770 Flight School · Your information

Privacy Policy

Last updated: September 9, 2026

How we handle information across our website, flight services, portals, payments and optional company bank connections.

Who we are

This Privacy Policy describes how 770 Flight School, N2152Z LLC and 770 CFI Services LLC handle information through 770studentportal.com, our public website, applications and authorized portals. The entity providing your aircraft rental, instruction or other service is identified in your agreement or invoice.

This policy also covers the optional company bank connection used by authorized administrators for internal financial management. It does not mean that students or renters must connect their personal bank accounts.

Information we collect

Information you provide may include your name, contact details, account and sign-in information, application details, emergency contacts, training history, certificates, identity documents, aviation medical certificates, signed agreements and payment authorizations. The information requested depends on your role and services.

We maintain booking, dispatch, flight, aircraft, training-progress, invoice, payment, package, expense and support records. Identity and medical documents may contain sensitive information and are used for the relevant eligibility, operational and recordkeeping purposes.

Our application and service providers may process technical information such as IP addresses, browser and device information, session identifiers, access logs and error reports to operate and protect the service.

How we use information

We use information to respond to inquiries, review applications, manage accounts and access, schedule services, maintain flight and training records, administer agreements, process billing, communicate service updates and support users.

We also use relevant records for internal accounting and reconciliation, fraud prevention, security, dispute resolution and applicable legal or aviation recordkeeping obligations.

Payments and saved cards

Stripe processes card payments and secure card setup. Payment card details entered through Stripe are handled by Stripe. Our application stores provider references and payment summaries, such as card brand, last four digits, expiration information, payment status and authorization records, rather than full card numbers or card security codes.

Our records may also reflect payments received through external methods, including cash, check, Zelle or an external payment terminal. Those providers have their own privacy practices.

Bank account connections and financial data

When an authorized company representative chooses to link a bank account, Stripe Financial Connections facilitates authorization with the bank or its connection providers. The permissions requested are presented during the connection process. Our application does not collect or store bank login credentials.

With authorization, we receive account identifiers and limited account details, such as the institution, account name and last four digits, together with permitted transaction information such as amounts, dates, descriptions and pending or posted status. Balance information may also be retrieved when a balance feature is enabled and separately authorized.

For the N2152Z company bank feed, transaction updates may be requested daily while the connection is enabled. We use them to review and classify transactions, identify possible duplicates, match existing expense records and support reconciliation. Imported transactions enter a review queue; an administrator must approve a transaction before it creates a new expense.

This bank-data integration is for financial management. It does not initiate bank payments or transfers, make lending or creditworthiness decisions, or sell bank data. A separate card-payment authorization is distinct from permission to read bank data.

An authorized administrator can stop the feed using Disconnect bank feed in Bank Review, or contact us for help revoking access. Disconnecting stops future retrieval through that connection. It does not automatically delete previously imported data, approved expenses or records that must be retained for accounting, legal or security purposes.

Who receives information

Authorized company administrators and personnel access information relevant to their responsibilities. Instructors may access relevant student and training information. Internal bank-feed information is restricted to authorized financial administration.

We use service providers to operate the service, including Base44 for application hosting, authentication and data storage, Stripe for payment processing and authorized bank connections, and email-delivery providers such as Resend for communications. Information is disclosed to providers as needed for their services; their own privacy policies may also apply.

Information may be disclosed to professional advisers, competent authorities or others when necessary to comply with applicable obligations, address a dispute, protect rights or safety, or carry out a business restructuring subject to appropriate protections.

We do not sell connected bank data or use it for third-party advertising.

Storage, retention and security

Information is stored and processed using our application and service providers. Hosting locations and safeguards depend on the relevant service and configuration; this policy does not represent a certification of a particular hosting region.

We retain information for as long as reasonably needed to provide services, maintain training and financial records, comply with applicable obligations, resolve disputes and protect the service. Retention depends on the record and purpose. Disconnecting a bank feed or closing an account does not necessarily remove records required for those purposes.

We use access controls and provider security features to help protect information. No system or transmission method can be guaranteed completely secure. Please do not send full payment card details, bank passwords or unnecessary identity documents by ordinary email.

Your choices and privacy requests

You may contact us to request access to or correction of your information, request deletion where applicable, ask about retention, or raise a privacy concern. We may verify your identity and authority before responding. Some requests may be limited by recordkeeping obligations, the rights of others or applicable law.

For company bank data, requests must come from an authorized account or company representative. Revoking bank access does not cancel unrelated services or erase existing financial obligations.

You can unsubscribe from marketing messages using the available unsubscribe option or by contacting us. Essential booking, account, billing and security messages may still be sent as needed to provide services.

Cookies, storage and external services

The website and portal use browser storage and similar technologies for sign-in, session security, saved preferences and application functionality. Blocking these technologies may affect sign-in or other features.

External websites, sign-in services, payment pages and linked stores operate under their own policies. This policy covers our handling of information and does not replace those providers’ notices.

Young participants

Where a youth aviation or training activity involves a minor, a parent or guardian should contact us to arrange participation and any required permissions. Children under 13 should not create an online account or submit personal information through this website. Contact us if you believe such information was submitted so we can review and address it.

Changes and contact

We may update this policy as our services or practices change. The updated date appears at the top of this page. Where required, we will provide additional notice or obtain consent for relevant changes.

For privacy questions or requests, contact 770 CFI Services at 770cfiservices@gmail.com or (332) 200-8228. Please identify the relevant service or company and describe your request without including bank passwords or full card details.