Privacy Policy
Welcome to UpMatch! This Privacy Policy explains how we collect, use, share, and protect information about you when you use our services.
Last updated: August 12, 2025
UpMatch is a private, personal coaching tool for improving your dating profile. Your data, photos, and analyses are completely private to you - no other users can see your information. We are NOT a social network or dating platform.
Please read this Privacy Policy carefully. By using our Services, you agree to the collection and use of information in accordance with this policy.
1. Information We Collect
We collect information you provide directly to us, information we collect automatically when you use our Services, and information from third parties.
a) Information You Provide Directly:
Account Information: When you create an UpMatch account, we collect information such as your name, email address, and password.
Profile Information: You may choose to provide additional information for your profile, such as a profile description, interests, dating preferences, or other details relevant to the App's functionality.
Photos: To create your profile and use features like Photo Analysis, you upload photos directly from your device's camera or photo library. We collect and store these photos in your account.
Communications: If you contact us directly (e.g., for customer support), we may receive additional information about you, such as your name, email address, the contents of your message, and any other information you choose to provide.
b) Information Collected Automatically:
Usage Information: We collect information about how you use the App, such as the features you use, the content you view, the actions you take, and the time, frequency, and duration of your activities.
Device Information: We collect information about the mobile device you use to access our Services, including the hardware model, operating system and version, unique device identifiers, and mobile network information.
Analytics Data: We use PostHog for analytics to understand how users interact with our app, including screen views, feature usage, and user journeys.
c) Information from Third Parties:
Third-Party Authentication: If you choose to log in to our Services using third-party platforms like Google or Apple, we receive information from that platform. This may include your public profile information, email address, and authentication token, as permitted by the platform's policies and your privacy settings on that platform. We use this information to create and manage your UpMatch account.
1.1. Face Data Collection and Processing
What Face Data We Collect:
When you upload photos to UpMatch, our app processes images that may contain facial features. Specifically, we collect:
- • Photographic images containing your face and facial features
- • Metadata associated with these photos (dimensions, file size, upload date)
- • AI-generated analysis of facial presentation in the context of dating profile effectiveness
How We Use Face Data:
We use face data exclusively for the following purposes:
- • Dating Profile Analysis: Our AI analyzes facial presentation, expressions, and photo composition to provide personalized feedback on dating profile effectiveness
- • Photo Categorization: Determining photo types (e.g., headshot, full-body, group photo) to help users build diverse profiles
- • Profile Optimization Recommendations: Providing specific suggestions for photo improvements based on dating psychology research
- • Quality Assessment: Evaluating photo quality factors like lighting, clarity, and composition that affect profile performance
Important Clarifications:
- • We DO NOT use face data for biometric identification or authentication
- • We DO NOT collect or use biometric data (Face ID, Touch ID, etc.) for app security or login
- • We DO NOT create facial recognition profiles or facial fingerprints
- • We DO NOT sell, rent, or share your face data with third parties for their marketing purposes
- • We DO NOT use face data for surveillance, tracking, or identification across platforms
- • Your photos and analyses are NEVER visible to other users - UpMatch is a private, personal improvement tool, not a social platform
- • Authentication is handled by Clerk using traditional methods (email/password or OAuth) - never biometrics
Third-Party Processing:
Your photos are processed by:
- • Google Gemini AI (Google LLC): For AI-powered analysis of dating profile effectiveness. Google processes the images transiently to generate insights but does not store them permanently for this service. Google's processing is governed by their AI principles and data processing terms.
- • Convex (Convex, Inc.): For secure cloud storage of your uploaded photos. Photos are encrypted at rest and in transit.
Data Retention:
- • Face data (photos) are retained as long as you maintain your account
- • Upon account deletion, all photos and associated face data are permanently removed within 30 days
- • AI-generated analyses are stored with your account and removed upon account deletion
Your Rights Regarding Face Data:
- • Access: View all photos and analyses in your profile
- • Deletion: Delete your entire account to remove all photos and face data
- • Portability: Download your photos and analysis data
- • Opt-out: You may use the app without uploading photos, though core features require photo analysis
Security Measures for Face Data:
- • All photos are encrypted using AES-256 encryption at rest
- • TLS 1.3 encryption for all data transmission
- • Access controls limiting photo access to authenticated account owners
- • Regular security audits of our storage and processing systems
Legal Basis:
We process face data based on your explicit consent, which you provide when uploading photos to the app. You may withdraw this consent at any time by deleting your photos or account.
2. How We Use Your Information
We use the information we collect for various purposes, including to:
- • Provide, operate, maintain, and improve our Services, including the Photo Analysis feature.
- • Create and manage your account and profile.
- • Provide AI-driven feedback on your photos to help you improve your dating profile.
- • Authenticate users and prevent fraud.
- • Enable you to interact with other users (if applicable based on app features).
- • Personalize your experience.
- • Communicate with you, including responding to your comments, questions, and requests, and providing customer service and support.
- • Send you technical notices, updates, security alerts, and administrative messages.
- • Monitor and analyze trends, usage, and activities in connection with our Services.
- • Comply with legal obligations and enforce our terms and policies.
- • For any other purpose for which the information was collected, with your consent where required.
