Short version: We collect only what is needed for the waitlist and future product access. We never sell your data. Amorixo is being built with privacy, encryption, and user control as core priorities. You can request deletion any time.
1. What We Collect
We collect only the information needed for the waitlist now and the service when app access opens:
- Waitlist/account data: name, email, date of birth, location if provided, and verification information when app access opens
- Profile data: values rankings, bio, photos, quiz answers, dealbreaker settings
- Match data: AlignmentScores, compatibility notes, match history
- Message data: we are designing Amorixo with privacy-first encryption as a goal for message privacy.
- Usage data: features used, session duration, error logs (anonymised)
- Payment data: processed by Stripe. We receive a transaction ID; we do not store card numbers.
- Device data: device type, OS version, push token (for notifications)
2. How We Use Your Data
We use your data to:
- Calculate and display planned compatibility scores between users when app access opens
- Enforce hard dealbreakers and soft preferences
- Deliver notifications and in-app messages when app access opens
- Process payments and manage refunds when paid access opens
- Detect and prevent fraud, spam, and safety violations
- Improve the matching experience using aggregate or anonymised insights
We never use your data to show you third-party advertising.
3. Who We Share With
We share data with a small number of essential service providers:
- Supabase — database, authentication, storage, edge functions
- Stripe or another payment provider — payment processing when paid access opens
- Vercel — web hosting
- Expo / EAS or similar services — mobile app delivery when app access opens
- PostHog — anonymised analytics
- Law enforcement — only in response to a valid legal order
We do not sell, rent, or trade your personal data with anyone, ever.
4. Security
We take security seriously:
- Messages are being designed with privacy-first encryption in mind
- Data at rest is planned to use industry-standard encryption methods
- Data in transit will use TLS encryption
- Photo CDN URLs expire every 15 minutes
- We plan to pursue independent security certification post-launch
- Quarterly penetration testing by independent security firms
5. Your Rights
Depending on your location, you may have the right to:
- Access a copy of all data we hold about you
- Correct inaccurate personal data
- Delete your account and all associated data
- Export your data in a portable format
- Restrict or object to processing
- Withdraw consent at any time
- Lodge a complaint with your local data protection authority (EEA users: your national DPA)
To exercise any right, email privacy@amorixo.com.
6. Data Retention
We retain your data for as long as your account is active. After account deletion:
- Personal data is deleted within 30 days
- Encrypted message ciphertext is deleted immediately
- Anonymised, aggregated analytics data may be retained indefinitely
- Transaction records are retained for 7 years for legal/tax compliance
7. Cookies
We use two categories of cookies:
- Essential cookies: required for the service to function (session management, security). Cannot be disabled.
- Analytics cookies: PostHog, anonymised usage data. You can opt out in Settings → Privacy.
We do not use advertising or tracking cookies.
8. Children
Amorixo is strictly for adults aged 21 and older. We do not knowingly collect data from anyone under 21. If we become aware that a user is under 21, we immediately delete their account and data. To report an underage user, email safety@amorixo.com.
9. Changes to This Policy
When we make material changes to this Privacy Policy, we will notify you via in-app notification and email at least 14 days before the changes take effect. Your continued use of Amorixo after the effective date constitutes acceptance of the updated policy.