Version 2026-09-05.1. Covers youtofind web, iOS and Android. App Store Connect App Privacy declarations must match the list below.
1. Who we are
youtofind.com is a location-based friendship service. Controller: youtofind (youtofind.com). Contact: destek@youtofind.com.
2. Data we collect
- Account: username, email, password hash (no plain password).
- Profile: display name, age, gender, interests, city, photos, bio.
- Location: live GPS if you enable sharing; venue check-in stores distance and GPS accuracy proof.
- Content: messages, likes, friends, activity joins, venue check-ins.
- Device: app device id, push token, approximate IP (security / rate limits).
- Payments: subscriptions via iyzico; card data is not stored on youtofind servers.
3. Messages
Message bodies are encrypted on the server (AES-256-GCM) and stored as ciphertext. The server decrypts them to deliver chat. Authorized operators may access content for legal or safety review. This is not end-to-end encryption that only the two devices can read.
4. Location
Nearby people and venues need location sharing on. Check-in is only for a venue you choose, within about 35 m and with sufficient GPS accuracy. Profile photos are not encrypted (moderation / CDN).
5. Why we process
- Provide Discover, chat, venues and activities.
- Security, fake-account and abuse prevention.
- Legal duties and lawful requests.
6. Sharing
Users do not see each other’s phone or email. Processors: hosting, iyzico, optional Google Translation, OpenStreetMap tiles, APNs / FCM. We do not sell personal data.
7. Retention and Delete Account
Web and iOS/Android Settings include a prominent Delete Account control. After deletion we revoke sessions and remove or de-identify username, email, phone hash, profile, photos and location. We commit that a deleted account’s personal data is taken out of the Service (Apple 5.1.1(v)). We may keep only legally required records (tax/payments, consent and deletion logs, up to 30-day device block). Encrypted messages may remain unattributable to you for a limited legal/safety period.
8. App Store Connect — App Privacy types
Your App Privacy answers must match this list. Do not declare a type we do not collect.
- Contact Info — Name (display name); Email Address.
- Location — Precise Location (GPS if sharing on); Coarse Location (city / distance band).
- User Content — Photos or Videos; Other User Content (bio, messages, check-in).
- Identifiers — User ID; Device ID (re-registration block / push).
- Purchases — Purchase History (subscriptions; no card numbers on our servers).
- Usage Data — Product Interaction (likes, chat, check-in).
- Sensitive Info — Other Sensitive Info (gender / seeking).
- Other Data — Cookies / IP (web session, locale, security).
- Diagnostics — only if you actually collect crash/performance data.
We do not collect: Contacts, Health, Browsing History, Advertising Data, Physical Address, phone number shown to other users.
9. Your rights
Access, correction, objection and Delete Account: destek@youtofind.com. Consent logs are kept as evidence.
/privacy