2.1 Automated Decision-Making
We use automated systems to:
- • Analyze your photos using AI to generate scores and recommendations
- • Categorize photos into types (headshot, full-body, etc.)
- • Enforce usage limits based on your subscription tier
- • Track device usage for free tier limitations
These automated decisions are based on AI analysis and do not have legal or similarly significant effects. You can request human review of any analysis by contacting support.
3. How We Share Your Information
We may share the information we collect in the following circumstances:
With Service Providers: We share information with third-party vendors, consultants, and other service providers who need access to such information to carry out work on our behalf. This includes:
- • Convex: For real-time database hosting, backend services, and file storage (including your photos and analysis results).
- • Clerk: For authentication and user management services.
- • Google & Apple: For authentication services if you choose to use them.
- • Google Gemini AI: For analyzing your photos to provide profile insights. Photo content is processed transiently but not stored by Google's AI services.
- • RevenueCat: For subscription management and payment processing.
- • PostHog: For analytics and understanding app usage patterns.
These providers are contractually obligated to protect your information and use it only for the services they provide to us.
For Legal Reasons: We may disclose your information if required to do so by law or in the good faith belief that such action is necessary to (i) comply with a legal obligation, (ii) protect and defend our rights or property, (iii) prevent or investigate possible wrongdoing in connection with the Services, (iv) protect the personal safety of users of the Services or the public, or (v) protect against legal liability.
Business Transfers: We may share or transfer your information in connection with, or during negotiations of, any merger, sale of company assets, financing, or acquisition of all or a portion of our business by another company.
With Your Consent: We may share your information for other purposes with your consent or at your direction.
Important Privacy Note: UpMatch is NOT a social or dating platform. Your photos, analyses, and all personal data remain completely private to your account. No other users can view, access, or discover your profile, photos, or analysis results. This is your personal, private space for self-improvement.
4. Cookies and Web Storage
Web Storage
We use browser storage technologies including:
- • Session Storage: Temporary storage for user experience features (e.g., preventing repeated popups)
- • Local Storage: Storing authentication tokens securely on your device
Analytics
We use PostHog for privacy-focused analytics. PostHog may use cookies to:
- • Track feature usage and app performance
- • Understand user journeys (without identifying individuals)
- • Capture UTM parameters for marketing attribution
You can opt-out of analytics by contacting us at niklas@upmatch.net.
5. Data Storage and Security
Storage Location:
Your information, including personal data, photos, and analysis results, is stored and processed by Convex, which utilizes secure cloud infrastructure. Data may be stored on servers in the United States.
Security Measures:
We implement technical and organizational measures designed to protect your information from unauthorized access, use, alteration, or disclosure. We use industry-standard practices including:
- • HTTPS for all data transmission
- • Encrypted storage for sensitive data
- • Secure authentication through Clerk
- • Authentication tokens stored securely on your device using native secure storage mechanisms
However, no security system is impenetrable, and we cannot guarantee the absolute security of your information.
Data Retention:
- • Account information is retained until you delete your account
- • Photos are retained until you delete your account
- • Usage data and analytics are retained for up to 2 years
- • We may retain certain information longer if required by law
6. Your Choices and Rights
Depending on your location and applicable law, you may have certain rights regarding your personal information:
Account Information:
You can access and update certain account information through your profile settings within the App.
Photos and Face Data:
Your photos are managed as part of your account. To remove photos and face data, you can delete your entire account through the Settings screen.
Photo Analysis Results:
Analysis results are associated with your account and are removed when your account is deleted.
Account Deletion:
You can initiate the deletion of your account through the Settings screen in the App. This process will permanently remove your profile information, photos, face data, analysis results, and other associated data from our active systems within 30 days, subject to legal and operational retention needs (e.g., for security logs or legal compliance).
Third-Party Logins:
You can manage the connection between UpMatch and third-party platforms (Google, Apple) through the settings on those platforms.
Access, Correction:
You may have the right to request access to or correction of your personal information.
Data Portability:
You may have the right to receive a copy of your data in a portable format.
Withdraw Consent:
Where we rely on consent, you may have the right to withdraw it by deleting your account.
To exercise applicable rights, please contact us using the details below. We may need to verify your identity before processing your request.
7. Children's Privacy
Our Services are not directed to individuals under the age of 18. We do not knowingly collect personal information from children under 18. If we become aware that a child under 18 has provided us with personal information, we will take steps to delete such information.
8. Third-Party Links and Services
The App may contain links to third-party websites or services that are not operated by us. This Privacy Policy does not apply to third-party practices, and we encourage you to review the privacy policies of any third-party service you interact with.
9. Data Breach Notification
In the event of a data breach that may compromise your personal information, we will:
- • Notify affected users within 72 hours of discovery
- • Provide details about what information was affected
- • Explain steps we're taking to address the breach
- • Offer guidance on protecting your information
- • Report to relevant authorities as required by law
10. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. If we make material changes, we will notify you by revising the date at the top of the policy and, in some cases, we may provide additional notice (such as adding a statement to our homepage or sending you a notification). We encourage you to review the Privacy Policy whenever you access the Services to stay informed about our information practices and the choices available to you.
11. Contact Us
If you have any questions about this Privacy Policy, please contact us at: