Scarica l’appAccediRegistrati

Privacy Policy

Version 1.0 · Aggiornato il 2026-08-04

Privacy Policy

iDeal DP — operated by Dynamic Dating Group, Inc.

Version 1.0 — Effective August 4, 2026

This American English version is the reference version. Translations are provided for convenience; in the event of any discrepancy, this version controls.

At a Glance

This summary does not replace the full policy, but covers the essentials.

We cannot read your messages.Messaging and calls are end-to-end encrypted. We relay encrypted data and do not hold the keys.
Your history lives on your device.Messages and their media pass through our servers for no more than 30 days, only for delivery.
Your data is hosted in Europe.Our application and storage servers are located in Germany (IONOS SE, Hetzner Online GmbH) and our transactional email in Switzerland (Infomaniak).
We do not sell your data.We do not sell or "share" personal information as those terms are defined by the CCPA/CPRA, and we do not run behavioral advertising.
Biometrics are optional.Identity Certification requires your separate, explicit consent. You may decline.
Location is optional.All GPS features are opt-in; your profile location is intentionally approximate, about 5 km (3 miles).
You stay in control.Access, correction, deletion, objection, portability, withdrawal of consent: see Section 12.

1. Who Is Responsible for Your Data

iDeal DP is not a company. iDeal DP is a brand and service owned and operated exclusively by Dynamic Dating Group, Inc., the sole controller of your data (a "controller" under the GDPR, a "business" under the CCPA). The company maintains its sole corporate headquarters in the United States of America.

Legal nameDynamic Dating Group, Inc.
Entity typeCorporation organized under the laws of the State of Delaware, United States
Registered address1111B S Governors Ave #3153, Dover, Delaware 19904, United States
Delaware File Number36-5097806
EIN36-5097806
Telephone+1 415 417-0755
Privacy emailprivacy@idealdp.com
Legal emaillegal-eu@idealdp.com
General contactcontact-us@idealdp.com

Representative in the European Union (Article 27 GDPR and Article 13 DSA): Inga Metra — Latvia — — contact-us@idealdp.com — +48 732 736 288

Any data subject and any supervisory authority may contact the representative, in addition to or instead of the company.


2. Scope

This policy covers the iDeal DP mobile app (iOS, Android), the web application (app.idealdp.com), the public website (idealdp.com), our APIs, our transactional communications, and our internal administration console.

It does not cover third-party services you access (Apple, Google, Stripe, carriers, linked sites), which are governed by their own policies.


3. What We Cannot See

By technical design:

As a result, we cannot restore lost history, nor produce message content — including in response to a lawful order. We hold only encrypted data and metadata.


4. Data We Process

4.1 Categories

CategoryDataSourceSensitivity
IdentifiersEmail address, phone number (hashed, never stored in the clear), password (bcrypt hash), date of birth, display nameYouStandard
ProfilePhotos (up to 12), bio, gender, sought orientation, intentions, interests, languages, occupation, height, weight, religion, smoking, children, relationship goalYouSensitive (religion, orientation, data revealing health)
Biometrics and identityLiveness selfies, government ID (optional), 512-dimension facial templates used to detect duplicate accountsYouSensitive (Article 9 GDPR; "biometric identifier" under BIPA and CUBI)
LocationApproximate profile location (about 5 km), precise location for Safe Date, emergency alerts, and Crossings, sign-in and registration countryDevice (opt-in)Sensitive (precise geolocation, CPRA)
CommunicationsEncrypted message and media content (unreadable by us), conversation metadata (participants, timestamps), call metadata (duration, type, quality)ServiceStandard
Social interactionsSwipes, matches, likes received, follows, community memberships, RSVPs, outing participation, comments, hashtagsServiceStandard
Profiling and AIProfile embeddings, Smart Search history and feedback, compatibility scores, quality and reputation signalsServiceStandard
Published contentReels, stories, posts, comments, polls, events, outings, uploaded music and creditsYouStandard
Subscription and paymentPlan, status, cycle, opaque references to Stripe, Apple, Google, billing history. We store no payment card dataYou and providersStandard
Devices and technicalDevice identifier, platform, app version, push token, public encryption keys, last activity, IP address, technical logsDeviceStandard
Safety and moderationReports sent and received, attached evidence, automated analyses, moderation decisions, appeals, block list, blocked name-search attempts, audit logsYou, third parties, ServiceStandard to sensitive depending on content
Third-party contactsSafe Date trusted contacts (name and phone number), provided by youYouThird-party data
SupportExchanges with support, complaints, rights requestsYouStandard

4.2 What We Do Not Collect

We do not collect payment card data, the plaintext of your messages, your address book, advertising identifiers for third-party targeting, or data from data brokers.

