a log, and the address itself is not kept.Deliver the site, keep it secure, diagnose faults.Legitimate interests (Art. 6(1)(f)).
Advertising, only after you choose: if you choose non-personalised or personalised ads, the advertising network sets cookies and handles data under its own responsibility (see section 3). If you refuse, no network is contacted and no advertising cookie is set; you see our own message.Show an advertisement that pays for the terminal.Consent.
Emails to us: what you send to hello@terminair.com.Reply, and act on your requests.Legitimate interests; legal obligation when you exercise a right.

We do not sell your personal data. We do not use it for automated decisions with legal or similarly significant effects. Anonymous activity events recorded before you sign in are linked to your account when you sign in on the same browser, so that your history is in one place and is deleted with the account.

3. Who processes it for us

  • Supabase: our database and sign-in. Holds everything in section 2 that sits on our servers. Its servers are in the London region.
  • Cloudflare: hosts the site and runs our code. Sees your IP address and request details when you load a page, and keeps operational logs. Its Workers AI service runs the open models that read the public news articles we link to and write the English news briefs; only article text goes to it, never anything about a reader.
  • Resend: sends the daily bulletin, the free newsletter and its confirmation email, alert emails and sign-in emails. It receives your email address and the content of the email.
  • Stripe (Stripe Payments UK Ltd and Stripe, Inc.): takes payment for Pro and sends us the status of your subscription. When you subscribe you leave this site for a payment page on stripe.com, which Stripe operates as an independent controller of your payment details; it sets its own cookies there and none are set on our domain. We send Stripe your email address and an identifier for your account so it can create your customer record. Stripe handles payment card data, billing address and tax details, and runs fraud checks under its own privacy policy. Nothing is sent to Stripe unless you start a checkout or open the billing page, or have a subscription that we must cancel when you delete your account. Stripe privacy policy.
  • PostHog (PostHog Inc., EU hosting in Frankfurt): product analytics and session replay, only after you accept activity recording. Receives the data in the "Product analytics and session replay" row of section 2, your browser's IP address (used to estimate your country, not stored by us) and browser details. PostHog privacy policy.
  • Anthropic: we use its models to write columns, the one-paragraph introduction shared by every copy of the daily bulletin, and, where Ask is available, to answer questions. No personal data is sent to Anthropic except a reader's own Ask question, which is sent so that it can be answered. Your email address, account ID, follows and activity are never sent to it.
  • Google (AdSense) and Yandex (Yandex Advertising Network): only if you choose non-personalised or personalised advertising (never if you refuse), and only when that network is switched on for the site. When one loads, your browser contacts it directly, and it may set cookies and use your IP address and browser details; see the cookie notice. Yandex loads only if you choose personalised ads. You can refuse advertising altogether. We do not give either of them your account details.
  • Google Fonts and OpenFreeMap: your browser fetches the typeface and the map tiles from them whenever you open a page, which reveals your IP address to them.

Some of these providers handle data outside the UK, including in the United States. Where they do, the transfer relies on a safeguard recognised under UK GDPR, such as the UK Extension to the EU-US Data Privacy Framework or the UK addendum to standard contractual clauses.

4. How long we keep it

  • Account, profile, saved layout, follows, bulletin subscription and send records, and alert settings: kept until you delete your account, then deleted at once (see section 6).
  • Free newsletter (no account): a confirmed address is kept until you unsubscribe. An address that has not been confirmed is deleted 7 days after the last confirmation link was requested, and its link stops working then. After you unsubscribe the address is kept for 30 days, so the unsubscribe link keeps answering, and then deleted. Send records are deleted with the address.
  • Alerts: deleted automatically 30 days after they are created, or when you delete your account, whichever is first.
  • Activity events: kept until you delete your account. Events recorded while you were not signed in and not later linked to an account are kept until they are deleted on request.
  • Subscription record: kept while you have an account, and deleted with it. Invoices and payment records: held by Stripe, and kept for 6 years, as UK tax law requires. Deleting your account does not delete them, but we cancel a live subscription first.
  • Ask questions and answers, where available: kept until you delete your account.
  • Sign-in session: in your browser until you sign out.
  • Choices, theme and layout in your browser: until you clear your browser's site data. The anonymous ID is kept in your browser's local storage with no expiry date, and is created only after you accept activity recording; it and the session ID are removed if you reject. Our code sets no first-party cookies of its own; PostHog sets one only after you accept activity recording (see the cookie notice).
  • Product analytics and session replay (PostHog): events up to 12 months, session recordings up to 30 days, then deleted by PostHog. To have it deleted sooner, write to us and we will delete it at PostHog.
  • Emails to us: as long as needed to deal with your request.
  • Provider logs: Cloudflare and Resend keep their own operational logs for the periods they set.

5. Your rights

Under UK GDPR you can ask us to: give you a copy of your data (access); correct it; delete it; restrict or stop our using it; and give it to you in a portable form. You can object to processing based on legitimate interests, and withdraw consent at any time without affecting what happened before.

  • Copy of your data: DOWNLOAD MY DATA on your account page gives you a JSON file of your account, profile and theme, layout, follows, bulletin subscription, alert settings, current alerts and subscription. For your activity events and send records, which you cannot read from your browser, email us and we will send them.
  • Delete your data: DELETE ACCOUNT on your account page.
  • Withdraw consent: PRIVACY CHOICES in the menu bar for activity recording and advertising; the daily bulletin switch and the alert email choice on your account page, or the link in any bulletin, newsletter or alert email.
  • Everything else (correct your email address, restrict, object, or data from before you had an account): email hello@terminair.com. We reply within one month. We may ask you to confirm you are who you say you are.

6. What deleting your account does

DELETE ACCOUNT removes your sign-in from Supabase Auth, and with it, automatically, your profile, saved layout, follows, bulletin subscription and send records, alert settings and alerts, subscription record, and every activity event linked to your account. If you have a live Pro subscription, we cancel it with Stripe first, and if that fails nothing is deleted. Stripe keeps its own invoices and payment records for tax (section 4). Your consent choices are not held on our servers. It cannot be undone. Your browser's own stored items (section 4) stay until you clear them. Copies held by Resend or Cloudflare in their logs, and backups, are outside our direct control and age out as those providers' retention allows.

7. Complaints

Please tell us first at hello@terminair.com and we will try to put it right. You can also complain to the Information Commissioner's Office, the UK data protection regulator: ico.org.uk/make-a-complaint, telephone 0303 123 1113.

8. Changes

When we change this policy we update the date at the top. If a change affects what we ask your consent for, we ask again.

See also the cookie and storage notice.

LOG INESC CLOSE

Log in to Terminair

Keep your layout, follow airlines, vendors and systems, and get the daily bulletin. Reading stays free without an account.

No password. We email you a one-time link.