Privacy Policy
Last updated: May 12, 2026
The short version
- We never sell your data. Not to advertisers, data brokers, or anyone else. Ever.
- We collect what we need to run the app — your account info, profile, photos you upload, and the people you connect to. That's it.
- You stay in control. You can access, export, or delete your data at any time by emailing privacy@doubledate.com.
- Only a handful of trusted vendors see your data — the cloud providers and services we use to operate the app (listed below). They process it on our behalf under strict agreements.
1. Who we are
DoubleDate (“DD,” “we,” “our”) is a service operated by BriCorp Inc. that helps you find trusted services, friends, and dates through people you already know. This policy explains what data we collect when you use our mobile apps or website, how we use it, and the choices you have.
If you have any questions, email us at privacy@doubledate.com.
2. Information we collect
2.1 Account information
When you create an account, we collect your name, email address, phone number (if you choose to provide one), and a password (stored hashed, never in plain text). If you sign in with Apple, Google, or another OAuth provider, we receive your name and email from that provider.
2.2 Profile and content you provide
We store anything you choose to add to your profile: photos, a bio, and any messages or referrals you send to other users.
2.3 Connections
A core feature of DD is connecting through people you know. If you grant us access to your phone's contacts, we use that list only to identify which of your contacts also use DD and to suggest connections. We do not upload your full address book to our servers permanently; matching happens in a hashed form. You can revoke contacts access at any time in your phone settings.
2.4 Camera and photos
If you grant us access to your camera or photo library, we use those permissions only when you choose to add a photo to your profile or a message. We do not take photos in the background, scan your library, or upload any photo without your explicit action.
2.5 Device and usage information
We collect technical information about your device (operating system, app version, device model, language preference) and how you use the app (features used, screens visited, errors encountered). This helps us fix bugs and improve the product. We do not link this to advertising profiles.
2.6 Push notification tokens
If you opt in to push notifications, we store a token from Apple Push Notification Service (APNs) or Google Firebase Cloud Messaging so we can send you alerts about messages, referrals, and matches. The token does not contain your personal info; you can disable notifications at any time in your phone settings.
3. How we use your information
We use the information described above to:
- Provide the core service — create your account, show your profile, deliver messages, suggest matches, and run the social graph.
- Communicate with you about your account, security, and material changes to the service.
- Keep the service safe — detect abuse, fraud, and policy violations.
- Fix bugs and improve features using aggregated, anonymized usage data.
- Comply with our legal obligations.
4. What we never do
- We do not sell your personal information to advertisers, data brokers, marketing platforms, or any third party. Ever. Not for any price.
- We do not share your data with advertisers or use it to build cross-app advertising profiles.
- We do not run third-party ad tracking inside the app.
- We do not read the contents of your private messages except as needed to deliver them, to scan for abuse-detection patterns, or when required by law.
- We do not use your photos or content to train AI models belonging to us or anyone else, unless you explicitly opt in to a feature that says otherwise.
5. Service providers we use
We use a small number of trusted vendors to operate the service. They process data on our behalf under data-protection agreements and cannot use your data for their own purposes:
- Supabase — our database and authentication provider. Stores your account, profile, and message data. Hosted in the United States.
- Amazon Web Services (AWS) — hosts our API (Lambda), photo storage (S3), and content delivery (CloudFront). Hosted in the United States.
- Apple Push Notification Service and Google Firebase Cloud Messaging — deliver push notifications to your phone if you opt in.
- Google Play Services / Apple App Store — distribute the app and, in their normal course of operation, collect crash and install metrics on our behalf.
We may also share information with law enforcement or other parties when required by a valid legal request (subpoena, court order, etc.), to protect the safety of our users, or to investigate fraud or terms-of-service violations.
6. Your rights and choices
You can, at any time:
- Access — request a copy of the data we hold about you.
- Correct — update inaccurate information directly in the app or by contacting us.
- Delete — delete your account from the app's settings, or email us. Deletion removes your profile, photos, and messages from active systems within 30 days; encrypted backups age out within 90 days.
- Export — request a machine-readable copy of your data (we'll return a JSON archive).
- Opt out of communications — turn off push notifications in your phone settings, and unsubscribe from non-essential emails via the link in any email.
To exercise these rights, email privacy@doubledate.com. We'll respond within 30 days.
California residents (CCPA/CPRA): You have the additional rights to know what categories of personal information we collect, to request deletion, and to opt out of any sale or sharing of your data — which we do not do anyway.
European residents (GDPR): You have the additional rights to data portability, to lodge a complaint with your local data protection authority, and to withdraw consent at any time. Our legal basis for processing your data is contract (to provide the service you signed up for), legitimate interest (to keep the service safe and functional), and, for certain optional features, your consent.
7. How long we keep data
We keep your account data for as long as your account is active. When you delete your account, we remove your personal data from active systems within 30 days. Encrypted backups roll over and age out within 90 days. We may retain limited data longer where required by law (for example, transaction records for tax purposes) or to enforce our terms of service.
8. How we protect your data
We use industry-standard security practices: TLS encryption in transit, encryption at rest for our databases and photo storage, hashed passwords, scoped credentials for our staff, regular security reviews, and least-privilege access to production systems. No system is perfectly secure, but we take this seriously and design with privacy in mind from the start.
9. Children
DoubleDate is not intended for anyone under 13 years old (under 16 in the European Economic Area). We do not knowingly collect personal information from children. If you believe we have collected information from a child, please email us and we will delete it.
10. International data transfers
Our servers are hosted in the United States. If you access the app from outside the United States, your information will be transferred to and processed in the United States. We rely on Standard Contractual Clauses and other appropriate safeguards for transfers from the European Economic Area, United Kingdom, and Switzerland.
11. Changes to this policy
We may update this policy from time to time. If we make a material change, we will notify you in the app or by email at least 30 days before the change takes effect. The “Last updated” date at the top of this page always reflects the most recent revision.
12. Contact us
Questions, concerns, or requests about your data? Email privacy@doubledate.com.
DoubleDate is operated by BriCorp Inc. We'll add a mailing address here once we've completed our business registration; in the meantime the email above reaches our team directly.