4.3 Data About Third Parties

When you save a Safe Date trusted contact, you provide us a third party's name and phone number. You must inform them and confirm their agreement. That person may request deletion of their data at privacy@idealdp.com.


5. Purposes and Legal Bases

PurposeDataLegal basis
Create and manage your account, authenticate youIdentifiers, devicesPerformance of contract
Verify that you are an adultDate of birth, CertificationLegal obligation and legitimate interest (child protection)
Display your profile and enable discoveryProfile, approximate location, interactionsPerformance of contract
Compute compatibility and rank resultsProfile, embeddings, search historyPerformance of contract; legitimate interest for improvement (right to object, Section 12)
Deliver messages, media, and callsMetadata, encrypted blobsPerformance of contract
Translate messages (server fallback)The text concerned, occasionallyConsent
Certify your identitySelfies, ID, facial templatesExplicit consent (Article 9(2)(a) GDPR; written release under BIPA) and legitimate interest in fraud prevention
Prevent fraud, fake accounts, and duplicatesFacial templates, hashed phone, logs, devicesLegitimate interest (service security)
Moderate, handle reports and appealsReports, evidence, decisionsLegal obligation (DSA) and legitimate interest
Safe Date features and emergency alertsPrecise location, trusted contactsConsent; vital interests where applicable
Proximity CrossingsLocation pingsConsent
Push notificationsDevice tokenPerformance of contract or consent depending on platform
Coach Connect and proactive coachingProfile excerpts, queriesPerformance of contract; consent for proactive coaching
Process payments and subscriptionsSubscription data, opaque referencesPerformance of contract and legal obligation (accounting)
Transactional communicationsEmail, phonePerformance of contract
Marketing communicationsEmailConsent (opt-in; withdrawable at any time)
Information security, logging, auditTechnical data, audit logsLegitimate interest
Establish, exercise, or defend legal claimsAs relevant to the matterLegitimate interest and legal obligation
Analytics and product improvementAggregated or pseudonymized dataLegitimate interest

Withdrawing consent. Where processing relies on your consent, you may withdraw it at any time, without retroactive effect, from the app settings or by writing to us.


6. Sensitive Data — Specific Commitments

6.1 Biometric data

What we process. Liveness selfies and digital facial templates (512-dimension vectors), used solely to: confirm that the person present is live and matches the document provided, and detect the creation of multiple accounts by the same person.

What we do not do. We do not sell, lease, trade, or otherwise profit from any biometric data. We do not use it for advertising, for facial recognition in public spaces, or to identify people outside the Service.

Consent. Biometric processing occurs only after explicit, separate, written consent, obtained on a dedicated screen before capture, with information on the purpose, retention period, and destruction method.

Retention and destruction schedule (published in accordance with the Illinois Biometric Information Privacy Act, the Texas Capture or Use of Biometric Identifier Act, and Chapter 19.375 RCW of the State of Washington):

DataRetention
Liveness selfiesDestroyed within 30 days of the certification decision
Government IDDestroyed within 90 days of the decision, unless a dispute is pending
Facial template (512 dimensions)Destroyed no later than one (1) year after certification expires, and in any event within one year of the date the initial purpose for collection has been satisfied
Proof of biometric consentDuration of processing plus the applicable limitations period

Biometric consent may be withdrawn at any time; withdrawal triggers destruction within the periods above and loss of certified status.

6.2 Data revealing sexual orientation, religion, or health

The "sought orientation," "intentions," "religion," "smoking," "children," "height," and "weight" fields may reveal sensitive data. These fields are optional and have per-field visibility controls (public, private, or certified members only). Completing them constitutes explicit consent to their publication at the visibility level you choose.

6.3 Precise location

Used only for Safe Date, emergency alerts, and Crossings, always opt-in. Precise coordinates are masked when the sharing session expires (24-hour cap). The public tracking link is token-based and expires automatically.

6.4 Minors

The Service is prohibited to anyone under 18. We do not knowingly collect data from minors. Any account identified as belonging to a minor is deleted and its data erased. Reports: safety@idealdp.com.


