Privacy Policy
Effective 28 August 2026 · Last updated: 28 August 2026
This platform is built on trust, and that begins with how we handle the most personal information you will ever put into an app. We do not sell your personal data, and we never will.
1. Who we are
Date to Marry is a marriage-first matchmaking platform owned and operated by Pila Studio UG (haftungsbeschränkt), a company with limited liability registered in Germany. For the purposes of the EU General Data Protection Regulation (GDPR) and equivalent laws, Pila Studio UG (haftungsbeschränkt) is the data controller for your personal data.
Contact: hello@datetomarry.app. Full company details are on our Impressum.
2. What we collect
2.1 What you give us
| Category | Examples | Why |
|---|---|---|
| Identity | Legal name, date of birth, sex, city | Account creation, age checks, matching |
| Contact | Email address | Account management, transactional email |
| Identity documents | Government-issued ID and selfie, submitted through Didit | Mandatory identity and age verification |
| Profile media | Photographs, intro video, voice notes | Shown to the person you are matched with |
| Onboarding answers | Life Architecture (children, faith, location, timeline, finances), faith tradition, character and values prompts | Compatibility matching |
| Absolutes | Self-declared lifestyle facts, and the dealbreakers you choose | Excluding pairings neither side would accept |
| Preferences | Age range, distance, travel countries | Deciding who you can be matched with |
| Conversations | Messages, voice notes, guided prompt responses | Communication with your match |
| Companion data | Partner journal entries, relationship check-ins, milestones | Your own coaching features. Never shown to your partner. |
| Payments | Payment method details, held by Stripe, Apple, or Google, never by us | Processing entry, re-entry, and companion fees |
| Reports and support | Reports, complaints, support messages | Safety moderation and support |
2.2 What we collect automatically
- Device information: device type, operating system, app version, timezone, and locale.
- Usage data: which features and screens you use, and when you were last active.
- Log data: IP address, timestamps, and error logs.
- Crash reports: diagnostic data via Firebase Crashlytics.
- Push tokens: the device token used to deliver notifications.
2.3 What we get from others
- Didit: the verification result and confirmation that you are 18 or over. We do not retain the raw document images after verification completes.
- Firebase: authentication tokens and identifiers used to keep your session secure.
- Apple, Google, and RevenueCat: confirmation that a purchase or subscription is valid. We never receive your card details.
3. How we use your data
- Running your account: creating it, securing it, and authenticating you.
- Verifying identity and age: confirming through Didit that members are real adults.
- Matching: scoring compatibility from your onboarding answers, applying your absolutes and preferences, and putting one match in front of you at a time.
- Showing your profile: when you and another member are matched, your name, age, city, photographs, video, and onboarding answers are shown to them, and theirs to you.
- Conversations: delivering messages and voice notes between matched members.
- Companion features: your journal and check-ins power your own coaching, and nothing else.
- Payments: taking payment and keeping transaction records.
- Safety: investigating reports, enforcing the Terms, preventing fraud, and protecting members.
- Legal compliance: meeting our obligations and responding to lawful requests.
- Improving the service: analysing aggregated, de-identified usage to make matching and the app better.
- Communicating: transactional email, and optional informational email if you opted in.
4. What we never do
- We never sell your personal data.
- We never use it to serve you targeted advertising, or build an advertising profile of you.
- We never share your identifiable content with third parties for marketing.
- We never show your partner your journal entries or check-in answers.
- We never show anyone your exact location. See Location and distance.
5. Legal bases for processing
If you are in the EEA, the UK, or another jurisdiction with comparable law, we rely on:
- Performance of a contract — account creation, matching, conversations, payments.
- Legitimate interests — fraud prevention, platform security, safety moderation, and service improvement, where these do not override your rights.
- Legal obligation — child safety reporting, tax and accounting records, and lawful requests.
- Consent — special category data such as religious belief in your onboarding answers, and optional communications. You may withdraw consent at any time; withdrawal does not affect processing already carried out.
7. Third-party processors
Each has its own privacy policy governing how it handles data.
| Provider | Purpose | What it receives |
|---|---|---|
| Didit | Identity and age verification | ID document, name, date of birth |
| Firebase (Google) | Authentication, push delivery, crash reporting | Email, auth tokens, device push token, diagnostics |
| DigitalOcean Spaces | Storage of photographs, video, voice notes | The media you upload |
| OpenAI | Compatibility scoring and Companion suggestions | Onboarding answer text, de-identified where possible |
| Stripe | Payments taken outside the app stores | Payment details, handled by Stripe |
| Apple / Google | In-app purchases | Purchase records and receipts |
| RevenueCat | Subscription and entitlement management | Purchase receipts, a pseudonymous member identifier |
| ForwardEmail | Transactional email delivery | Email address and message content |
| PostHog | Product analytics | Pseudonymous identifier, device and usage events |
| Vercel | Hosting for this website | Standard web request logs |
8. International transfers
We and our processors operate internationally, so your data may be transferred to, stored in, and processed in countries outside your own, including the United States, whose data protection laws differ from yours.
Where we transfer data outside the EEA or the UK, we rely on an adequacy decision where one exists, and otherwise on Standard Contractual Clauses approved by the relevant authority, together with additional safeguards where they are needed.
