Prying Privacy Policy
Last updated: August 9, 2026
Prying is a proximity network: it connects you with people you crossed paths with in real life, only if you both want it. Privacy isn't an appendix to this app: it's its architecture. This policy explains, with no fine print, what data we use, what for, how long it lives and how you control it.
Data controller: Prying — pryingapp@gmail.com (Argentina). For any question or to exercise your rights, write to us at that address. Prying is in closed beta and is operated by an individual: their full identification is available to anyone who requests it at that same address.
1. What data we collect and what for
| Data | What it's used for | Source |
|---|---|---|
| Creating your account, verifying it with a code and letting you know what matters | You enter it | |
| Name, nickname, profile photo, bio | Your profile. The photo is the key to recognition ("that's the person from the café!") | You upload it |
| Social networks (username and link) | The prize of a match: they are revealed ONLY when two people choose each other | You add them and you choose which ones |
| Location (GPS), including in the background | The core feature: detecting crossings with other users near you and triggering sparks. Without this, Prying doesn't work | Your phone's sensor, with your permission |
| Anonymous Bluetooth signals | Detecting proximity indoors. A random code is broadcast and rotates every 15 minutes: it doesn't identify your phone and doesn't allow anyone to track you | Your phone, with your permission |
| Chat messages (text, photos and documents) | So you can talk to your matches and share photos, documents and your social networks inside the conversation | You send them |
| Notification token (FCM) | Notifying you about matches, sparks and messages | Google generates it when you grant permission |
| Usage metrics (anonymous events via Firebase Analytics) | Understanding what works in order to improve the app | Your use of the app |
What we do NOT do: we don't sell or rent your data; we don't show advertising; we don't share your exact location with other users (they see approximate distance or a coarse area of about 110 m); we don't access your contacts or the list of apps installed on your phone.
Your photo and facial recognition: when you pick a profile photo, the check that there is a face in it is done WITH YOUR OWN PHONE'S TECHNOLOGY (on-device). No biometric data leaves your device or is stored on our servers; we only keep the image you chose as your profile photo.
2. The guiding principle: double consent
Nobody gets access to your identity or your social networks without reciprocity. Before the match, other people only see your photo (what they already saw in real life) and, if there was a spark, your nickname. Geolocated sparks are anonymous until you return them. Your exact position is never shown to anyone.
3. How long data lives (exact retention periods)
Prying is ephemeral by design. An automatic cleanup runs every day:
| Data | Lifespan |
|---|---|
| Detected crossings | 24 hours |
| Sparks received and not answered | Visible for 24 hours; the record is deleted after 7 days |
| Location traces ("presence crumbs") | 72 hours |
| Dismissed crossings | 48 hours |
| Email verification codes | Valid for 5 minutes; purged after 24 hours |
| Current location | Only the last reported position is kept, and it becomes irrelevant after 10 minutes |
| Photos and documents sent in the chat | They live with the conversation: they are deleted from the server when the message is deleted ("Delete for everyone"), when the match is deleted (deletion applies to both) or when the account is deleted |
| Matches, chats, profile and social networks | As long as you keep your account, or until you delete the match (deletion applies to both and removes the history between the two of you) |
| Technical backups | Up to 14 days, only for recovery in case of failures |
4. Legal basis
We process your data on the basis of your consent (when you create your account and grant location, Bluetooth and notification permissions) and of the performance of the service you ask us for by using Prying. You can withdraw your consent at any time by turning off your phone's permissions, switching to invisible mode or deleting your account.
5. Who data is shared with
With no one, except the technical providers that are essential to operate:
- Server infrastructure (Hetzner, Germany): hosts the database and the backend, under HTTPS encryption.
- Google Firebase (push notifications and anonymous usage metrics).
- Google Sign-In (only if you choose to sign in with Google: we receive your email and the name on that account; never your password).
No third party receives your data for advertising or marketing. There is no sale of data. We would only hand over information in response to a valid court order.
6. Your rights
You have the right to access, correct, update and delete your data (rights recognized by Argentina's Ley 25.326 on the Protection of Personal Data and, if you are in the European Union, by the RGPD (GDPR)):
- Access and correction: your profile can be edited from the app.
- Invisible mode: from your profile you can disconnect whenever you want; you stop being detectable instantly.
- Account deletion: from the app (Profile → Delete account) or from the web at /eliminar-cuenta with a code sent to your email. In both cases the deletion of ALL your data (profile, social networks, matches, chats, traces) is immediate, total and automatic, with no human intervention. Backups rotate and disappear on their own within the following 14 days.
- Portability: you can ask us for a copy of your data in a machine-readable format.
The Agencia de Acceso a la Información Pública (Argentina's data protection authority) is the supervisory authority you can complain to (www.argentina.gob.ar/aaip).
7. Security
All communication travels encrypted (HTTPS/TLS). Passwords are stored hashed with bcrypt (never in plain text). Bluetooth access uses anonymous rotating codes. We apply anti-abuse limits on the server and purge expired data daily.
8. Minimum age
Prying is for people over 18. We don't knowingly create accounts for minors; if we detect one, we delete it along with its data.
9. Changes to this policy
If we change anything relevant, you'll see it on this page with the update date and, if the change is substantial, we'll tell you in the app.
10. Contact
Prying — pryingapp@gmail.com — Argentina.