Privacy Policy — After Landing App: After Landing (com.after.landing) Controller: Clean Bytes LLC 3833 Powerline Rd, Suite 201 Fort Lauderdale, FL 33309 USA Email: contact@clean-bytes.com Last updated: 27 August 2026 Clean Bytes LLC is a Florida, USA limited liability company. Where the GDPR applies — in particular to people in the EU — the following applies. We have not appointed a separate EU representative. 1. What the app is for Community and organisation app for adult airline crews on layover. Not for children. 18+. Not a dating app: a like is a one-way nod, not a match and not an extra chat. 2. Data we process Account: Google or Apple sign-in. The provider typically sends a user id and an email (Apple may use a relay). Stored in our auth system (Supabase Auth). The app does not write email onto the public crew profile. Profile: first name, optional last name, photo, bio, role, airline, homebase, language, theme. Layovers and evenings: city, arrival/departure, optional hotel and notes; evening meetups (place, address, venue coordinates, type, time, description, attendance). Communication: chat messages. Optionally a location pin (coordinates) in chat, visible to that chat’s members. Social: one-way likes, reports, blocks, hidden chats. Verification: photo of an airline ID and review status. Not public. Admins at Clean Bytes LLC can review it. Device / operations: approximate location while using the app to suggest a city — we do not store those GPS coordinates on our servers for Discover, only the city. Push token (FCM). Last-seen (short window). 3. Purposes Account, overlapping crew, evenings and chats, hotel reviews, abuse prevention, push, operations. No third-party personalised ads, no sale of data, no in-app purchases in version 1.0. 4. Visibility to other crew Profile, layover city/dates, evening attendance, hotel reviews, likes depending on settings, chat content for members including an optional location pin. ID documents are not public. 5. Recipients Supabase (auth, database, storage, functions). Google (sign-in, Maps/Places, Firebase Cloud Messaging). Apple (sign-in). Google Fonts (Plus Jakarta Sans at runtime; your IP may reach font servers). OpenStreetMap/Nominatim as a fallback for place search. We do not publish the text of processor agreements here. 6. Storage and deletion Delete in the app under Settings, or email contact@clean-bytes.com, or https://clean-bytes.com/en/after-landing/delete-account. In-app deletion removes profile, photos, ID, layovers, likes, direct chats and the auth record. Evenings you created are removed. Host backups and logs may hold data until they rotate. We do not publish a period in days. An ongoing abuse review may require limited further storage. 7. Security HTTPS in transit. For encryption at rest we rely on Supabase’s published platform statements; we have not separately certified that. 8. Rights Where the GDPR applies: access, rectification, erasure, restriction, portability, objection, withdrawal of consent. Contact: contact@clean-bytes.com. You may also complain to a supervisory authority. 9. Changes Current version: https://clean-bytes.com/en/after-landing/privacy and in the app.