# CheckIn Privacy Policy
Last updated: 3 September 2026
Effective: 3 September 2026
Version: 4
This policy explains what CheckIn collects, why we use it, who helps us provide the service, how long information is kept, and the choices you have. If anything is unclear, email contact@checkin-chicken.com.
## 1. Who we are
CheckIn (“we”, “us”, “our”) operates the CheckIn dating service. We decide how the personal information described in this policy is used. Contact us at contact@checkin-chicken.com.
## 2. Information we collect
We collect information you provide, including your email address or phone number, date of birth or age, name, gender, dating preferences, precise device location and the place label derived from it, photos, bio, interests, optional Instagram details, and support messages.
We also collect activity such as likes, passes, matches, Check-Ins, chat messages—including GIFs and voice notes—contact-sharing choices, blocks, reports, safety checks, moderation and verification status, referrals, purchases, credits and entitlements, notification choices, and device registrations.
Our service and providers also receive technical information such as account and session identifiers, IP address, device or app information, call connection metadata, timestamps, analytics, audit records, and error or security events.
## 3. How we use your information
We use this information to create and secure your account; build and show profiles; provide likes, matches, chat, Check-Ins and calls; verify identity; deliver notifications; process and restore purchases; operate referrals; provide support; investigate reports; prevent fraud and abuse; enforce our rules; understand and improve service performance; and comply with law.
## 4. Legal bases under UK and EU GDPR
Depending on the processing, we rely on performing our contract with you, our legitimate interests in operating and protecting CheckIn, your consent where we ask for it, and compliance with legal obligations.
Where information such as identity evidence may reveal sensitive data, the verification provider handles it under the permissions and legal bases presented in its flow.
You can withdraw consent, but that does not affect earlier lawful use.
## 5. Profiles, discovery, and other users
Other users can see the profile information the app presents to them, such as your name, age, photos, bio, interests, location information, and verification badge.
Matches can also see information and content you share through matching, Check-Ins, and chat.
If you add Instagram details, they may be shown in the app as explained when you add or share them.
Do not put information in your profile or messages that you do not want the intended users to see.
## 6. Identity verification
Stripe Identity runs the identity-verification flow and receives the document images, selfie, and information you submit to it.
CheckIn receives and stores a Stripe verification-session identifier, status, and verification time. CheckIn does not receive or store the raw identity document or selfie.
Stripe applies its own retention and privacy terms to information it holds.
## 7. Calls and communications
CheckIn does not record or store the audio or video content of calls.
Calls use peer-to-peer WebRTC and may be carried directly between devices or relayed through Cloudflare, with Twilio as a backup relay, when a direct connection is unavailable.
Relay providers handle the network addresses, short-lived technical credentials, and connection metadata needed to carry the live encrypted media stream, but CheckIn does not ask them to record call content.
CheckIn processes call and signalling information needed to connect and end a call, such as participant account identifiers, Check-In identifiers, timing, and connection state.
Chat messages are stored to deliver conversation features. Voice-note audio is scheduled for deletion after three days. A message record may remain to show that the audio expired.
## 8. Payments
Apple or Google processes mobile purchases, and RevenueCat helps CheckIn validate purchases and manage entitlements.
Stripe processes web billing and associated customer and subscription records.
CheckIn receives purchase, product, entitlement, transaction, and limited customer metadata needed to provide paid features and support billing.
We do not receive full payment-card details from these processors.
## 9. Service providers and disclosures
We use service providers to run CheckIn:
- Clerk for authentication
- Stripe for identity verification and web billing
- RevenueCat and the applicable app store for mobile purchases
- Google Maps for turning coordinates into a place label
- Cloudflare as the primary call-relay processor
- Twilio as the backup call-relay processor
- Expo and Apple or Google for push delivery
- Replit-hosted application, PostgreSQL database, and private cloud object-storage services for hosting and storage
- GIPHY for GIF search
- Meta for optional Instagram connection features
These providers receive the information needed for their role and apply their own terms where they act independently.
We may also disclose information to professional advisers, authorities when lawfully required, or a buyer as part of a business reorganisation.
We do not sell personal information or share it for third-party behavioural advertising.
## 10. Storage and security
CheckIn stores application records—such as profiles and precise coordinates, relationships, messages, support, safety, billing metadata, credits, referrals, analytics, and audit history—in PostgreSQL.
Profile photos, imported Instagram photos, generated blurred thumbnails, and voice-note audio are kept separately in private cloud object storage.
Some account tokens and preferences are stored on your device, and providers store information in their own systems.
We use access controls and other technical and organisational safeguards appropriate to the service, but no storage or transmission method can be guaranteed completely secure.
## 11. Retention
We generally keep account, profile, relationship, safety, and service records while your account is open.
Some data has a shorter operational life, including short-lived call credentials and voice-note audio scheduled to expire after three days.
Account deletion removes user-linked first-party records from our active systems, including support, chat, contact-sharing, media, notification, and event records.
Backup copies and records held independently by providers—including completed payment transaction records where a provider must retain them by law—may remain until their normal deletion cycles or legal retention periods end.
Retention therefore varies by record and provider.
## 12. Account deletion
You can start account deletion in Settings.
This removes the account and all user-linked first-party active records, including profile, relationship, communication, support, contact-sharing, media, notification, purchase-link, referral, analytics, and safety records.
CheckIn also asks connected account providers to delete the associated customer or authentication record where supported.
We do not retain a first-party active account-ban or moderation record after deletion.
Provider records, completed transaction records, and backups may not be deleted immediately where the provider’s normal cycle or legal retention requirement applies.
Contact us if deletion does not complete or you want help with data held by a provider.
## 13. Your choices and rights
You can edit profile information, change notification choices, disconnect optional features, download the CheckIn data available through the automated export, or delete your account in Settings.
Depending on where you live, you may also have rights to access, correct, erase, restrict, port, or object to use of your information, and to complain to a regulator such as the UK Information Commissioner’s Office at [ico.org.uk](https://ico.org.uk).
Email contact@checkin-chicken.com to make a request. We may need to verify the request and will respond within the period required by applicable law.
## 14. International processing
CheckIn and its providers may process information in the United Kingdom, European Economic Area, United States, and other countries where they operate.
Privacy laws in those countries may differ.
Where applicable law requires a transfer safeguard, we or the relevant provider use an approved mechanism or another lawful basis for the transfer.
## 15. Age restriction
CheckIn is for people aged 18 or over.
If we learn that an account belongs to someone under 18, we will investigate and remove it where appropriate.
Report a suspected underage account to contact@checkin-chicken.com.
## 16. Changes and contact
We may update this policy as the service or law changes.
For material updates, we will provide an in-app notice and ask you to review the changes when appropriate.
Privacy questions and requests, and safety reports, can be sent to:

