Privacy Policy
Effective Date: January 1, 2025
Version: 1.0.0
Introduction
Assent Technologies LLC ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information.
Our Service helps adults communicate and document consent for intimate activities. We understand the sensitive nature and have implemented strict security measures.
1. Information We Collect
1.1 Information You Provide
- Account info (email, name, date of birth, username, phone)
- Password (encrypted)
- 4-digit PIN (encrypted with bcrypt)
- Security questions (encrypted)
- Profile photo
- Consent documentation (timestamps, location if enabled, connections)
1.2 Information Collected Automatically
- Device info (type, model, OS, identifiers, IP address)
- Usage data (features used, actions taken, time/frequency)
- Location data (approximate via IP; precise GPS only if you enable)
- Log data (access times, app errors, diagnostics)
1.3 Information from Third Parties
- Firebase Authentication (auth tokens, user IDs)
- App Stores (purchase history)
2. How We Use Your Information
2.1 Provide and Improve the Service
- Create and manage your account
- Enable connections with other users
- Facilitate consent documentation
- Provide customer support
- Personalize your experience
- Analyze usage and improve features
2.2 Security and Safety
- Verify identity
- Detect and prevent fraud
- Protect against security threats
- Enforce Terms of Service
- Monitor for harmful behavior
2.3 Advertising, Analytics, and Business Purposes
IMPORTANT: We may use and share anonymized, aggregated data for:
- Geolocation-based Advertising: Provide location-based advertising insights to third parties
- Market Research: Sell anonymized usage data to advertisers and analytics companies
- Business Intelligence: Generate statistical reports about user behavior
- Monetization: Share aggregated data with business partners for advertising purposes
Anonymized Data Means:
- No personally identifiable information (name, email, phone)
- Data is aggregated with other users
- Individual users cannot be identified
- Location data is generalized (city/region, not precise coordinates)
Examples:
- "X% of users in Los Angeles use features between 8-10 PM"
- "Users aged 25-34 in urban areas show Y% engagement"
- "Aggregate connection patterns in specific regions"
We DO NOT sell:
- Your name, email, or phone number
- Specific consent records
- Messages between users
- Precise location data that identifies you
3. How We Share Your Information
3.1 What We DO NOT Share
- Personally identifiable information (name, email, phone)
- Specific consent records
- Your precise location
- Any data that identifies you individually
3.2 Information Shared With Other Users
Visible: Profile info (name, username, age, photo), connection status
NOT Shared: Email, phone, DOB, PIN, security questions, device info
3.3 Service Providers
- Cloud hosting (AWS, Google Cloud, Heroku)
- Database (MongoDB)
- Authentication (Firebase)
- Analytics (Firebase Analytics)
- Customer support tools
3.4 Anonymized and Aggregated Data
We share anonymized, aggregated data with:
- Advertisers (for geolocation-based insights)
- Analytics companies (for market research)
- Business partners (for product development)
- Academic researchers (for studies on consent communication)
This data cannot identify you and may include:
- Demographic trends (age groups, regions)
- Usage statistics (popular features, engagement)
- Geolocation insights (user density, regional patterns)
3.5 Business Transfers
If we merge, are acquired, or go through bankruptcy, your info may be transferred.
3.6 Legal Requirements
We may disclose your info if required by law, court order, or to protect safety.
4. Data Security
Encryption:
- All data in transit: TLS/SSL
- Data at rest: AES-256
- PIN: bcrypt with salt
- Passwords: Firebase Authentication (never plain text)
Access Controls:
- Limited employee access
- Multi-factor authentication
- Regular security audits
- Strict logging
Infrastructure:
- Secure cloud hosting
- Firewalls and intrusion detection
- Regular updates
- Data backup
Note: No system is 100% secure. Use strong passwords and keep your PIN confidential.
5. Data Retention
- Active accounts: Retained while account is active
- Consent records: Retained for 7 years (for legal protection)
- Deleted accounts: Profile deleted immediately; most data deleted within 30 days; consent records anonymized after 1 year
- Backups: May remain for up to 90 days
6. Your Privacy Rights
6.1 Access and Portability
- Request a copy of your personal data
- Receive data in machine-readable format
6.2 Correction
- Update your profile anytime
- Request correction of inaccurate data
6.3 Deletion
- Delete your account through settings
- Request deletion of specific information (subject to 7-year retention of consent records)
6.4 Opt-Out
- Push notifications (app/device settings)
- Email communications (unsubscribe)
- Location tracking (device settings)
- Analytics (app settings, where available)
To exercise rights: Settings > Privacy > Data Rights, or email privacy@safeassent.app
7. Children's Privacy
Service is NOT for users under 18. We do not knowingly collect data from minors. If discovered, we immediately delete all information.
Report minors to: privacy@safeassent.app
8. International Data Transfers
We are based in the United States. Your data may be transferred to and processed in the U.S. and other countries. We use standard contractual clauses (for EU users) and ensure adequate safeguards.
By using the Service, you consent to international data transfers.
9. California Privacy Rights (CCPA)
California residents have additional rights:
- Right to Know: What data we collect and how we use it
- Right to Delete: Request deletion (subject to exceptions)
- Right to Opt-Out: We do NOT sell personal information as defined by CCPA (anonymized data sharing does not qualify as a "sale")
- Right to Non-Discrimination: We won't discriminate for exercising rights
To exercise: Email privacy@safeassent.app with "California Privacy Rights" in subject.
10. European Privacy Rights (GDPR)
EEA/UK/Switzerland residents have additional rights:
Legal Basis:
- Consent (e.g., for location data)
- Contract performance (to provide Service)
- Legal obligation
- Legitimate interests (fraud prevention, analytics)
Rights:
- Access, rectify, erase data
- Restrict or object to processing
- Data portability
- Withdraw consent
- Lodge complaint with data protection authority
Contact DPO: dpo@safeassent.app
11. Changes to This Privacy Policy
We may update this policy. We'll notify you of material changes via:
- Email
- In-app notification
- Prominent notice
Continued use after changes = acceptance.
12. Do Not Track
Some browsers send "Do Not Track" signals. We currently do not respond to these signals.
13. Data Monetization Disclosure
To be completely transparent:
We may generate revenue by:
- Sharing anonymized, aggregated user data with advertisers and analytics companies
- Providing geolocation-based insights for targeted advertising
- Selling market research data that includes usage patterns and demographic trends
What this means for you:
- Companies may receive insights like "users in NYC tend to use the app on weekends"
- Advertisers may target ads based on regional trends
- Your individual identity is NEVER revealed
- Your specific consent records are NEVER shared
- You cannot opt out of anonymized data sharing, but you can delete your account
Why we do this:
- It helps us keep the Service affordable or free
- It funds ongoing development and improvements
- It allows us to operate sustainably
We believe in transparency. If you're uncomfortable with anonymized data sharing, this Service may not be right for you.
14. Contact Information
Privacy Questions: privacy@safeassent.app
Legal Questions: legal@safeassent.app
Support: support@safeassent.app
Website: https://www.safeassent.app
Response Time: Within 30 days for privacy requests; 48 hours for general inquiries.
Acknowledgment
BY USING ASSENT, YOU ACKNOWLEDGE:
✓ You understand how we collect and use your data
✓ You consent to anonymized data sharing for advertising and analytics
✓ You understand we do NOT sell personally identifiable information
✓ You have rights to access, correct, and delete your data
✓ You can delete your account at any time
Document Version: 1.0.0
Last Modified: January 1, 2025
Effective Date: January 1, 2025