Privacy Policy
Last updated: June 1, 2026
Spavra Inc. ("we", "us", or "our") operates the Spavra mobile application (the "App") and the website https://spavra.com (the "Website"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our App and Website.
By using the App or Website, you agree to the collection and use of information in accordance with this policy. If you do not agree, please do not use our services.
1. Information We Collect
1.1 Account and Device Information
- Account Sign-In Data: When you sign in with Apple or Google, we receive a unique account identifier through Firebase Authentication. Depending on your sign-in provider, we may also receive your email address, display name, and profile photo.
- Device Information: Device model, operating system version, app version, language settings, and time zone.
- Usage and Event Data: We collect information about screens viewed, features used, subscription actions, moderation actions, and support activity to operate and improve the service.
- Diagnostics and Security Data: We may collect diagnostic, abuse-prevention, and account-security information to keep the App stable and safe.
- Tracking and Attribution Data: If you allow tracking on iOS, we may use limited app event and attribution data through our measurement partners for campaign measurement and performance analysis.
1.2 Information You Provide
- Profile Content: Display name, profile headline, bio, city, area, interests, and any profile photos you upload.
- Connections and Messages: Connection requests, mutual conversations, meetup participation, and moderation reports you submit inside the App.
- Meetup Details: Titles, descriptions, categories, area details, and related participation records for meetups you create or join.
- Verification Selfies: If you request member verification, we collect the selfie image you submit for review.
- Support Requests: If you contact us through the App or by email, we may collect your email address, message content, account ID, and app version details needed to respond.
1.3 Information Collected with Your Permission
- Location Data: If you allow location access, we may collect your current latitude, longitude, and approximate accuracy to show nearby people and local activity.
- Photo Library and Camera Access: If you choose to upload profile photos or a verification selfie, we access the selected images or camera capture you provide.
- Push Notification Token: If you opt in to push notifications, we receive your device's push notification token to send updates and support replies.
1.4 Subscription Information
When you subscribe to premium features, your payment is processed entirely by Apple through the App Store. We do not receive or store your credit card number, billing address, or Apple ID credentials. We only receive your subscription status (active, expired, or cancelled) and the plan type through our subscription management partner.
1.5 Information We Do NOT Collect
- We do not access your contacts, microphone, or calendar.
- We do not receive your raw credit card number, banking details, or Apple ID password.
- We do not sell your personal data or allow third parties to use it for their own advertising.
2. How We Use Your Information
We use collected information exclusively to:
- Provide, operate, and maintain the App and its features
- Show your profile and meetup content to other eligible users inside the service
- Show nearby members and local activity when you enable location access
- Process connection requests, conversations, reports, and moderation actions
- Process and manage your subscription status
- Review verification selfie submissions when you request verified status
- Send push notifications (only with your explicit consent)
- Measure app performance, attribution, and campaign effectiveness when permitted by iOS settings
- Analyze usage patterns to improve the App
- Diagnose technical issues and fix bugs
- Respond to your support requests
- Comply with legal obligations
3. Third-Party Services
We use the following third-party services that may collect data on our behalf:
| Service | Purpose | Data Collected | Privacy Policy |
|---|---|---|---|
| Apple App Store | App distribution, in-app purchases | Purchase transactions | Apple Privacy |
| Firebase (Google) | Authentication, analytics, push notifications | Account identifier, usage events, device info, push token | Firebase Privacy |
| Meta SDK | Attribution and app event measurement when tracking is allowed | Limited app event data, device/app data, advertising identifiers when permitted | Meta Privacy |
| Adapty | Subscription management | Account identifier, subscription status | Adapty Privacy |
4. Data Storage and Security
Profile content, conversation data, meetup data, moderation records, verification data, location-sharing records, and subscription status are stored on our backend systems so the service can function across sessions and devices.
Anonymized analytics data is stored on Firebase servers located in the United States, protected by Google's enterprise-grade security measures including encryption in transit (TLS) and at rest.
While we implement commercially reasonable security measures, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security.
5. Data Retention
- Analytics data: Retained for 14 months, then automatically deleted by Firebase.
- Profiles, connections, messages, meetup records, and location-sharing records: Retained while your account remains active and for a limited period afterward for safety, fraud prevention, and support handling.
- Reports and moderation records: Retained as needed to investigate abuse, enforce our rules, and satisfy legal obligations.
- Verification selfie submissions: Retained while your verification request is under review and afterward as needed for safety, fraud prevention, and compliance.
- Subscription data: Retained as long as your subscription is active, plus 90 days after expiration.
- Support emails: Retained for up to 2 years after the last interaction.
- Push notification tokens: Removed or replaced when they become invalid, when you revoke notification permission, or when your account is deleted.
6. Your Rights Under GDPR (European Users)
If you are located in the European Economic Area (EEA), you have the following rights:
- Right of Access: Request a copy of the data we hold about you.
- Right to Rectification: Request correction of inaccurate data.
- Right to Erasure: Request deletion of your data ("right to be forgotten").
- Right to Restriction: Request that we limit processing of your data.
- Right to Data Portability: Receive your data in a structured, machine-readable format.
- Right to Object: Object to processing of your data for certain purposes.
- Right to Withdraw Consent: Withdraw consent at any time where processing is based on consent.
To exercise any of these rights, contact us at support@spavra.com. We will respond within 30 days.
Account and data deletion steps are also available at https://spavra.com/delete-account.
Legal Basis for Processing (GDPR Article 6): We process data based on (a) your consent, (b) performance of a contract (providing the App service), and (c) our legitimate interests (improving the App).
7. Your Rights Under CCPA (California Users)
If you are a California resident, you have additional rights under the CCPA:
- Right to Know: You can request what personal information we collect, use, and disclose.
- Right to Delete: You can request deletion of your personal information.
- Right to Opt-Out: You can opt out of the sale of personal information. Note: we do not sell personal information.
- Right to Non-Discrimination: We will not discriminate against you for exercising your privacy rights.
8. Children's Privacy
Our App is not directed to children under the age of 13 (or 16 in the EEA). We do not knowingly collect personal information from children. If you believe we have inadvertently collected data from a child, please contact us immediately and we will delete the information.
9. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence, including the United States. These countries may have different data protection laws. We ensure appropriate safeguards are in place, including Standard Contractual Clauses where required.
10. Push Notifications
We may send push notifications to provide reminders, tips, and updates. You can opt out at any time through your device's Settings > Notifications > Spavra.
11. Moderation and Safety Processing
Because Spavra includes user-generated content, we may review profiles, photos, messages, meetup details, and reports to investigate abuse, spam, harassment, or other safety issues. This can include automated checks and manual review by our operations team.
12. Analytics Opt-Out
You can limit tracking-related measurement by denying or later disabling tracking in iOS (Settings > Privacy > Tracking). Some core product analytics, security, and operational events may still be processed to run, secure, and improve the service.
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on this page and updating the "Last updated" date. For significant changes, we may also notify you through the App. Your continued use of the App after changes constitutes acceptance of the updated policy.
14. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy, contact us:
- Email: support@spavra.com
- Website: https://spavra.com/support
© 2026 Spavra Inc.. All rights reserved.