SkyNelo · Flight Intelligence

Privacy Policy

Version 1.0 · effective 28 September 2026

1. Controller and service operator

The controller of personal data processed in connection with the SkyNelo service at skynelo.com is BOMEGA SPÓŁKA Z OGRANICZONĄ ODPOWIEDZIALNOŚCIĄ, ul. Długa 2B, 56-416 Twardogóra, Poland, KRS 0000841054, NIP 9112034523, REGON 386056613.

SkyNelo and privacy contact: hello@skynelo.com. SkyNelo is a brand and online service operated by the Controller.

2. Scope

This Policy describes personal-data processing in the base public version of SkyNelo. SkyNelo is an aviation information and analytics service covering live traffic views, observed and historical data, aircraft, airports, routes, reference sources and tools for aviation enthusiasts.

The base public service does not require an account.

3. Data that may be processed

3.1 Technical data

When a user connects to SkyNelo, the technical infrastructure may process standard data necessary to serve HTTP/HTTPS requests, provide security and perform diagnostics, such as IP address, request date and time, requested resource, response code, browser or device technical information and data required to prevent abuse.

The legal basis is Article 6(1)(f) GDPR: the Controller's legitimate interest in operating, securing, diagnosing and improving the service and protecting it against abuse. Data is retained only as long as necessary for those purposes under the current log rotation and security configuration, and longer only where required for legal obligations or the establishment, exercise or defence of claims.

3.2 Email contact

If a user contacts hello@skynelo.com, the Controller may process the sender's email address, any name provided, the message content and other information voluntarily supplied by the sender.

Processing may be based on Article 6(1)(f) GDPR for handling the request, Article 6(1)(b) where the message concerns steps toward or performance of a contract, Article 6(1)(c) where a legal obligation applies, and Article 6(1)(f) where necessary for claims.

3.3 ADS-B receiver data

If an owner voluntarily registers a receiver with SkyNelo, the service may process technical information necessary to authenticate and operate the feeder. The access token is stored as a one-way hash, while the publicly displayed receiver location is rounded according to the configured location-privacy setting.

4. Data stored locally in the browser

In the base SkyNelo service, several personal convenience features are stored locally in the user's browser, including Watchlist, Spotter Logbook, favorite airports, saved views and filters, interface and unit preferences, and recent searches or pages where the relevant feature is enabled.

These items are not account-synced in the base release and may be removed by clearing site data. SkyNelo also uses Service Worker/cache storage for the application shell and offline fallback; this mechanism is not intended to create a user profile.

5. Accounts and product analytics

As of the effective date of this Policy, public Account Sync is disabled, public product analytics collection is disabled, and the base service does not use personal data for advertising profiles.

If the scope of processing changes, this Policy will be updated before launching functionality that requires additional notices or consent.

6. Cookies and similar technologies

SkyNelo may use cookies or comparable browser-storage mechanisms only where technically necessary for site operation, security, saved interface settings and the local functions described above.

If analytics, marketing or other consent-dependent technologies are introduced later, they will be activated only after the required legal basis and consent mechanisms are in place.

7. Service providers and external sources

The Controller may use infrastructure, hosting, email, system-maintenance, security and other IT providers. They receive data only to the extent necessary to provide their services and under the applicable data-protection requirements.

SkyNelo also presents aviation, weather, map, reference and media data from external sources identified in the product. Displaying sourced information does not itself mean that personal data is sent to every source. Where a browser directly requests a resource from a third-party domain, that party may receive the standard network data associated with that request.

8. Transfers outside the EEA

If technical-service delivery requires a transfer outside the European Economic Area, the Controller applies the legal basis and safeguards required by the GDPR for the relevant recipient and country.

9. Data-subject rights

Subject to the conditions of the GDPR, a user may have rights of access, rectification, erasure, restriction, portability, objection to processing based on Article 6(1)(f), withdrawal of consent where consent is the basis, and the right to lodge a complaint with the President of the Polish Personal Data Protection Office (UODO).

Privacy requests may be sent to hello@skynelo.com.

10. Automated decisions

The base public version of SkyNelo does not make decisions about users that produce legal or similarly significant effects based solely on automated processing of personal data.

11. Security and Policy changes

The Controller applies appropriate technical and organizational measures designed to protect processed data against unauthorized access, loss, alteration or disclosure, taking into account the nature, scope and risks of processing.

This Policy may be updated when the law, SkyNelo functionality, data-processing scope or service providers change. The current version will be published in the service with its effective date.

12. Contact

BOMEGA SPÓŁKA Z OGRANICZONĄ ODPOWIEDZIALNOŚCIĄ
ul. Długa 2B, 56-416 Twardogóra, Poland
KRS: 0000841054 · NIP: 9112034523 · REGON: 386056613
SkyNelo email: hello@skynelo.com