Iberia
Reducing authentication friction for travellers who need urgent access to their flight
This self-initiated concept project explores how Iberia could help passengers access essential flight information without depending entirely on account login.

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.
Project summary
CloseIberia
This self-initiated concept project explores how Iberia could help passengers access essential flight information without depending entirely on account login.

Project challenges
Airline apps are often used in time-sensitive situations.
Passengers may open the app shortly before travelling because they need to:
- check their flight details,
- review a reservation,
- complete check-in,
- confirm baggage or terminal information,
- or make a last-minute change.
However, many of the reviews I analysed described users being unable to access these tasks because their account was blocked, their password had expired, or the recovery process had failed.
This creates a particularly stressful situation: the user already has a valid booking, but the application prevents them from reaching the information they need. Or the essential information is buried inside screens.
The main challenge was therefore finding a way to reduce the dependency between account authentication and access to an existing trip.

Because this was an independent project, I did not have access to Iberia’s internal analytics, support data, business rules, security requirements, or technical architecture. The direction was therefore based on public reviews, direct product observation, behavioural hypotheses, and assumptions that would need further validation.
Research approach
I began by reviewing a large number of recent App Store reviews and grouping the most repeated complaints into four broad themes:
Login and authentication
Users described:
- expired passwords,
- failed password recovery,
- blocked accounts,
- missing social sign-in options,
- delayed validation codes,
- and inconsistent behaviour between web and mobile.
Payment and reservations
Users reported:
- failed payments,
- bookings not appearing,
- difficulty changing flights,
- problems retrieving reservations,
- and uncertainty around prices and booking conditions.
Personal information
Several reviews mentioned:
- incorrect passenger details,
- difficulty changing names or account information,
- and account data that could not be corrected without support.
Flight transparency
Users also expressed frustration around:
- missing flight information,
- unexpected itinerary changes,
- unclear baggage conditions,
- and difficulty confirming whether the information displayed was accurate.
The research did not prove the scale of each issue, but it revealed a repeated pattern: users were often unable to complete high-priority travel tasks because access to their trip was tied too closely to account authentication.

Behavioural patterns
From the reviews, I identified several likely behavioural patterns.
When users cannot access their account, they often:
- try repeatedly to recover it,
- switch from the app to the website,
- contact customer support,
- attempt to retrieve the reservation through alternative channels,
- and repeatedly verify flight information because they do not fully trust what they see.
I also observed that most sessions in an airline app are likely driven by a small set of high-intent tasks:
- booking a flight,
- checking an existing trip,
- modifying a reservation,
- or reviewing time-sensitive flight information.
This suggested that access to an existing booking should be treated as a primary user intent, rather than as a secondary feature hidden behind login.

Pain points
The main pain points identified were:
- losing access to a booking because the account is blocked,
- having to use another device or channel,
- missing a deal or paying more after an app failure,
- discovering an error in the reservation too late,
- feeling misled by unclear booking conditions,
- and learning about itinerary changes without sufficient warning.
The most critical pain point was the combination of urgency and dependency:
Users may already have a valid reservation, but still be unable to reach it when they need it most.
Opportunity areas
Based on the research, I identified several possible opportunities:
- allow users to view an existing trip without logging in,
- make guest access more visible,
- create an account recovery wizard,
- notify users before account action becomes urgent,
- improve communication around flight changes,
- clarify booking conditions,
- and allow limited modifications within a defined grace period.
I decided to focus on guest trip access because it appeared to offer the clearest balance between user value and implementation effort.
The Iberia app already contained elements of guest access, but they were not prominent enough in the main experience.
This meant the opportunity was not necessarily to create a completely new capability, but to make an existing one easier to discover and use.

Problem framing
The problem was framed as follows:
Users are getting their accounts blocked, or discovering that their password has expired, shortly before travelling. At the moment they need their flight information most, they may be forced to recover their account, move to the website, or contact support.
This leads to frustration because:
- the user may feel that calling support is the only option,
- the app appears unusable without login,
- and the path to retrieve a booking is not sufficiently visible.
User objectives
The user needs to:
- access flight information quickly,
- review an existing booking,
- make urgent changes,
- and complete travel-related tasks with confidence.
Business objectives
The business could benefit from:
- reducing support requests related to login and authentication,
- reducing negative reviews,
- increasing successful self-service,
- and improving trust in the mobile experience.
Potential metrics
If this concept were implemented, I would evaluate:
- guest booking retrieval completion rate,
- reduction in login-related support contacts,
- number of users switching from app to web,
- failed booking retrieval attempts,
- task completion rate,
- and the proportion of negative reviews mentioning authentication.
Prioritisation
I explored four directions:
- proactive account notifications,
- a more visible support or chatbot entry point,
- a full account reactivation wizard,
- and guest access to existing trips from the home screen.
The account reactivation wizard could have a high impact, but it would also require greater technical and operational effort.
Guest trip access appeared to provide meaningful value with lower effort because it could build on an existing reservation retrieval mechanism.
For that reason, I selected it as the primary concept.

