1. Who we are
LoungeMatch operates the LoungeMatch mobile application and the website at loungematch.com. If you have any questions about this policy or your data, contact us at privacy@loungematch.com.
2. Information we collect
We collect only what's needed to create your profile, help you connect with nearby professionals, and keep the community safe.
Account & sign-in
When you sign in with Google, Apple, or LinkedIn, we receive and store:
- Email address (with Apple, this may be a private relay address if you choose to hide your email).
- First name for display.
- Which provider you used (Google, Apple, or LinkedIn) and the stable account identifier that provider gives us, so we can recognize you on return visits.
- If you sign in with LinkedIn, we also import your profile photo, professional headline (used as your bio), and a link to your LinkedIn profile.
- If you sign in with Google, we also import your profile photo.
Your profile
- Profile photo you upload or import.
- Bio / headline, LinkedIn URL, and X (Twitter) handle if you add them.
- Industries and interests you select.
Location & availability
Connections & content you create
- Meetup requests you send or receive, including the short personal message attached.
- Messages exchanged in conversations after a mutual accept.
- Confidential connection feedback, where enabled: whether you connected, your experience of respectful conduct, self-reported meeting reliability, personal fit, and any optional written comment. We also record invitation timing and your reminder/dismissal choices.
- Saved contacts and private notes you keep about people you've met.
- Reports you submit, including the reason, your description, and — when you report a conversation — a copy of that chat history, which our safety team uses to review the report.
- Blocks you set, so we can keep blocked users apart.
Technical & usage data
- Push notification token — an identifier from your device so we can send you notifications (new requests, messages, and people available nearby).
- Sign-in and device information — when you sign in, we record the time, the sign-in provider you used, and basic device details (platform such as iOS or Android, operating system version, app version, and device model), plus a coarse country code when our hosting provider supplies one. We use this to understand usage, keep the service reliable, and improve the app. We do not store your IP address with these records.
- Check-in history — the hubs and venues you check into and your availability windows, so we can show trends (like popular venues) and improve the service. This is the venue you chose — never your GPS coordinates.
- Feature usage signals — for example, when you reach a limit of the free plan, so we can understand which features matter and improve our plans.
- Basic technical data needed to operate the service, such as your request information handled by our hosting provider.
- Subscription status — when you use Premium, Apple or Google processes payment and RevenueCat coordinates entitlement status for us. We receive an account-linked purchase identifier, product/entitlement status, store, renewal or expiry timing, and lifecycle events. We do not receive or store your full payment-card details.
Most account-linked application records are deleted when you delete your account; see section 6 for safety-case exceptions, file cleanup, infrastructure backups and retention limits. Message bodies are encrypted in storage with a per-conversation key protected by a LoungeMatch-controlled master key. This is not end-to-end encryption: our service can decrypt messages when needed to operate messaging features. When message previews are enabled in Settings, we decrypt only the newly sent message in memory and send a short preview through Expo and the Apple or Google notification service. Turning previews off keeps notifications generic. We do not use message content for advertising or profiling; chat content is reviewed when a user includes it in a safety report.
Meeting-place agreements: When you propose a meeting in a chat, we store its venue, optional time and agreement status for the chat participants. Daily cleanup deletes meeting records once they are more than one day past expiry. This cleanup does not delete your chat messages. Choosing a meeting place does not check you in, share live GPS, make a reservation or prove attendance.
3. How we use your information
- To create and maintain your account and profile.
- To show you relevant professionals nearby and let you send and respond to meetup requests.
- To enable messaging once you've both accepted.
- To send push notifications about activity relevant to you.
- To keep the community safe through confidential feedback, reports, blocks and human-reviewed moderation. Feedback is not a public rating or a measure of professional worth.
- To provide and manage Premium features and account status.
- To enforce the five-per-UTC-calendar-month remote-introduction allowance. Remote participation is opt-in; we do not show another member's exact location or imply that they are at your venue.
- To detect, prevent, and respond to abuse, fraud, and safety issues.
4. When you're visible to others
Other users can see your profile (name, photo, bio, industries, interests and links) when you are marked available at a shared hub. Confidential feedback, internal trust indicators and moderation case records are not part of your public profile. As part of the free experience, some nearby information may be shown to others in an anonymous, aggregated form (for example, how many professionals in a given industry are around) without revealing your name or photo, until a full connection is made. You control your visibility by setting or ending your availability at any time.
Confidential feedback and moderation
Where enabled, authorized staff use feedback and reports to review possible conduct or reliability concerns. Personal fit, missing feedback and being a new member do not automatically reduce your visibility. Cancellation and no-show answers are allegations, not verified attendance. We do not automatically ban members based on a feedback score.
We do not show individual answers or the reporter's identity to the counterpart. However, confidentiality cannot guarantee anonymity: someone may infer who gave feedback after a one-to-one interaction. Staff see only information needed for their role. A restriction explanation identifies the relevant community-rule category without disclosing the other person's private statements. Members can request review through the account-status and appeal process.
