Privacy Policy
Last updated: October 7, 2026
1. Introduction
This Privacy Policy explains how Saints & Singles ("we," "us," "our") collects, uses, shares, retains, and protects personal data when you use our website, mobile application, and related services (the "Service"). It applies to all members and visitors.
Because we are a faith-centered dating service, some of the data you choose to provide — religious affiliation and practices, and data from which sexual orientation or other sensitive traits can be inferred — is treated as special-category / sensitive data under GDPR Article 9, the CPRA, and similar laws. We process it only with your explicit consent and only to provide the matching features you request.
Saints & Singles is the data controller for your personal data. Contact: privacy@saintsandsingles.com.
2. Data We Collect
A. Data you provide
- Account data: email address, password (stored only as a one-way argon2id hash), and authentication/session history.
- Profile data: display name, bio, birth date/age, city, state/region, country, height, education, occupation, smoking status, and preferences (children intent, NFP openness, dealbreakers, discovery filters).
- Faith data (sensitive): denomination, parish name, Mass/service frequency, liturgical preference, sacramental-marriage intent, and values prompts — provided voluntarily.
- Photos & verification: profile photos; verification selfies; and where photo verification is enabled, face-comparison results and verification session metadata.
- Communications: text, photo, and voice messages sent to matched members; call metadata (who called whom, when, and duration — not call content).
- Events: faith-event submissions, event RSVPs, and interests.
- Billing: subscription tier, billing period, and purchase history. Payment card details are handled directly by Stripe — we never see or store full card numbers.
- Safety data: reports you file or receive, blocks, ignores, ban appeals, and correspondence with support.
- Preferences & settings: notification settings, feature toggles, incognito/travel-mode state.
B. Data collected automatically
- Location: approximate location derived from the city you select; precise GPS coordinates only if you grant location permission or enable travel mode. Precise coordinates are never shown to other members.
- Device & usage data: app interactions, feature usage, device and browser type, operating system, IP address, crash and performance diagnostics.
- Analytics: product-usage events via PostHog, only after you accept analytics in the consent banner (see Section 9).
- Error monitoring: crash and error reports via Sentry.
- Push tokens: device tokens for notifications you opt into.
- Cookies and similar storage: see Section 8.
C. Data from third parties
- Stripe: subscription and payment status, billing period, and payment-method metadata (brand, last four digits — never full numbers).
- Photo-verification provider, when enabled: verification verdicts and comparison scores.
- Authentication/session metadata associated with your sign-in method.
3. Sensitive Data
- Religious beliefs: denomination, parish, and practice data is special-category data. We process it solely because you choose to provide it (explicit consent) and only to power faith-based matching. You may edit or remove it at any time; removing it may limit matching features.
- Inferred sexual orientation: the gender you seek and the gender you state can reveal sexual orientation. This is likewise treated as sensitive and is used only to provide matching.
- Verification selfies and face-comparison data are used solely to verify that your photos are of you. They are never displayed publicly, never used for advertising, and are processed by our verification provider under contract only when verification is enabled.
- Messages are private communications between matched members; they are not scanned for advertising and are reviewed only for safety, moderation, or legal-compliance reasons.
4. How We Use Your Data
- Operate the Service: create and maintain your account; display your profile; provide discovery, compatibility scoring, matching, messaging, calls, and events.
- Provide paid features: subscriptions, boosts, incognito mode, travel mode, and gifts.
- Safety and moderation: review reported content and flagged profiles, verify photos, enforce our Terms, investigate fraud and abuse, enforce bans.
- Communicate with you: service, security, verification, billing, and moderation notices; announcements; opt-in marketing where permitted.
- Improve the Service: analytics (with consent), troubleshooting, product development, and aggregate statistics.
- Legal and security: comply with law, respond to legal process, protect rights, safety, and property, and keep audit trails.
Legal bases (EEA/UK users): performance of our contract with you (core features); your explicit consent (faith data, precise location, verification biometrics, non-essential analytics/cookies); legitimate interests (safety, fraud prevention, product improvement — balanced against your rights); and legal obligations.
5. How We Share Data
We do not sell your personal data, and we do not share it for cross-context behavioral advertising. We share data only as follows:
- Other members: your profile content and photos are visible to members per your settings (incognito mode limits visibility to members you have liked). Messages and calls go to the matched participant.
- Service providers (processors) under contract, listed in Section 6.
- Legal and safety: where required by law, court order, or legal process; to enforce our Terms; to protect the rights, property, or safety of us, our members, or the public — including legally required child-safety reports to NCMEC and authorities.
- Business transfers: in connection with a merger, acquisition, financing, or sale of assets, subject to this Policy; we will provide notice where required.
- Aggregate or de-identified data that cannot reasonably be linked to you.
6. Service Providers (Subprocessors)
| Provider | Purpose | Data involved |
|---|---|---|
| Neon | Primary database (Postgres) | Account, profile, message, and app data |
| Vercel | Hosting, CDN, file/blob storage | Site delivery; photo and media files |
| Stripe | Payments and subscriptions | Email, billing details, payment method (collected by Stripe directly) |
| Resend | Transactional email | Email address; verification, reset, and notification content |
| PostHog | Product analytics (consent-gated) | Pseudonymous usage events — only after consent |
| Sentry | Error and crash monitoring | Diagnostics, device info, limited request context |
| AWS Rekognition | Photo verification (only when enabled) | Verification selfie + profile photo comparison |
| Discord | Optional community link | Only what you share on Discord — governed by Discord's own policy |
Each provider processes data only as needed to deliver its service and under contractual confidentiality and security obligations. Realtime features (typing indicators, call signaling) run on our own database — no separate realtime provider receives your data.
7. Data Retention
- Account and profile data is retained while your account is active.
- When you delete your account, we delete or irreversibly de-identify your profile, photos, and session data within a reasonable period (typically within 30 days), except:
- · Messages you sent may remain in the recipient's mailbox until they delete them or their own account.
- · Records we must retain for legal, tax, fraud-prevention, or safety purposes — ban enforcement records, reports, moderation history, payment records — are kept for the period required by law or legitimate enforcement needs.
- · Profile edit history and moderation/audit records are retained to preserve enforcement integrity.
- · Encrypted or scheduled backups purge on their normal rotation cycle.
- Verification selfies are retained no longer than needed to decide verification, then deleted.
- Expired auth tokens, sessions, and realtime signals are purged on a rolling schedule.
8. Cookies and Similar Technologies
| Type | Purpose | Required? |
|---|---|---|
| Strictly necessary | Authentication/session tokens, security, CSRF protection, load balancing | Yes — the Service won't work without them |
| Preferences | Theme, locale, guided-tour and UI state (local storage) | Yes |
| Analytics | PostHog product analytics — feature usage and performance | No — requires your consent |
Our consent banner lets you accept or decline analytics. Declining does not affect core functionality, and you can change your choice at any time. We do not use advertising cookies or third-party ad trackers. Mobile apps use equivalent SDK storage rather than browser cookies.
9. Analytics and Consent
PostHog initializes only after you explicitly accept analytics in the consent banner. Declining means no analytics events are captured. If you withdraw consent after accepting, capture stops and existing client state is reset. Analytics events are pseudonymous product events (feature usage, funnel steps) — not message content.
10. Your Rights and Choices
Depending on your location, you may have the right to:
- Access: obtain a copy of your personal data
- Correct: fix inaccurate data — most profile fields are editable in-app
- Delete: delete your account in Settings → Security, or request deletion by contacting us
- Portability: receive your data in a portable, machine-readable format
- Object / restrict: object to or restrict certain processing
- Withdraw consent: for faith data, precise location, biometrics, or analytics — withdrawal does not affect prior lawful processing
- Opt out of sale/sharing: not applicable — we neither sell data nor share it for behavioral advertising
- Non-discrimination: we will not discriminate against you for exercising these rights
- Lodge a complaint: EEA/UK users may complain to their supervisory authority; California users may contact the California Privacy Protection Agency
Exercise rights in-app where available or by emailing privacy@saintsandsingles.com. We may verify your identity before fulfilling a request and respond within the period required by law (generally 30 days). California residents may designate an authorized agent; the agent must provide proof of authorization.
11. Security
We protect your data with encryption in transit (TLS), hashed credentials (argon2id), rotating session tokens with reuse detection, scoped moderator tooling, per-action authorization checks, audit logging, and rate limiting. Photos and media are served over authenticated or scoped URLs. No system is perfectly secure — keep your credentials confidential and enable a strong, unique password.
12. Data Breach Notification
If a breach of your personal data occurs that creates a risk to your rights, we will notify you and the relevant supervisory authority within the timeframes required by applicable law.
13. Children's Privacy
The Service is for adults 18 and older. We do not knowingly collect data from minors. If we learn a user is under 18, we delete the account and associated data and report where legally required.
14. International Data Transfers
Your data may be processed in the United States and other countries where our providers operate. For EEA/UK personal data, transfers rely on adequacy decisions or Standard Contractual Clauses where required.
15. Do Not Track and Global Privacy Control
Where technically feasible and legally required, we honor recognized opt-out signals such as Global Privacy Control for analytics. Declining analytics in the consent banner achieves the same result.
16. Deleting Your Account
You can delete your account at any time in Settings → Security. Deletion removes your profile from the Service and begins the retention process described in Section 7. Deleting your account does not automatically cancel a paid subscription — cancel billing first in Settings → Billing.
17. Changes to This Policy
We may update this Policy. For material changes we will provide notice through the Service or by email before they take effect and update the "Last updated" date. Continued use after the effective date constitutes acceptance of the updated Policy.
18. Contact and Data Controller
Privacy questions, requests, or complaints: privacy@saintsandsingles.com or support@saintsandsingles.com. For legal notices, see the contact section of our Terms of Service.