Privacy Policy

Last updated: January 2026

ProCuddleTherapy ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform.

1. Information We Collect

1.1 Information You Provide

  • Account Information: Name, email address, password (hashed), phone number, profile photo
  • Profile Information: Bio, style preferences, tagline (for companions), display name
  • Identity Verification: Government-issued ID (for companion verification)
  • Payment Information: Cryptocurrency wallet addresses, transaction history
  • Communications: Chat messages between subscribers and companions, support requests
  • Content Data: Audio listening history, live session attendance, chat transcripts

1.2 Information Collected Automatically

  • Device Information: IP address, browser type, operating system
  • Usage Data: Pages visited, features used, time spent on platform
  • Location Data: Approximate location based on IP address (for analytics and localization)
  • Cookies: Authentication tokens, preferences, analytics (see Cookie Policy below)

2. How We Use Your Information

  • Provide and maintain the platform and services
  • Process subscriptions and payments
  • Verify companion identity and qualifications
  • Facilitate communication between subscribers and companions
  • Deliver audio content, live sessions, and chat features
  • Send subscription confirmations, renewal reminders, and important updates
  • Improve our services and user experience
  • Detect and prevent fraud, abuse, and security issues
  • Comply with legal obligations

3. Data Retention

We retain your personal information for as long as necessary to provide our services and fulfill the purposes described in this policy. Specific retention periods:

  • Account Data: Retained until account deletion, then anonymized
  • Subscription Records: 7 years (for tax and legal compliance)
  • Chat Messages: Deleted upon account deletion
  • Payment Records: 7 years (for tax and legal compliance)
  • Audio Content: Retained while companion account is active
  • Profile View Analytics: 90 days
  • IP Geolocation Cache: 30 days
  • Audit Logs: 2 years

4. Information Sharing and Third Parties

We do not sell your personal information. We may share information with:

4.1 Service Providers

  • Amazon Web Services (AWS): Cloud hosting and storage (profile photos, verification documents). Data processed in US-East-1 region.
  • Stripe: Payment processing for subscriptions. See their privacy policy.
  • Google: OAuth authentication (if you sign in with Google). See their privacy policy.
  • MongoDB Atlas: Database hosting. Data encrypted at rest and in transit.
  • Email Service Provider: For sending notifications, booking confirmations, and safety check-ins.

4.2 Other Disclosures

  • Other Users: Your display name is visible to companions. Companions never see your real name, email, or contact information.
  • Emergency Services: We may disclose information to emergency services if we believe there is imminent risk to someone's safety.
  • Legal Requirements: We may disclose information to comply with laws, court orders, or government requests.
  • Safety: We may disclose information to protect the safety of users, the public, or ProCuddleTherapy.

5. Your Rights

Depending on your location, you may have the following rights regarding your personal information:

5.1 All Users

  • Access: View your personal information in your account settings
  • Correction: Update your information through your account settings
  • Deletion: Delete your account through Settings → Delete Account. We will anonymize your data while retaining necessary booking records for legal compliance.
  • Data Export: Request a copy of your data by contacting support

5.2 European Economic Area (GDPR)

If you are in the EEA, you have additional rights including:

  • Right to restrict processing
  • Right to data portability
  • Right to object to processing
  • Right to withdraw consent
  • Right to lodge a complaint with a supervisory authority

Legal bases for processing: Contract performance (providing services), legitimate interests (security, fraud prevention), legal obligations (tax records), and consent (marketing).

5.3 California Residents (CCPA)

California residents have the right to:

  • Know what personal information is collected
  • Know whether personal information is sold or disclosed and to whom
  • Opt-out of the sale of personal information (we do not sell personal information)
  • Request deletion of personal information
  • Not be discriminated against for exercising these rights

6. Cookie Policy

We use cookies and similar technologies for:

  • Essential Cookies: Authentication, security, CSRF protection. These are necessary for the platform to function.
  • Functional Cookies: Remembering your preferences and settings.
  • Analytics Cookies: Understanding how users interact with our platform to improve our services.

You can manage cookie preferences through your browser settings. Disabling essential cookies may prevent you from using the platform.

7. Data Security

  • Passwords are hashed using Argon2id with secure parameters
  • All data is encrypted in transit using TLS/HTTPS
  • Database is encrypted at rest
  • JWT tokens with short expiration for authentication
  • Rate limiting to prevent brute force attacks
  • Regular security audits and monitoring

While we implement strong security measures, no system is 100% secure. We encourage you to use strong, unique passwords and enable two-factor authentication when available.

8. International Data Transfers

Your information may be transferred to and processed in the United States, where our servers are located. If you are in the EEA or UK, we rely on Standard Contractual Clauses approved by the European Commission for such transfers.

9. Children's Privacy

Our platform is not intended for users under 18 years of age. We do not knowingly collect information from children under 18. If we learn we have collected information from a child under 18, we will delete it promptly.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by email or through a notice on our platform. Your continued use of the platform after changes constitutes acceptance of the updated policy.

11. Contact Us

For questions about this Privacy Policy or to exercise your rights, contact us at:

  • Email: privacy@procuddletherapy.com
  • Data Protection Officer: dpo@procuddletherapy.com

We will respond to requests within 30 days (or sooner as required by applicable law).