Privacy Policy
Last updated: April 5, 2026
Flayre ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, share, and protect your personal information when you use the Flayre mobile application ("App"). By using the App, you agree to the collection and use of information as described in this policy.
1. Information We Collect
1.1 Account Information
When you create an account, we collect your email address. You may optionally provide a display name, birthdate, gender, and up to three profile photos. We authenticate you via passwordless email magic links and do not store passwords.
1.2 Profile Content
You may provide additional profile information including your interests, an opener text (a short bio visible to other users at the same venue), and profile photos. This information is used to facilitate social features and is visible to other Flayre users as described in Section 3.
1.3 Location Data
We collect precise location data from your device to power venue discovery, real-time crowd levels, and geofencing check-ins. See Section 4 for detailed information about how we handle location data.
1.4 Usage Data
We collect information about how you use the App, including venues you visit (via check-ins), Sparks you send and receive, Flames you participate in, search queries, filter preferences, and features you interact with. This data helps us improve the App and provide personalized experiences.
1.5 Device Information
We collect device tokens for delivering push notifications and may detect UWB (Ultra Wideband) capability to enable the Flame Finder proximity feature. We do not collect device identifiers for advertising purposes.
1.6 Analytics
We may collect anonymized, aggregated analytics data about App usage patterns to improve performance, understand feature adoption, and enhance the user experience. This data cannot be used to identify individual users.
2. How We Use Your Information
We use the information we collect to:
- Venue discovery and busyness display: Show you real-time crowd levels at nearby bars, restaurants, and clubs
- Social matching: Power the Spark and Flame features so you can connect with other users at the same venue
- Proximity features: Enable Flame Finder via UWB to help matched users find each other in person
- Push notifications: Send alerts for busyness changes, incoming Sparks, Flame messages, and other updates
- Gamification: Track XP, badges, streaks, and leaderboard standings
- Geofencing and check-ins: Automatically detect when you enter or exit a venue to provide aggregate crowd data
- Service improvement: Analyze usage patterns to improve features, fix bugs, and develop new functionality
- Account management: Authenticate you, manage your profile, and communicate service-related information
3. How We Share Your Information
3.1 With Other Users
When you are checked in at a venue, other users at the same venue may see your display name, profile photos, interests, and opener text. This is essential to the social matching features of the App. You can control your visibility through your profile settings.
3.2 With Service Providers
We use trusted third-party service providers to operate the App:
- Supabase: Database hosting, user authentication, and real-time data synchronization
- BestTime.app: Venue foot traffic forecasts and busyness predictions (we send venue names and addresses, not user data)
- Apple Push Notification service (APNs): Delivery of push notifications to your device
- Mapbox: Map rendering and display (Mapbox may collect anonymized telemetry data per their own privacy policy)
3.3 We Do Not Sell Your Data
We do not sell, rent, or trade your personal information to third parties for marketing or advertising purposes. We do not participate in data brokerage.
3.4 Legal Requirements
We may disclose your information if required to do so by law, or in response to valid legal process such as a subpoena, court order, or government request. We may also disclose information when we believe in good faith that disclosure is necessary to protect our rights, your safety, or the safety of others.
4. Location Data
Location data is central to the Flayre experience. This section provides detailed information about how we collect and use it.
4.1 Why We Need Location Data
- Venue detection: To show you nearby venues and their real-time crowd levels
- Geofencing: To automatically detect when you enter or leave a venue area, enabling check-in/check-out without manual action
- Flame Finder: To enable UWB proximity detection so matched users can find each other at a venue
- Crowd intelligence: Your anonymized presence at a venue contributes to aggregate busyness data that helps all users
4.2 Permission Levels
Flayre may request two levels of location permission:
- "When In Use": Location is accessed only while the App is open and in the foreground. This enables basic venue discovery and map features.
- "Always": Location is accessed in the background to enable automatic geofence check-ins when you arrive at or leave a venue. This is optional but provides the best experience.
4.3 How to Control Location Access
You can change or revoke location permissions at any time in your device's Settings app under Privacy & Security > Location Services > Flayre. Be aware that:
- Revoking "Always" permission disables automatic check-ins
- Revoking all location access disables venue discovery, the map, and social features
- You can switch between "Always," "While Using," and "Never" at any time
4.4 Anonymization
When your location data is used to contribute to venue busyness levels, it is fully anonymized. We count devices at a venue, not people. No other user can see your precise location. Your check-in history is tied to your account but is not shared with other users in a way that reveals your movements over time.
5. Data Retention
- Account data (email, display name, photos, profile information): Retained until you delete your account
- Check-in history: Retained for gamification (XP, badges, streaks) and anonymized analytics for as long as your account exists
- Flame messages: Ephemeral by design. Messages are deleted when a Flame ends (when either user ends the conversation or leaves the venue)
- Location data: Used for real-time features only. We do not maintain a long-term history of your precise locations. Geofence events are processed in real time and stored only as anonymized venue-level check-in records.
- Analytics data: Aggregated and anonymized analytics may be retained indefinitely as they cannot be linked to individual users
6. Data Security
We take the security of your data seriously. All data transmitted between the App and our servers is encrypted in transit using TLS. Our database uses Supabase's Row Level Security (RLS) to ensure that users can only access data they are authorized to see. We regularly review our security practices and update them as needed. However, no method of electronic transmission or storage is 100% secure, and we cannot guarantee absolute security.
7. Your Rights
You have the following rights regarding your personal information:
- Access: You can request a copy of the personal data we hold about you by contacting us
- Deletion:You can delete your account at any time through the in-app settings (Profile > Delete Account). This will permanently remove your profile data, photos, check-in history, and all associated information
- Push notifications: You can opt out of all push notifications through your device settings at any time
- Location permissions: You can revoke or modify location access at any time through your device settings
- Profile visibility: You can edit or remove your profile content at any time within the App
7.1 California Residents (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA). You have the right to know what personal information we collect, the right to request deletion of your personal information, and the right not to be discriminated against for exercising your privacy rights. We do not sell personal information as defined by the CCPA. To exercise your CCPA rights, contact us at privacy@flayre.app.
8. Children's Privacy
Flayre is not intended for anyone under the age of 18. We do not knowingly collect personal information from children under 18. If we learn that we have collected personal information from a child under 18, we will take steps to delete that information as soon as possible. If you believe a child under 18 has provided us with personal information, please contact us at privacy@flayre.app.
9. Third-Party Links and Services
The App may contain links to third-party websites or services (such as venue websites or directions via Apple Maps). We are not responsible for the privacy practices of these third parties. We encourage you to review the privacy policies of any third-party services you access through the App.
10. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify you through the App or via email. The "Last updated" date at the top of this page indicates when the policy was last revised. Your continued use of the App after changes are posted constitutes your acceptance of the updated policy.
11. Contact Us
If you have any questions or concerns about this Privacy Policy or our data practices, please contact us at: