Privacy Policy

Your privacy matters. Below you'll find how we handle your personal data when using our services.

Definitions

  • Privacy Policy: this document.
  • Data Subject: any natural person whose personal data is processed by the Controller.
  • Controller: Dutch Sim Pilot.
  • Website: https://www.flightdeck.me.

1. General

This Privacy Policy explains how Dutch Sim Pilot ("we", "our", or "us") processes personal data when you use the Website. We comply with the General Data Protection Regulation (GDPR) and other applicable privacy laws.

2. Personal Data We Process

We deliberately keep data collection to a minimum. We do not process or store user passwords.

  • Name (first and last): Used for user identification and legacy login.
  • E-mail address: Used for account verification, legacy login, and system notifications.

Data is stored in plain text within a secured database. All connections to the database are encrypted (TLS 1.3+).

We may temporarily process the following technical data, which is not directly linked to your identity and is deleted or anonymised after the session ends:

  • IP address
  • Device type and browser information
  • Basic functional cookies (see §6)

3. Source of Data: VATSIM SSO

Authentication is handled exclusively via the VATSIM Single Sign-On (SSO) service. VATSIM acts as the primary data controller for your account details. Upon successful login, VATSIM sends us a one-time verification payload containing your name and e-mail address. We store this data only to:

  1. Facilitate current and future logins (including a fallback “legacy login” if the VATSIM SSO service is unavailable).
  2. Provide basic Website functionality tied to your account.

We do not share this information with VATSIM after the initial exchange, nor with any other party.

4. Legal Bases for Processing

  • Performance of a contract (Art. 6 (1)(b) GDPR): to provide you with an account and core Website features.
  • Legitimate interests (Art. 6 (1)(f) GDPR): to secure our platform and ensure continuity of service.

5. Minors

If you are under 16, you must obtain your parent’s or guardian’s consent before creating an account.

6. Cookies or Similar Technologies

We use only strictly functional cookies that are necessary for the Website to operate (e.g. maintaining your login session). No marketing or profiling cookies are set, and no cookie data is shared with third parties. You can disable cookies in your browser, but the Website may not function correctly.

7. Parties With Access to Personal Data

  • Internal personnel: Access is restricted to authorised staff who need the data to perform their duties and who are bound by confidentiality.
  • No external processors: We do not transfer your personal data to third parties.

8. Security Measures

  • All communication between your browser, our servers, and the database is encrypted using TLS 1.3 or higher.
  • The database resides in a secured private network with firewall rules and access controls.
  • Regular security patches and access-log reviews are performed.

Note: Data is not encrypted at rest. We minimise risk through strict access controls and encryption in transit.

9. Retention Period

We retain your name and e-mail address until you delete your account or two weeks after the termination of our services to you—whichever comes first—unless a longer retention period is required by law.

10. Your Rights

  • Access, rectification, or erasure of your personal data
  • Restriction or objection to processing
  • Data portability
  • Withdrawal of consent (where applicable)

Contact us via the Dutch Sim Pilot Discord channel to submit a request.

You can lodge a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens) if you believe your rights are infringed.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. Material changes will be announced prominently on the Website. The date of the latest revision is shown below.

Last updated: 30 June 2025