We do NOT sell your data. Not now, not ever. Our business model is membership and events, not surveillance.
We do NOT use your photos or profile data to train public AI models. Your face stays yours.
We delete your data 90 days after you leave. We keep it briefly for safety/investigation purposes only, then it is gone forever.
Welcome to want ("we," "our," or "us"). We are committed to protecting your privacy and ensuring you have a safe experience. This policy explains how we collect, use, and protect your data when you use our app and attend our events.
Contact Us: For any privacy questions or to exercise your rights, email us at team@want.london or privacy@want.london.
We collect only what is necessary to connect you with great matches and run safe events.
We use your data to:
We use Artificial Intelligence to help us understand your preferences and suggest better matches. We do NOT use your conversations or photos to train general-purpose AI models (like ChatGPT or Gemini) for the public. Your data is used only within our private ecosystem to improve your personal experience.
We do not sell data. We only share data with trusted tech providers who help us run the service ("Data Processors"). We have strict contracts with them to ensure they protect your data.
| Category | Purpose | Service Provider(s) |
|---|---|---|
| Hosting & Database | Securely storing your data | Supabase (London/EU), Vercel |
| Identity & Auth | Logging you in & verifying you | Clerk (Auth), Sumsub (ID Verification) |
| Events & Ticketing | Processing event tickets | Ticket Tailor |
| Analytics | Improving app experience | PostHog (EU-Hosted), Vercel Analytics |
| Communications | Push alerts, emails, SMS | OneSignal |
| Payments | Processing transactions | Stripe |
| AI Providers | Generating profiles/matches | Azure OpenAI (Microsoft), Vercel AI SDK, Google Gemini |
When you purchase a ticket, you are entering data into Ticket Tailor, who acts as a "Data Processor" on our behalf. We remain the "Data Controller," meaning we are responsible for your data. Payment details are processed directly by Stripe and are not stored on our servers.
We keep your data as long as your account is open.
When you request deletion, we retain your data for 90 days before permanently deleting it. This is a safety measure to effectively investigate any reports of harassment or criminal activity that may arise after a user leaves.
Verification data (via Sumsub) may be kept for legal compliance periods as required by UK law.
You have the right to:
We take security seriously and utilize a "defense in-depth" approach:
Usage data stored in Supabase's London region eu-west-2 to ensure data sovereignty.
All data encrypted in transit TLS and at rest AES-256.
Regular security reviews and automated vulnerability scanning.
If a high-risk data breach occurs, we pledge to notify affected users within 72 hours.
We may update this policy. If we make big changes, we will notify you in the app.