7. Artificial Intelligence and Profiling

7.1 Processing involved

FeatureData sent to the modelOutput
Smart SearchYour query, criteria, excerpts of candidate profilesRephrasing and ranking
Bio writing assistanceProfile elements you provideSuggested text
Coach ConnectYour questions, profile contextGuidance
Compatibility scoreProfile embeddingsScore
Preliminary moderation analysisReported content and report contextProposed classification, non-decisional

Encrypted private messages are never transmitted to an AI provider.

7.2 Providers

We use a multi-provider gateway that may rely on Anthropic, Mistral, and OpenAI, along with self-hosted models (fallback translation, internal facial comparison service). Each provider is bound by a data processing agreement and by a contractual commitment not to use your data to train its models.

7.3 No automated decisions with legal effect

No suspension, ban, or certification denial is issued solely on the basis of automated processing: human review always occurs (Article 22 GDPR). You may obtain human intervention, express your point of view, and contest the decision.

7.4 Recommender system transparency

Profile ranking relies primarily on: your stated criteria, distance, semantic similarity between profiles, activity and mutual interest, and quality and safety signals. The main parameters are disclosed in accordance with Article 27 of the Digital Services Act. You can influence ranking through your filters and preferences.


8. Recipients and Service Providers

We do not sell your data. We disclose it only as follows:

RecipientRoleData sharedLocation
IONOS SE — Elgendorfer Str. 57, 56410 Montabaur, Germany (HRB 24498 Montabaur)Application and database hostingAll server-side dataGermany (EU) — ISO/IEC 27001
Hetzner Online GmbH — Industriestr. 25, 91710 Gunzenhausen, Germany (HRB 6089 Ansbach)Media object storagePhotos, media, encrypted mediaGermany (EU)
Infomaniak Network SA, GenevaTransactional email (one-time codes, notifications)Email address and message contentSwitzerland
StripeWeb paymentsEmail, amount, customer reference (no card data held by us)EU and United States
Apple (App Store, in-app purchases)iOS in-app purchasesPurchase receipts, Apple identifiersEU and United States
Google Play BillingAndroid in-app purchasesPurchase tokensEU and United States
Google Firebase (FCM)Push notificationsDevice tokens, generic notification payloads (never message text)EU and United States
Anthropic, Mistral, OpenAIAI featuresProfile excerpts, queries, reported contentEU and United States
Identity verification provider (where applicable)External KYC verificationSelfie, government IDEU
Google ML KitOn-device translation and face detectionNothing leaves the device
Google Drive / iCloudBackup encrypted by youUnreadable encrypted fileEU and United States
Pexels / PixabayStock images, music catalogNo outbound user data

We may also disclose data:

Other Members. Your profile information, published content, reels, stories, posts, comments, and participation are visible according to the visibility settings you choose. What you make public can be copied or captured by third parties; we cannot prevent this.


9. Data Location and International Transfers

9.1 Where your data is hosted

ProcessingProviderLocation
Application, APIs, databasesIONOS SEGermany (EU)
Media storageHetzner Online GmbHGermany (EU)
Transactional emailInfomaniak Network SASwitzerland
Push notificationsGoogle (Firebase)EU and United States
PaymentsStripe, Apple, GoogleEU and United States
AI featuresAnthropic, Mistral, OpenAIEU and United States

The Service's hosting foundation is located in the European Union (Germany) and Switzerland, a country covered by a European Commission adequacy decision. Data of European Members therefore does not leave the European Economic Area for hosting, storage, or backup.

9.2 Access from the United States

Because Dynamic Dating Group, Inc. is established in the United States, its teams access systems hosted in Europe to operate, support, secure, and moderate the Service. That access legally constitutes a transfer under Chapter V of the GDPR.

It is governed by Standard Contractual Clauses adopted by the European Commission (Decision (EU) 2021/914), supplemented by a transfer impact assessment and by technical measures: end-to-end encryption of communications, logged and role-limited administrative access, and minimization of the data consulted.

9.3 Other jurisdictions

Swiss Members: Standard Contractual Clauses recognized by the Federal Data Protection and Information Commissioner. Canadian Members: contractual measures consistent with PIPEDA and, in Quebec, Law 25.

A copy of the applicable safeguards is available on request at privacy@idealdp.com.


