Privacy Policy

Last updated: 2026-07-05

Template pending legal review. Data-retention periods and jurisdiction-specific rights (US + GDPR) must be finalized by qualified counsel before launch.

1. What we collect

Account details (email, profile data you provide), messages sent on-platform, payment metadata from our processors (not full card numbers), device/analytics signals, and approximate location from your connection.

2. How we protect it

Data is encrypted in transit (TLS) and at rest. Sensitive fields — including personal identifiers and compliance disclosures — are encrypted at the field level with a separate key. Raw sensitive values are kept on our own infrastructure.

3. Messages are not end-to-end encrypted

To keep the platform safe and lawful, messages are readable by our automated safety, moderation, and contact-filtering systems. They are protected by access controls, at-rest encryption, and audit logging.

4. Analytics & cookies

We use a first-party analytics system on our own domain to understand usage and measure marketing. You can control analytics consent; see the consent controls in the app.

5. Your rights

Depending on your location (e.g. EU/UK under GDPR, or US state laws) you may request access, correction, deletion, or export of your data. Contact us to exercise these rights.

6. Data retention

We retain data only as long as needed for the service and to meet legal obligations (including compliance audit trails). Specific periods are set out per data category [to be finalized with counsel].

7. Contact

Privacy questions or requests: contact us.