legal

Privacy Policy

What we collect, why we collect it, who handles it, and what the current deletion controls do and do not remove.

Last updated September 20, 2026

Who we are

Stake ("we", "us") is a dating app. This policy covers the Stake mobile app and our published website, and explains what information we handle when you use them. We are the controller of that information. Most privacy controls are available under Settings in the app. For privacy requests, email support@getstake.today.

What we collect

Only what the product needs to work. There is no tracking for advertising.

  • Account details — your email address, username, and password. Passwords are held by Firebase Authentication and hashed there; we never see them.
  • Profile content — the name, birth date, gender, orientation, height, city, bio, photos, and prompt answers you choose to add. Your public profile shows your age and the details you choose to share, not your exact birth date.
  • Verification — if you verify yourself, the selfie you submit and the review outcome.
  • Activity — likes and the comments attached to them, passes, matches, messages, quest and duet answers, your credit balance and transaction history.
  • Safety signals — blocks and reports, including reports you file about other people.
  • Purchases — when you buy credits, Google Play or the App Store processes the payment. We receive a purchase token to verify it. We never receive your card number.
  • Device data — a push-notification token, crash reports, and basic analytics events (which screens are opened, which features are used).
  • Approximate location — when you choose to update your location, the app asks the device for one current reading using a low-accuracy setting. The device may produce a more precise reading temporarily, but Stake rounds latitude and longitude to two decimal places before sending or storing them. That is about 1.1 km for latitude; longitude distance varies by location. We use the rounded position to calculate distance.

We do not collect your contacts, continuously track your location in the background, or collect your browsing outside Stake.

How we use it

  • To run the service — show your profile to people who match your preferences, deliver likes and messages, run matches and their three-day clock, and keep your credit balance correct.
  • To keep people safe — enforce our rules, act on reports, and stop abuse, impersonation, and spam.
  • To notify you — new likes, matches, messages, and match-expiry reminders. You can control these in Stake or in your device settings.
  • To improve Stake — aggregated, de-identified analytics about how features are used, and crash reports so we can fix what's broken.
  • To meet legal obligations — respond to lawful requests and keep records we are required to keep.

We do not sell your personal information, we do not share it for cross-context behavioural advertising, and we do not show third-party ads.

What other users see

Your photos, prompt answers, name, age, and the vitals you filled in are visible to other users while discoverability is on. Turning it off removes you from Discover.

Your email address, your exact birth date, your credit balance, your transaction history, your passes, and any reports you file are never shown to other users. A person you match with sees only what is on your profile plus what you send them.

Who we share it with

Only service providers who process data on our behalf, under contract, for the purposes above:

  • Google Firebase — Authentication (sign-in), Storage (your photos), Cloud Messaging (push), Crashlytics and Analytics.
  • SpacetimeDB — the realtime database holding profiles, likes, matches, messages, and credits.
  • Google Play / Apple App Store — payment processing and receipt verification for credit purchases.

We may also disclose information where the law requires it, or where it is necessary to investigate a credible safety threat.

Where your data lives

Our providers run on cloud infrastructure that may be located outside your country, including in the United States. Where personal data of people in the EEA or UK is transferred, it is covered by the standard contractual clauses our providers have in place.

Photo, voice, and video files are stored in Firebase Storage under owner-write rules. Everything else — profiles, likes, matches, messages, credits — is stored in SpacetimeDB, which holds only the file URL and its metadata, never the file bytes.

Current uploaded-media limitation

The current Storage read rule does not separate public profile photos from chat-media and verification uploads that share the same path. Those uploaded files must not be treated as private until the paths and access rules are separated. This is a known launch blocker.

How long we keep it

  • While your account exists — your profile and activity are kept so the app works.
  • Expired matches — when a match runs out its three days without being made permanent, the match and its conversation are deleted for both people. That is not recoverable.
  • After you delete your account — the in-app flow removes your Firebase sign-in and starts trusted cleanup of your live Stake database records. Cleanup normally follows promptly, but can complete later and retry after an outage. The app makes a best-effort attempt to remove captured profile-photo files.
  • Deletion safeguards — we retain minimal former service-identity and Firebase user-ID tombstones with deletion times to prevent delayed connections or provider-ID reuse from recreating a deleted account. They do not contain your profile, email address, password, messages, or media.
  • Uploaded-file limitation — chat-media files and verification uploads can remain in Firebase Storage after their database records are removed. Broader file deletion is not guaranteed in this build. See Deleting your data for the exact boundary.
  • Residual copies — copies inside our providers' routine backups and server logs age out on those providers' own rolling schedules.

Deleting your data

You can delete your account and live database records from inside the app at any time — Settings → Delete account — without contacting us. This does not yet guarantee deletion of every uploaded media file. The deletion page explains what is removed, what can remain, and what to do if you no longer have the app installed.

Your rights

Depending on where you live, you may have the right to access, correct, export, restrict, or delete your personal information, to object to certain processing, and to withdraw consent.

Some of these controls are available directly in the app: edit or delete profile fields, turn off discoverability, or delete your account and live database records. The current flow does not guarantee deletion of all uploaded media files. A self-service export is not yet available. Send privacy requests to support@getstake.today. We may need to confirm account ownership before acting. If you are in the EEA or UK you also have the right to complain to your local data protection authority.

Security

Data is encrypted in transit. Sign-in is handled by Firebase Authentication, so we never store your password. Your photos are written under rules that only permit you to write to your own folder, and per-user data is exposed only through queries scoped to your own identity — not as one shared, subscribable table.

No system is perfectly secure. If we discover a breach affecting your personal data, we will notify you and the relevant regulator as the law requires.

Age

Stake is for adults. You must be 18 or older to create an account. We do not knowingly collect information from anyone under 18 — if we find such an account, we remove it. If you believe a minor is using Stake, use our published child-safety contact and we will act.

Changes

If we make material changes to this policy we will update this page, change the date at the top, and give notice in the app before the changes take effect.

Contact

Privacy controls

Use Settings in Stake to correct profile data, turn off discoverability, or delete your account. For privacy questions or requests, email support@getstake.today. The separate address on our child-safety page is reserved for child-safety reports.