9. Automated decision-making
Matching is automated. We calculate a compatibility score from your onboarding answers and apply hard rules derived from what you told us: the absolutes you selected, your stated distance and travel preferences, your age range, and identity verification status.
These decisions determine who you are shown, not your legal rights or access to a service you have paid for. Even so, if you believe a matching decision has significantly affected you, you may ask for human review, contest it, and put your point of view, by writing to hello@datetomarry.app.
10. Sensitive data
Some of what we collect is “special category” data under the GDPR:
- Religious or philosophical belief — your faith answer and faith tradition.
- Health or lifestyle information — where you disclose it in a character prompt, in a self-declared fact, or in Companion data.
We process it on the basis of your explicit consent, given when you answer those questions, and use it only for compatibility matching and your own coaching features. It is never sold, and never shared with advertisers. You can withdraw consent by editing or removing those answers, or by deleting your account.
11. Location and distance
Distance matters to matching, so we need to know roughly where you are. We do this from the city you tell us: the app does not request device location permission, and we do not collect GPS coordinates from your device.
From that city we store approximate coordinates, and use them to calculate the distance between you and potential matches, and to honour the radius you set.
Nobody is ever shown your exact distance. Members see a coarse band, never a precise figure. A precise distance, repeated across several matches, can be used to triangulate where someone lives, so we do not expose one.
12. Companion privacy
Partner journal entries, relationship health check-in answers, and private reflections belong to you alone. We do not show them to your partner, and we do not share them with any third party, except where the law requires it.
Behavioural reviews left about you after a match are used for safety and trust scoring. They are never shown verbatim to the person they describe.
13. How long we keep things
| Data | Retention |
|---|---|
| Active account data | For as long as your account exists, plus up to 90 days after deletion for fraud investigation and legal compliance |
| Identity verification records | As required by applicable legal and compliance obligations |
| Conversations in a closed match | Deleted within 90 days of the match closing |
| Companion data (journal, check-ins) | Deleted when you delete it, or when you delete your account |
| Payment and tax records | Up to 10 years, as German commercial and tax law requires |
| Safety and moderation records | Up to 7 years where needed for an ongoing investigation or legal proceedings |
| Deleted accounts | Identifiable profile data is removed. Anonymised or aggregated data, and records we are legally required to keep, may remain as described above. |
14. Security
We use appropriate technical and organisational measures to protect your data, including encryption in transit using TLS, encryption at rest for sensitive records including check-in responses and journal entries, access controls limiting who can see what, private access controls on all uploaded media, and reputable infrastructure providers.
No system is perfectly secure. If you believe your account has been compromised, write to hello@datetomarry.app immediately. Where a breach is likely to result in a high risk to your rights, we will notify you and the relevant supervisory authority as the law requires.
15. Children
Date to Marry is strictly for adults aged 18 and over. We do not knowingly collect data from anyone under 18, and every member must pass government-issued identity verification confirming their age before they can be matched.
If we learn that we hold data from a person under 18, we delete it and terminate the account. If you believe a minor has created an account, report it to hello@datetomarry.app immediately. See also our Safety Standards.
16. Your rights
Depending on where you live, you may have the right to:
- Access a copy of the personal data we hold about you.
- Correct anything inaccurate or incomplete.
- Delete your data, in the app or by writing to us, subject to our legal retention obligations.
- Restrict processing in certain circumstances.
- Port the data you gave us, in a structured, machine-readable format.
- Object to processing based on legitimate interests.
- Withdraw consent where processing relies on it.
- Ask for human review of an automated decision. See section 9.
To exercise any of these, write to hello@datetomarry.app. We respond within 30 days, and may need to verify your identity first. Data export and account deletion are also available inside the app; see Account deletion.
California residents. You have additional rights under the CCPA, including to know what categories we collect, to request deletion, and to opt out of sale. We do not sell personal information as the CCPA defines it.
17. Notifications and email
We send push notifications for matches, messages, and reminders, delivered through Firebase Cloud Messaging. You can turn them off per type in the app, or entirely in your device settings.
We send transactional email — verification, password reset, match notifications — which is necessary to run your account and cannot be switched off while the account is open. Informational email is sent only if you opted in, and every one carries an unsubscribe link.
18. Analytics and cookies
The mobile app does not use cookies. It sends product analytics events to PostHog under a pseudonymous identifier, so we can see which features are used and where people get stuck. This is never shared with advertising networks.
This website uses PostHog together with Vercel Analytics and Speed Insights. These measure page views and performance and do not build an advertising profile of you.
19. Changes to this policy
We may update this policy to reflect changes in what we do, the technology we use, or the law. We post the updated version here and in the app, and for material changes we notify you by email or in-app notice. The date at the top shows when it last changed.
20. Contact and complaints
For any question or request about this policy or your data, write to hello@datetomarry.app. We aim to respond within 30 days.
If you are unhappy with our response, you have the right to complain to your local data protection supervisory authority. Our lead supervisory authority is the data protection authority for the German state in which Pila Studio UG (haftungsbeschränkt) is registered; the details are on our Impressum.
Questions about this page? Write to hello@datetomarry.app.