Privacy Policy
Effective Date: April 10, 2026
Your privacy is fundamental to how we built Haya Connect.
1. Information We Collect
We collect the following categories of information:
- Account information: name, email, gender, date of birth
- Profile data: photos, biography, religious practice, marriage preferences
- Verification data: selfie photos and optionally government ID — deleted immediately after review
- Usage data: swipes, messages sent, profile views, login activity
- Device data: IP address, device type, browser type, operating system
- Location data: city-level only — we do not collect or store GPS coordinates
2. How We Use Your Information
- To operate the matchmaking and connection service
- To verify your identity and prevent fraud and fake profiles
- To send notifications about matches and messages (with your consent)
- To improve our service through aggregated, anonymised analytics
- We NEVER sell your personal data to third parties for any purpose
3. Data Sharing
- Other users see only your public profile information as configured by your privacy settings
- Verification photos are reviewed exclusively by gender-matched moderators (sisters review sisters, brothers review brothers)
- Payment processors handle subscription billing — we do not store payment card details
- Firebase and Google Cloud provide our infrastructure under strict data processing agreements
- We do not share data with advertising networks or data brokers
4. Data Retention
- Active accounts: profile data is retained while your account remains active
- Deleted accounts: all personal data is permanently deleted within 30 days of account deletion
- Verification photos: deleted immediately after the verification review is complete
- Messages: deleted when a match connection is ended by either party
- Anonymised analytics may be retained longer for service improvement purposes
5. Your Rights (GDPR / CCPA)
Depending on your jurisdiction, you have the right to:
- Access: request a copy of all personal data we hold about you
- Deletion: request permanent deletion of your account and all associated data
- Portability: receive your data in a structured, machine-readable format
- Correction: update or correct inaccurate personal information
- Restriction: limit how we process your data in certain circumstances
- Objection: object to processing of your data for certain purposes
- To exercise these rights, email privacy@hayaconnect.com
6. Security
We implement industry-standard security measures including encryption of data in transit (TLS) and at rest, strict access controls, multi-factor authentication for administrative access, and regular security reviews. No system is perfectly secure; if you discover a vulnerability please contact security@hayaconnect.com.
7. Children's Privacy
Haya Connect is strictly for adults aged 18 and over. We do not knowingly collect personal information from anyone under 18. If we become aware that a user is underage, we will immediately delete their account and all associated data.
8. Cookies & Tracking
- We use only essential cookies necessary to operate authentication and session management
- We do not use advertising trackers, third-party analytics cookies, or fingerprinting
- Firebase Analytics is used in anonymised form to understand how features are used
- You can clear cookies at any time through your browser settings
9. International Data Transfers
Haya Connect is operated from the United States. Your data may be processed on Firebase infrastructure in multiple regions globally. All transfers are conducted under appropriate legal frameworks including Standard Contractual Clauses where required.
10. Contact & Data Protection
For privacy inquiries or to exercise your rights, contact us at: privacy@hayaconnect.com