Privacy Policy
Last updated: 30 July 2026
This policy explains what the when app collects, why we collect it, who we share it with, and the control you have over it. It applies to the when mobile apps and to when-dating.com.
The service is operated by [LEGAL ENTITY NAME], [REGISTERED ADDRESS]. We are the data controller for the information described below. You can reach us at privacy@when-dating.com.
Who can use when
when is for adults only. You must be 18 or older to create an account. We do not knowingly collect data from anyone under 18, and we delete such accounts as soon as we learn of them.
What we collect
- Account details. Your email address and name, provided by Apple or Google when you sign in. We never receive or store your Apple or Google password.
- Profile content. Photos, age, gender, the details you write about yourself, and your dating preferences.
- Face data. When you verify your account we capture a short selfie sequence and derive a mathematical face template from it. See the section below.
- Personality answers. Your responses to the onboarding quiz and the archetype and trait scores derived from them.
- Location. Your approximate location, used to show you people who are nearby. You control this through your device permissions.
- Activity. Who you were shown, who you accepted or passed on, your scheduled dates, and your availability windows.
- Video dates. Dates run as live audio and video streams. We do not record them. We do keep metadata such as who was on the call, when it started, and how long it lasted.
- Reports and safety records. Reports you file or that are filed about you, and the outcome of our review.
- Device and diagnostics. Device model, operating system version, app version, push notification tokens, crash reports, and in-app usage events.
- Purchases. Subscription and purchase status. Payments are handled by Apple and Google. We never see your card number.
Face data and account verification
Verification is what keeps when free of bots, catfishing, and banned users returning under a new email. It works like this:
- You take a short guided selfie. Our verification provider confirms a live person is present and converts your face into a numeric template.
- The template is compared against existing templates to detect duplicate accounts and against templates of banned users to enforce bans.
- The template is a set of numbers. It cannot be turned back into a photograph of your face.
- The selfie video used for the liveness check is not retained after verification completes.
- Face templates are deleted when you delete your account, except where a template belongs to an account banned for a safety violation. Those are retained so the ban stays enforceable.
Face templates are biometric data. Where the law requires it, we process them only on the basis of your explicit consent, which you give during verification and can withdraw by deleting your account. You cannot use when without verifying, because unverified accounts are the single largest safety risk on a dating app.
Why we use your data
- To create and run your account, on the basis of performing our contract with you.
- To match you with compatible people, using your personality results, preferences, and approximate location.
- To schedule and connect your video dates.
- To keep the community safe: verifying identity, detecting duplicate accounts, reviewing reports, and enforcing bans. This is our legitimate interest and, in places, a legal obligation.
- To diagnose crashes and improve the app.
- To provide support when you contact us.
We do not sell your personal data, and we do not run third party advertising in the app.
What other users see
People you are matched with can see your profile photos, first name, age, approximate distance, archetype, and what you have written about yourself. They cannot see your email address, your exact location, your quiz answers, or your contact details. Contact details are exchanged only when you both choose to share them after a date.
Who we share data with
We use a small number of processors, each limited to what their service requires:
- Supabase for database, authentication, and photo storage.
- Amazon Web Services (Rekognition) for liveness and face matching.
- LiveKit for real time video and audio during dates.
- Google Cloud for our application server and logging.
- Google (Firebase) for crash reporting and push notifications.
- Apple for push notifications on iPhone.
- RevenueCat, Apple, and Google for subscriptions and payments.
- Google (Gemini) to generate match explanations and date prompts.
We also disclose data where we are legally required to, or where it is necessary to investigate a credible safety threat.
International transfers
Our providers operate in the United States and the European Union, so your data may be processed outside your own country. Where we transfer personal data out of the European Economic Area or the United Kingdom, we rely on the European Commission's Standard Contractual Clauses.
How long we keep it
- Account and profile data: for as long as your account exists.
- After you delete your account: removed within 30 days, other than the exceptions below.
- Safety records and the face templates of banned accounts: retained for as long as needed to keep the ban enforceable.
- Transaction records: retained for as long as tax and accounting law requires, typically seven years.
Your rights
Depending on where you live, you can request access to your data, correction of it, deletion of it, a portable copy of it, restriction of how we use it, or you can object to a particular use. You can also withdraw a consent you previously gave.
You can delete your account and all of the data tied to it from inside the app, under Settings. To exercise any other right, email privacy@when-dating.com. We respond within 30 days. If you are in the European Economic Area or the United Kingdom and you are not satisfied with our answer, you may complain to your local data protection authority.
Security
Data is encrypted in transit and at rest. Profile photos live in a private store and are reachable only through short lived signed links. Access to production data is limited to the people who need it. No system is perfectly secure, so we also keep the data we collect to the minimum the product actually needs.
Changes to this policy
If we change this policy in a way that materially affects you, we will notify you in the app or by email before the change takes effect. The date at the top always reflects the current version.
Contact
Privacy questions and data requests:
privacy@when-dating.com
Everything else: hello@when-dating.com