10. Retention Periods

DataRetention
Encrypted messages in the server queue30 days maximum
Encrypted chat media (relay)30 days maximum
Stories24 hours
Reels7 to 30 days as you choose, or until deleted
One-time codes (OTP)5 minutes
Safe Date sessionsCoordinates masked at expiry; 24-hour cap
Account, profile, photosDuration of the account, then anonymization
Certification1-year validity
Liveness selfies30 days after the decision
Government IDs90 days after the decision
Facial templates1 year after certification expires
Swipes, matches, likesRolling 24 months
Profile embeddings, Smart Search history12 months
Call metadata12 months
Reports, moderation decisions, appeals3 years after closure; 5 years for serious matters
Administrative audit logs12 months
Technical and security logs12 months
Billing records10 years (accounting obligations)

After account deletion: your user record is anonymized (email, phone, and password erased); devices and profile are deleted. Retained, attached to an anonymized record: collective contributions (posts, events created), and safety, moderation, and billing data for the periods above.


11. Security

Technical and organizational measures in place:

No system is infallible. You contribute to your own security by using a unique password, protecting your device, and keeping your recovery phrase offline.

Vulnerability reports: security@idealdp.com.


12. Your Rights

12.1 European Union, EEA, United Kingdom, and Switzerland

You have the rights of access, rectification, erasure, restriction, objection (including to legitimate-interest processing and profiling), portability, withdrawal of consent, the right not to be subject to a solely automated decision, and the right to give post-mortem instructions (France, Article 85 of the Data Protection Act).

Response time: one (1) month, extendable by two months where the request is complex.

12.2 United States

Depending on your state of residence — California, Virginia, Colorado, Connecticut, Utah, Texas, Oregon, Montana, Delaware, Iowa, Nebraska, New Hampshire, New Jersey, Tennessee, Minnesota, Maryland, Indiana, Kentucky, Rhode Island, and other states with laws now in effect — you may have the following rights:

Required disclosures (California, CCPA/CPRA): in the preceding 12 months, we have not sold and have not "shared" personal information. Because the Service is limited to persons 18 and over, we do not sell minors' data. We honor universal opt-out signals such as Global Privacy Control.

An authorized agent may act on your behalf upon presentation of a written authorization. We may request proportionate identity verification.

12.3 Canada and Quebec

Rights of access, correction, withdrawal of consent, portability, de-indexing or cessation of dissemination, and information about automated decisions. You may complain to the Office of the Privacy Commissioner of Canada or the Commission d'accès à l'information du Québec.

12.4 Self-service tools

ActionWhere
Edit your profile and preferencesProfile → Edit
Set per-field visibilitySettings → Privacy
Enable or disable location, incognito, AI coachingSettings
Block a MemberMember's profile → Block
See what is stored on our servers versus your deviceSettings → My Data
Delete your accountSettings → Account → Delete

12.5 How to exercise your rights

Two methods are available:

  1. in the app: Settings → My Data;
  2. by email to privacy@idealdp.com, or by mail to the registered address (Section 1).

Members in the European Union may also contact our EU representative (contact-us@idealdp.com) or legal-eu@idealdp.com.

12.6 Complaints


13. Cookies

The public website and web application use cookies and similar technologies (local storage, device identifiers). Purposes, durations, and opt-out methods are detailed in our Cookie Policy.

Non-essential cookies are set only after your consent, obtained through a banner that makes refusing as easy as accepting, and withdrawable at any time.


14. Data Breaches

Where a breach is likely to result in a risk to your rights, we notify the competent supervisory authority within 72 hours (GDPR) and inform you without undue delay where the risk is high. Notification obligations under U.S. state laws and Canadian laws are applied in parallel.


15. Changes to This Policy

Any material change is notified at least 30 days before it takes effect, by email or in-app notification. Changes expanding the use of sensitive data require fresh consent. Prior versions are archived and available on request.


16. Contact Us

Dynamic Dating Group, Inc. 1111B S Governors Ave #3153, Dover, Delaware 19904, United States — +1 415 417-0755

PurposeContact
Privacy and rights requestsprivacy@idealdp.com
Legal and European Union matterslegal-eu@idealdp.com
General contactcontact-us@idealdp.com
European Union representativeInga Metra — Latvia — contact-us@idealdp.com
Security and vulnerabilitiessecurity@idealdp.com

Privacy Policy — version 1.0, effective August 4, 2026. Reference version.