Fly With Pet

Privacy Policy

Fly With Pet helps you find which airlines will carry your pet on your route, and builds a checklist for the trip. This page says what we keep, who else sees it, and how to have it removed.

What you can do without an account

Since 29 August 2026, running a search from the home page asks you to create an account first. Before that it did not, and this page said so; it is corrected here rather than quietly reworded.

A results link still opens for anybody who has one, with no account and no sign in, and so does the full facts panel for an airline. Your search lives in the address bar and nowhere else. We do not store it, and we do not need to know who you are to answer it.

What we store when you make an account

Your email address and password are held by Supabase, our database and authentication provider. We never see your password: it is hashed before it is stored and there is no way for us to read it.

Against your account we keep the number of checklist credits you hold, a record of credits added and spent, the date you confirmed your email address, whether you agreed to receive occasional email from us, and a log of which of our emails have been sent to you so that none is sent twice.

What we store when you unlock a checklist

The airline, your origin and destination cities, your pet type, size and breed if you gave one, and your flight date if you gave one. Your ticked items are stored so the list still shows your progress when you come back to it.

A saved checklist also gets a random link so it opens at the airport without signing in. Anyone who has that link can open the checklist and see what is on it, so treat it the way you would treat a shared document and only send it to people you mean to.

Cookies

Two kinds, and only one of them is optional. Signing in sets cookies that keep you signed in. Those are strictly necessary: without them the site cannot tell one request from the next, and there is no version of the product that works without them.

Google Analytics, the Meta Pixel, the Reddit Pixel and the X pixel set their own cookies, and those are optional. None of them is loaded until you agree, so if you have not answered the banner, or you answered no, nothing has ever been requested from Google, Facebook, Reddit or X and none of those cookies has ever been set in your browser. One answer covers all four.

What Google Analytics is told, and what it is not

When you allow it, we send Google the path of each page you open, the page title, and whatever Google collects by default about the device and the approximate location, with your IP address anonymised.

We deliberately do not send the query string, which is where your search lives. Your route, your pet, your breed and your flight date stay between you and this site. Saved checklist links are replaced with a placeholder before anything is sent, so the link to your checklist never reaches Google either.

What the Meta Pixel is told

The Meta Pixel is how we measure whether our advertising on Facebook and Instagram is working. When you allow it, it reports the pages you open on this site, that an account was created, that a checklist was unlocked, and the amount of a purchase when one is made. Unlike the Google setup above it reports the full web address of the page, including anything after the question mark, because that is how Meta builds the request and we cannot separate the two.

It is switched off entirely on your own pages. Your saved checklists and the list of them load with nothing from Facebook on the page at all, so the link to a checklist, which is the only thing needed to open it, is never sent anywhere.

We have turned off Meta's automatic collection of what you type into forms and which buttons you press, so your email address is not read from the signup page and sent to Facebook. If you would rather Facebook saw none of this, answer no to the banner or turn it off below, and nothing from Facebook will load at all.

What the Reddit Pixel is told

The Reddit Pixel is how we measure whether our advertising on Reddit is working. When you allow it, it reports the pages you open on this site, that an account was created, that a checklist was unlocked, and the amount of a purchase when one is made. It is the same short list as the other two, for the same reason: we want to know which advert led to which signup, and nothing beyond that.

It is switched off on your own pages in exactly the same way, so your saved checklists and the list of them load with nothing from Reddit on the page at all.

Reddit offers advertisers a way to attach your email address to these reports so it can match you to a Reddit account. We have not implemented it, so we send Reddit no email address, no phone number and no account identifier of any kind.

Reddit's pixel does have its own feature that looks for an email address on the page by itself, and we keep it turned off in our advertising account. Unlike Meta's equivalent, that switch lives with Reddit rather than in the code of this site, so it is a setting we maintain rather than something the page itself enforces. If you would rather Reddit saw none of this, answer no to the banner or turn it off below, and nothing from Reddit will load at all.

What the X pixel is told

The X pixel, which you may know as Twitter, is how we measure whether our advertising on X is working. When you allow it, it reports the pages you open on this site, that an account was created, that a checklist was unlocked, and the amount of a purchase when one is made. The same short list as the others, for the same reason.

It is switched off on your own pages in exactly the same way, so your saved checklists and the list of them load with nothing from X on the page at all.

X's pixel arrives with three things switched on that we switch off before it sends anything, and we mention them because leaving them alone was never an option we were comfortable with. It reads what you type into forms and attaches a scrambled copy of your email address to what it sends. It sends an event of its own ten seconds after any page becomes visible, carrying the full address of that page. And it listens to the measurement queue Google Analytics uses and forwards a copy of what it finds there.

All three are turned off in the code of this site rather than in a setting held by X, so unlike the Reddit case above this is something the page itself enforces rather than something we maintain elsewhere. We send X no email address, no phone number and no account identifier.

Email we send you

When you sign up we send one email asking you to confirm your address, and a welcome message once you have. When you unlock a checklist we send you the link to it. If your checklist has a flight date and you have confirmed your address, we send reminders 30 days, 7 days and 1 day before you fly, and we skip them if you have already worked through enough of the list.

Anything beyond that needs you to have ticked the box at signup, and you can withdraw that at any time from the unsubscribe page or from the link at the foot of any email we send.

Who else handles your data

Supabase stores the database and runs authentication. Vercel hosts the site and sees the usual server request logs. Resend delivers our email and therefore sees the address it is being delivered to. Google Analytics, Meta, Reddit and X receive what is described above, and only with your agreement. When card payments go live, Stripe will handle them and we will never see or store your card details.

How long we keep it

For as long as you have an account. Delete your account and the checklists, ticked items, credit history and email log go with it, because every one of those rows is tied to your account and removed with it.

Your rights

You can ask for a copy of everything we hold about you, ask for it to be corrected, or ask for the whole account to be deleted. Withdrawing consent for measurement takes one click above and needs no email at all, and it withdraws it from Google, Meta, Reddit and X together. If you are in the UK or the EU you also have the right to complain to your national data protection authority.

Contact

Write to hello@flywithpet.com for anything on this page, including a deletion request.

We will update this page when what we do changes, rather than in advance of it.