Dating data is sensitive, and we treat it that way. This policy explains what 35dates ("we," "us") collects, why, who we share it with, and the rights you have under Canada's Personal Information Protection and Electronic Documents Act (PIPEDA). Our approach in one line: we collect the minimum needed to run great dating events, we never sell your data, and your votes are never revealed.
1. What we collect
- Waitlist: your email address, language preference, and (if you provide it) your city.
- Account & profile: email, display name, birthdate (to verify you're 18+ and show your age band), city, languages, a short tagline, and an optional photo.
- Event participation: which events you register for and attend, check-ins, round pairings, and your yes/pass votes.
- Matches & messages: your mutual matches, chats with matches, and your responses to concierge suggestions (including availability you choose to share).
- Payments: your credit balance and purchase history. Card details are collected and stored by Stripe, never by us — we receive only a confirmation and a transaction reference.
- Technical: basic logs (IP address, device/browser type, timestamps) needed for security and to keep the service working.
We do not record your dates. Video and audio during virtual rounds are transmitted in real time and are not recorded by us.
2. How we use it
- To run events: registrations, balanced rooms, pairings, rotation, and match calculation;
- To operate accounts, credits, and payments, and to send essential service messages (confirmations, event reminders, receipts);
- To power features you invoke, such as the second-date concierge (which uses your match's and your shared preferences and availability to generate suggestions);
- To keep the community safe: enforcing our Terms, investigating reports, preventing fraud and banned users from returning;
- To improve the service using aggregate, de-identified statistics (e.g., "what percentage of attendees get a match");
- With your separate consent, to send marketing emails — every one includes an unsubscribe link.
3. The votes promise
Your individual votes (yes or pass) are never shown to any other member — full stop. Other members only ever learn of a mutual match. One-sided votes are never disclosed, and match results are revealed only after an event ends. This is enforced in our database's security rules, not just in the app's design.
4. What we never do
- We never sell or rent your personal information;
- We never share your profile or activity with advertisers or data brokers;
- We never post to your social accounts or contact people in your address book;
- We never disclose who attended an event to anyone outside that event's operation.
5. Who we share with
We use a small number of service providers who process data on our behalf under contractual confidentiality obligations:
- Supabase — our database and authentication provider (hosted in the Montréal, Canada region);
- Stripe — payment processing;
We may also disclose information if required by law (e.g., a court order), to protect the safety of members or the public, or in connection with a business transaction (in which case this policy continues to apply to your data). Other members see only what the product shows them: your first name, age band, tagline, photo where applicable, and — after a mutual match — your match conversation.
6. Where your data lives
Our primary database is hosted in Canada (Montréal region). Some providers (such as Stripe or our AI provider) may process data in the United States or other countries; when they do, your information is subject to the laws of those jurisdictions. We choose providers with strong security and contractual privacy commitments.
7. How long we keep it
- Waitlist emails: until launch in your city plus 12 months, or until you ask us to remove you;
- Account data: while your account is active;
- After account deletion: personal data is deleted or de-identified within 30 days, except what we must keep for legal, tax, or safety reasons (e.g., records of a ban, payment records required by tax law);
- Safety reports: retained as needed to keep banned users out.
8. Your rights (PIPEDA)
You may, at any time:
- Access the personal information we hold about you and ask how it's used and shared;
- Correct inaccurate or incomplete information;
- Withdraw consent (e.g., unsubscribe from marketing) — some withdrawals mean parts of the service can't be provided;
- Delete your account in settings or by emailing privacy@35dates.com;
- Complain — first to us at privacy@35dates.com (we respond within 30 days), and you may also contact the Office of the Privacy Commissioner of Canada.
9. Security
All traffic is encrypted in transit (HTTPS). Passwords are stored only as salted hashes by our authentication provider — we cannot see them. Database access is governed by row-level security rules so members can only access their own data. Payment card data never touches our systems. No system is perfectly secure; if a breach creates a real risk of significant harm, we will notify affected members and the Privacy Commissioner as required by law.
10. Age
35dates is strictly for adults 18+. We do not knowingly collect information from anyone under 18; such accounts are deleted when discovered.
11. Cookies & similar
We use only what's needed to keep you signed in and remember your language preference. We do not use third-party advertising cookies or cross-site trackers.
12. Changes
If we make material changes to this policy, we'll notify you (email or in-app) before they take effect. The effective date above always reflects the current version.
13. Contact us
Privacy Officer
TalentWave IT Inc.