5. How we share information
We do not sell your personal data. We share information only in these limited cases:
Apple or Google handles native subscription payment, and RevenueCat processes subscription entitlement and lifecycle data on our behalf. Their handling is also governed by their applicable privacy terms.
| Who | What & why |
|---|---|
| Other users | Your profile and activity you choose to share, as described above, so you can connect. |
| Sign-in providers (Google, Apple, LinkedIn) | Only during login, to authenticate you. We receive data from them; we don't send them your in-app activity. |
| Push notification delivery (Expo) | Your device push token and the notification content are processed to deliver notifications to your device. |
| Hosting & infrastructure providers | We use trusted providers to host the app, database, and images that operate the service on our behalf. |
| Legal & safety | If required by law, or to protect the rights, safety, and security of our users and the public. |
6. Data retention
We keep ordinary account information while your account is active. Successful account deletion removes your profile, availability/location-sharing data, check-in and usage history, push tokens, contacts, requests, ratings, blocks and reports from the active application database. It also removes your conversations, including both participants' messages, reactions and conversation encryption keys. There is no account-recovery grace period. Where confidential feedback and moderation are enabled under an approved safety retention policy, limited feedback linked to a case and case/decision/appeal history may remain after account deletion, using account references rather than your ordinary profile; a keyed digest of a verified sign-in identity may remain to check an active ban. These are still personal data, accessible only for safety review. Other feedback associated with the deleted account is removed. Any exception must be justified and reviewed, not retained forever by default.
Where enabled, raw confidential feedback is subject to a default 180-day cleanup cutoff (settings can shorten this period). Closed moderation cases and their decisions/appeals become eligible for cleanup after a default 365 days (also configurable shorter), except where an active restriction, suspension or ban or an open appeal requires further review. Open cases are scheduled for human review after 90 days and retained ban-identity digests after 365 days under the default settings; these intervals can be shortened. These review dates do not automatically delete an open case or ban record, or undo a ban; a reviewer must decide whether retention remains necessary. Scheduled cleanup depends on the service maintenance process running successfully, so these are operational cleanup rules, not guaranteed deletion deadlines.
Cleanup of your uploaded profile photo and those conversations' encrypted photo and voice files begins after database deletion. Failed managed chat-file deletions remain eligible for retry by a periodic maintenance process, but file removal is not guaranteed within a maximum period; profile-photo cleanup does not have the same retry guarantee. A separate cleanup registry keeps technical deletion records (account/conversation and file/message identifiers, media type, size and timestamps, not message content) for investigation. Swept records with confirmed file deletion are eligible for automatic purge after 30 days; records marked with conflicting storage ownership can also be purged after 30 days even though that file has not been confirmed deleted. Other failed cleanup records/files can remain longer. You may contact us to request investigation and removal of remaining files and cleanup records.
Infrastructure backups and operational logs are managed separately by hosting providers and may remain until their retention cycles expire; a maximum period has not yet been verified. Contact us about backup retention and the status of remaining copies. Deletion cannot remove copies saved by other users or data independently held by your sign-in provider. Any separately held information required by law is retained only for that obligation.
See Delete your LoungeMatch account for instructions, identity checks and an email request option that does not require the app.
7. Your rights and choices
- Access & update: View and edit your profile information in the app at any time.
- Availability: Turn your availability on or off to control when you're visible.
- Delete your account: Open Profile → Settings → Delete account while signed in and complete the confirmation, or request deletion on the web without reinstalling the app. We verify ownership before acting on email requests.
- Notifications: Manage or disable push notifications in your device settings.
- Regional rights: Depending on where you live (for example, the EEA/UK under GDPR, or California under the CCPA/CPRA), you may have rights to access, correct, delete, or port your data, and to object to or restrict certain processing. Contact us to exercise these rights.
8. Security
We use industry-standard measures to protect your data, including encrypted connections and access controls. Sign-in is handled through Google, Apple, and LinkedIn, so we never see or store your passwords. No method of transmission or storage is completely secure, but we work to protect your information and limit what we collect.
9. Children
LoungeMatch is for adults aged 18 or older and is not directed to anyone under 18. New members and people resuming incomplete signup must explicitly confirm they are 18 or older. We store the server-recorded confirmation time and statement version with the account; these are not shown on public profiles and are removed from the active application database when the account is deleted. We do not collect a birth date or identity documents for this confirmation. This is self-declared age, not verified age. Existing completed accounts are not silently recorded as confirmed.
Provider sign-in may create a provisional account before confirmation so we can identify your session. It cannot access member features until confirmation. If you cannot confirm, do not continue signup; you may log out, contact support or delete that account. We do not knowingly collect data from children. If you believe a minor has provided us information, contact us and we will remove it.
10. International transfers
Your information may be processed in countries other than your own. Where required, we take steps to ensure your data receives an adequate level of protection when transferred internationally.
11. Changes to this policy
We may update this policy from time to time. When we make material changes, we'll update the "Last updated" date above and, where appropriate, notify you in the app.
12. Contact us
Questions or requests? Email privacy@loungematch.com.
This policy describes our current practices for the LoungeMatch app and website. It is provided for transparency and is not legal advice.