Privacy Policy
Effective date: January 1, 2025
1. What We Collect
- Account data: name, email address, password (hashed), city, profile photo, and optional phone number.
- Provider data: skills, hourly rates, bio, identity verification status (pass/fail — we do not store raw ID documents).
- Booking data: session date/time, skill type, price, status.
- Communication data: in-app messages between Providers and Seekers.
- Safety data: panic button events (timestamp, GPS point if permission granted), emergency contact phone number.
- Payment data: Stripe handles card processing. We store only transaction IDs and booking amounts — never raw card numbers.
- Usage data: page views, session duration, and feature usage (collected via privacy-friendly analytics).
2. How We Use Your Data
- To create and manage your account.
- To facilitate bookings between Providers and Seekers.
- To process payments securely via Stripe.
- To send transactional emails (booking confirmations, receipts, safety alerts).
- To display your public profile to other users.
- To operate the panic button and contact your emergency contact if activated.
- To detect and prevent fraud, abuse, and Terms violations.
- To improve the platform through aggregated, anonymised analytics.
We do not sell your personal data. We do not use your data for targeted advertising.
3. Who Can See Your Data
Public profile: Your name, photo, city, bio, skills, rating, and verified status are visible to all users.
Booking parties: When you book or are booked, the other party can see your name and photo. Messages between booking parties are private.
Admin team: Authorised GetHumane staff can access account data to resolve disputes and safety issues.
Third-party providers: We share minimal data with Supabase (database & auth), Stripe (payments & identity verification), Resend (transactional email), and Twilio (SMS for panic events). Each is bound by their own privacy policies and data processing agreements.
4. Data Retention
Account data is retained for as long as your account is active. If you delete your account, we delete your personal data within 30 days, except where we are required to retain it for legal or fraud-prevention purposes (e.g., payment records for up to 7 years).
5. Your Rights
Depending on your jurisdiction, you may have rights to:
- Access the personal data we hold about you.
- Correct inaccurate data.
- Request deletion of your data.
- Object to or restrict certain processing.
- Export your data in a portable format.
To exercise any of these rights, email privacy@gethumane.com. We will respond within 30 days.
6. Cookies
We use strictly necessary cookies for authentication (Supabase session tokens) and functional cookies to remember preferences. We do not use tracking or advertising cookies.
7. Children's Privacy
GetHumane is not intended for users under 18. We do not knowingly collect data from minors. If you believe a minor has registered, contact us immediately at privacy@gethumane.com.
8. Security
We implement industry-standard security practices: all data is encrypted in transit (TLS 1.3), passwords are hashed by Supabase Auth (bcrypt), and our database enforces Row Level Security policies so users can only access their own data.
9. Changes to This Policy
Material changes will be communicated via email or in-app notification at least 14 days before they take effect.
10. Contact
Privacy questions: privacy@gethumane.com
GetHumane Inc., 1234 Example Ave, Wilmington, DE 19801, USA