Design direction
The final concept reorganises the app home around two primary user intents:
- searching for a new flight,
- and accessing an existing trip.
Instead of forcing every traveller to begin with authentication, the home screen includes a visible Mis viajes section.
Users can retrieve a reservation using:
- surname,
- and booking code or flight number.
Once the booking is found, they can view the most important trip information without creating or recovering an account.
This includes:
- route,
- departure and arrival times,
- airport and terminal,
- cabin,
- fare,
- baggage,
- meal information,
- and seat conditions.
From the reservation detail, the user can access contextual actions such as:
- adding the trip to a calendar,
- changing dates,
- sharing flight information,
- personalising the trip,
- requesting an invoice,
- or managing the reservation.

Balancing access and security
A guest experience should not remove necessary security controls.
The concept therefore separates access into two levels.
Low-risk access
After entering surname and booking reference, the user can view essential trip information.
Sensitive actions
Actions such as cancellation, date changes, refunds, or personal-data updates may require an additional verification step.
This could include:
- a one-time code,
- email verification,
- confirmation through the original booking channel,
- or another form of identity validation.
The purpose of the concept is not to eliminate authentication, but to avoid making full account access a prerequisite for every travel-related task.

The final experience
1. Home screen
The first screen gives equal visibility to two important tasks:
- finding a new flight,
- and retrieving an existing trip.
By placing Mis viajes directly on the home screen, the guest flow becomes discoverable at the point where users already begin.
2. Reservation details
After entering the booking information, users reach a simplified trip view containing the information most likely to be needed in an urgent travel context.
The hierarchy prioritises:
- route,
- date,
- time,
- and the main reservation action.
Secondary details are presented below in a clear, scannable structure.
3. Reservation actions
A contextual action panel provides access to the tasks associated with the booking.
This avoids overwhelming the main detail screen while still making management options easy to reach.

Design decisions
Several design decisions shaped the final concept.
Make trip access a primary intent
The main conceptual change was to stop treating login as the default gateway to the application.
Users do not open an airline app because they want to authenticate. They open it because they need to do something related to a trip.
Reduce channel switching
The flow aims to reduce the need to move between:
- app,
- web,
- email,
- and support.
Prioritise urgent information
The reservation detail focuses on the information users are most likely to need shortly before a flight.
Preserve existing mental models
The interface uses familiar airline patterns and keeps Iberia’s visual language, rather than introducing an entirely new interaction model.
Use progressive disclosure
The first level shows essential information. More complex reservation actions appear only when the user requests them.

Limitations
This project is based on public feedback and product observation.
I did not have access to:
- internal support volumes,
- authentication failure rates,
- conversion or abandonment data,
- reservation security rules,
- technical feasibility,
- operational constraints,
- or legal requirements.
The public reviews also represent a self-selecting sample and may overrepresent users who experienced serious problems.
For that reason, the findings should be treated as directional rather than conclusive.
What I would validate next
The next step would be to test the concept with travellers who have previously experienced:
- blocked accounts,
- failed password recovery,
- missing bookings,
- or urgent access needs before a flight.
The research would focus on whether users:
- notice the guest entry point,
- understand what information is required,
- can retrieve a booking successfully,
- understand which tasks are available without login,
- and feel that the flow is both easy and secure.
I would also test edge cases such as:
- incorrect booking information,
- multiple passengers,
- cancelled flights,
- past reservations,
- code-share flights,
- and actions that require additional verification.
Project roundup
The project began with a large set of negative reviews that appeared to describe many different problems.
After grouping the feedback, one underlying issue became clearer:
Access to a trip was too dependent on successful account authentication.
The final concept does not attempt to redesign Iberia’s full authentication system.
Instead, it reframes the app around the task the user is actually trying to complete.
By making guest trip access visible from the home screen, the experience could help travellers retrieve essential information more quickly, reduce unnecessary channel switching, and create a more resilient path for users who cannot access their account.
The concept would require further validation with users, engineering, security, customer support, and business stakeholders.
However, it demonstrates how a focused change in information architecture and entry-point hierarchy could reduce friction in one of the most time-sensitive moments of the travel experience.














































