Security
LogSpec processes selected source files in your browser and protects the flight records and documents you save to your account.
Data minimization
Flight-log conversion happens in the browser. Saving reviewed flights sends the resulting records to your account, and attaching documents uploads those files to private account storage. Authentication and billing systems receive the records needed for account access and subscriptions.
Access controls
Database tables use row-level security so authenticated users can access only the records associated with their account. Server-only credentials are kept in Supabase Edge Function secrets and are never placed in browser configuration.
Transport and providers
Use the HTTPS production URL when operating the service. Supabase and Stripe provide infrastructure and payment controls for the systems they operate; review their current security documentation for details.
Report a concern
Report suspected security issues privately to [email protected]. Please include enough detail to reproduce the issue and avoid including real flight-log data unless requested through a secure channel.