Privacy Policy

Last updated: September 14, 2026

LoungeMatch ("we", "us", "our") is a privacy-first networking app for business travelers. This policy explains exactly what we collect, why, how we use it, and the choices you have. We keep data collection to what the app genuinely needs to work — and we do not sell your personal data.

1. Who we are

LoungeMatch operates the LoungeMatch mobile application and the website at loungematch.com. If you have any questions about this policy or your data, contact us at privacy@loungematch.com.

2. Information we collect

We collect only what's needed to create your profile, help you connect with nearby professionals, and keep the community safe.

Account & sign-in

When you sign in with Google, Apple, or LinkedIn, we receive and store:

Your profile

Location & availability

We do not continuously track your location. We use your device's location only at the moment you check in, to confirm you're near the airport or station ("hub") you select and to show relevant people nearby. We store the hub you check into and your availability window (how long you're marked as available) — not a continuous history of where you go.

Connections & content you create

Technical & usage data

Most account-linked application records are deleted when you delete your account; see section 6 for safety-case exceptions, file cleanup, infrastructure backups and retention limits. Message bodies are encrypted in storage with a per-conversation key protected by a LoungeMatch-controlled master key. This is not end-to-end encryption: our service can decrypt messages when needed to operate messaging features. When message previews are enabled in Settings, we decrypt only the newly sent message in memory and send a short preview through Expo and the Apple or Google notification service. Turning previews off keeps notifications generic. We do not use message content for advertising or profiling; chat content is reviewed when a user includes it in a safety report.

Meeting-place agreements: When you propose a meeting in a chat, we store its venue, optional time and agreement status for the chat participants. Daily cleanup deletes meeting records once they are more than one day past expiry. This cleanup does not delete your chat messages. Choosing a meeting place does not check you in, share live GPS, make a reservation or prove attendance.

3. How we use your information

4. When you're visible to others

Other users can see your profile (name, photo, bio, industries, interests and links) when you are marked available at a shared hub. Confidential feedback, internal trust indicators and moderation case records are not part of your public profile. As part of the free experience, some nearby information may be shown to others in an anonymous, aggregated form (for example, how many professionals in a given industry are around) without revealing your name or photo, until a full connection is made. You control your visibility by setting or ending your availability at any time.

Confidential feedback and moderation

Where enabled, authorized staff use feedback and reports to review possible conduct or reliability concerns. Personal fit, missing feedback and being a new member do not automatically reduce your visibility. Cancellation and no-show answers are allegations, not verified attendance. We do not automatically ban members based on a feedback score.

We do not show individual answers or the reporter's identity to the counterpart. However, confidentiality cannot guarantee anonymity: someone may infer who gave feedback after a one-to-one interaction. Staff see only information needed for their role. A restriction explanation identifies the relevant community-rule category without disclosing the other person's private statements. Members can request review through the account-status and appeal process.

5. How we share information

We do not sell your personal data. We share information only in these limited cases:

Apple or Google handles native subscription payment, and RevenueCat processes subscription entitlement and lifecycle data on our behalf. Their handling is also governed by their applicable privacy terms.

WhoWhat & why
Other usersYour profile and activity you choose to share, as described above, so you can connect.
Sign-in providers (Google, Apple, LinkedIn)Only during login, to authenticate you. We receive data from them; we don't send them your in-app activity.
Push notification delivery (Expo)Your device push token and the notification content are processed to deliver notifications to your device.
Hosting & infrastructure providersWe use trusted providers to host the app, database, and images that operate the service on our behalf.
Legal & safetyIf required by law, or to protect the rights, safety, and security of our users and the public.

6. Data retention

We keep ordinary account information while your account is active. Successful account deletion removes your profile, availability/location-sharing data, check-in and usage history, push tokens, contacts, requests, ratings, blocks and reports from the active application database. It also removes your conversations, including both participants' messages, reactions and conversation encryption keys. There is no account-recovery grace period. Where confidential feedback and moderation are enabled under an approved safety retention policy, limited feedback linked to a case and case/decision/appeal history may remain after account deletion, using account references rather than your ordinary profile; a keyed digest of a verified sign-in identity may remain to check an active ban. These are still personal data, accessible only for safety review. Other feedback associated with the deleted account is removed. Any exception must be justified and reviewed, not retained forever by default.

Where enabled, raw confidential feedback is subject to a default 180-day cleanup cutoff (settings can shorten this period). Closed moderation cases and their decisions/appeals become eligible for cleanup after a default 365 days (also configurable shorter), except where an active restriction, suspension or ban or an open appeal requires further review. Open cases are scheduled for human review after 90 days and retained ban-identity digests after 365 days under the default settings; these intervals can be shortened. These review dates do not automatically delete an open case or ban record, or undo a ban; a reviewer must decide whether retention remains necessary. Scheduled cleanup depends on the service maintenance process running successfully, so these are operational cleanup rules, not guaranteed deletion deadlines.

Cleanup of your uploaded profile photo and those conversations' encrypted photo and voice files begins after database deletion. Failed managed chat-file deletions remain eligible for retry by a periodic maintenance process, but file removal is not guaranteed within a maximum period; profile-photo cleanup does not have the same retry guarantee. A separate cleanup registry keeps technical deletion records (account/conversation and file/message identifiers, media type, size and timestamps, not message content) for investigation. Swept records with confirmed file deletion are eligible for automatic purge after 30 days; records marked with conflicting storage ownership can also be purged after 30 days even though that file has not been confirmed deleted. Other failed cleanup records/files can remain longer. You may contact us to request investigation and removal of remaining files and cleanup records.

Infrastructure backups and operational logs are managed separately by hosting providers and may remain until their retention cycles expire; a maximum period has not yet been verified. Contact us about backup retention and the status of remaining copies. Deletion cannot remove copies saved by other users or data independently held by your sign-in provider. Any separately held information required by law is retained only for that obligation.

See Delete your LoungeMatch account for instructions, identity checks and an email request option that does not require the app.

7. Your rights and choices

8. Security

We use industry-standard measures to protect your data, including encrypted connections and access controls. Sign-in is handled through Google, Apple, and LinkedIn, so we never see or store your passwords. No method of transmission or storage is completely secure, but we work to protect your information and limit what we collect.

9. Children

LoungeMatch is for adults aged 18 or older and is not directed to anyone under 18. New members and people resuming incomplete signup must explicitly confirm they are 18 or older. We store the server-recorded confirmation time and statement version with the account; these are not shown on public profiles and are removed from the active application database when the account is deleted. We do not collect a birth date or identity documents for this confirmation. This is self-declared age, not verified age. Existing completed accounts are not silently recorded as confirmed.

Provider sign-in may create a provisional account before confirmation so we can identify your session. It cannot access member features until confirmation. If you cannot confirm, do not continue signup; you may log out, contact support or delete that account. We do not knowingly collect data from children. If you believe a minor has provided us information, contact us and we will remove it.

10. International transfers

Your information may be processed in countries other than your own. Where required, we take steps to ensure your data receives an adequate level of protection when transferred internationally.

11. Changes to this policy

We may update this policy from time to time. When we make material changes, we'll update the "Last updated" date above and, where appropriate, notify you in the app.

12. Contact us

Questions or requests? Email privacy@loungematch.com.

This policy describes our current practices for the LoungeMatch app and website. It is provided for transparency and is not legal advice.