Privacy Policy
Effective Date: July 24, 2026
1. INTRODUCTION
Welcome to GotYou.
Your privacy is important to us. This Privacy Policy explains how GotYou collects, uses, stores, shares and protects personal data when you use our mobile application, website and related services (collectively, the "Services").
We believe that transparency is an essential part of protecting personal information. This Privacy Policy is intended to explain, in clear and understandable language, what information we collect, why we collect it, how we use it, who we share it with, how long we keep it and what rights you have under applicable data protection laws.
This Privacy Policy applies whenever you:
create a GotYou account;
browse or use the Services;
purchase Premium features;
communicate with other users;
contact customer support;
visit our website;
otherwise interact with GotYou.
This Privacy Policy forms part of your relationship with GotYou and should be read together with our Terms of Service and any other policies referenced within the Services.
Nothing in this Privacy Policy limits any rights granted to you under applicable data protection legislation.
1.1 Adults Only
GotYou is intended exclusively for individuals who are at least eighteen (18) years of age.
We do not knowingly collect personal data from children.
If we become aware that a person under the age of 18 has created an account or provided personal information through the Services, we may suspend or permanently remove the account and delete the associated personal data, subject to any legal obligations requiring retention.
1.2 Scope
This Privacy Policy applies to all personal data processed by GotYou in connection with the Services, regardless of whether the information is collected:
directly from you;
automatically through your use of the Services;
from your device;
from Apple or Google in connection with purchases;
from service providers;
through communications with customer support;
through reports submitted by other users where relevant.
This Privacy Policy does not apply to third-party websites, applications or services that operate independently from GotYou, even where they may be linked within the Services.
Those third parties remain responsible for their own privacy practices.
1.3 Changes to this Privacy Policy
GotYou may update this Privacy Policy from time to time to reflect:
changes in applicable law;
new features;
changes in our Services;
security improvements;
operational changes;
regulatory guidance.
Where legally required, we will notify Users before material changes become effective.
The "Last Updated" date at the beginning of this Privacy Policy indicates the most recent revision.
Your continued use of the Services following the effective date of an updated Privacy Policy constitutes acknowledgement of the revised Policy, except where applicable law requires another form of consent.
2. DATA CONTROLLER
For the purposes of the General Data Protection Regulation (EU) 2016/679 ("GDPR") and other applicable data protection laws, the data controller responsible for the processing of personal data through GotYou is:
Majerszki Nikolett Sole Proprietor (Individual Entrepreneur)
Registered Address
3351 Verpelét Kossuth út 39. Hungary
Registration Number
54603222
Tax Number
55861362-1-30
Privacy Contact
hello@thegotyou.com
2.1 Contacting Us
If you have questions regarding this Privacy Policy or the processing of your personal data, you may contact us at any time.
General privacy enquiries, requests to exercise your legal rights and complaints relating to personal data should be sent to:
Email: hello@thegotyou.com
We aim to respond to requests without undue delay and within the time periods required by applicable law.
2.2 Data Protection Compliance
GotYou processes personal data in accordance with:
Regulation (EU) 2016/679 (General Data Protection Regulation – GDPR);
applicable Hungarian data protection legislation;
the Hungarian Act CXII of 2011 on Informational Self-Determination and Freedom of Information, where applicable;
the EU Digital Services Act, where relevant;
applicable consumer protection legislation;
any other applicable data protection laws governing the Services.
Where local laws grant Users additional rights beyond those described in this Privacy Policy, those rights remain unaffected.
2.3 Representative and Data Protection Officer
Based on the current size and organisational structure of GotYou, a formal Data Protection Officer (DPO) has not been appointed because such appointment is not currently required under Article 37 GDPR.
Privacy matters are handled directly by the Data Controller.
Should the appointment of a Data Protection Officer become legally required in the future, this Privacy Policy will be updated accordingly.
2.4 Supervisory Authority
If you believe that your personal data has been processed in violation of applicable data protection law, you have the right to lodge a complaint with the competent supervisory authority.
If you reside within the European Economic Area, you may generally lodge a complaint with the supervisory authority in:
your country of habitual residence;
your place of work; or
the place where the alleged infringement occurred.
This right exists in addition to any other administrative or judicial remedies available under applicable law.
5. WHY WE PROCESS YOUR PERSONAL DATA
GotYou processes personal data only where there is a legitimate and clearly defined purpose for doing so.
The purposes described below explain why we collect and use your personal information. Depending on how you use the Services, not every processing activity described in this Privacy Policy will apply to you.
The following table provides an overview of the principal processing activities carried out by GotYou.
| Processing Purpose | Categories of Personal Data | Purpose of Processing |
|---|---|---|
| Account creation and management | Account information, authentication credentials | To create, maintain and secure your GotYou account. |
| Identity verification | Date of birth, verification information (where applicable) | To verify eligibility and prevent underage access. |
| Providing the Services | Profile information, account information, device information | To enable you to use the core features of GotYou. |
| Nearby feature | Location information | To display nearby Users and calculate approximate distances. |
| Background location | Location information | To maintain location-based functionality where permitted by your device settings and preferences. |
| Messaging | Messages, media attachments, timestamps | To deliver communications between Users. |
| Priority Messages | Message content, delivery information | To provide Priority Message functionality and maintain service integrity. |
| Premium subscriptions | Purchase information, subscription status | To activate and manage Premium features. |
| Customer support | Contact information, support requests | To respond to enquiries and resolve technical or account-related issues. |
| Platform safety | Reports, moderation records, device information | To detect, investigate and prevent fraud, abuse and violations of our Terms of Service. |
| Security | Device identifiers, IP address, login history | To protect the Services against unauthorised access and malicious activity. |
| Analytics | Usage information, technical information | To understand how the Services are used and improve functionality. |
| Notifications | Device token, account preferences | To send service-related notifications and alerts. |
| Legal compliance | Account information, transaction records, moderation records | To comply with legal obligations, regulatory requirements and lawful requests. |
| Record keeping | Transaction records, support records | To maintain business, tax and accounting records. |
5.1 Providing the Services
The primary reason we process personal data is to provide the Services requested by our Users.
Without processing certain information, many core functions of the platform—including account creation, matching, messaging, Premium subscriptions and Nearby functionality—would not operate.
5.2 Improving the Services
We continually evaluate how Users interact with GotYou in order to improve the stability, usability, accessibility and security of the Services.
This may include analysing anonymous or aggregated usage trends, identifying software defects, improving user experience and introducing new features.
Where reasonably possible, statistical analysis is performed using aggregated or de-identified information.
5.3 Platform Safety
Protecting our Users is one of our highest priorities.
We process personal data to:
investigate reports;
detect abusive behaviour;
prevent spam;
identify fraudulent activity;
enforce our Terms of Service;
enforce our Community Guidelines;
respond to safety incidents;
prevent misuse of the Services.
This processing helps maintain a safe environment for all Users.
5.4 Communications
We process messages and related communication data in order to:
deliver messages;
display conversations;
support messaging features;
investigate reports;
comply with legal obligations;
improve platform security.
Processing message data does not mean that messages are routinely reviewed by human personnel.
Access to message content is limited to circumstances where reasonably necessary, including responding to abuse reports, complying with legal obligations or protecting the security and integrity of the Services.
5.5 Customer Support
Where you contact us, we process the information necessary to:
verify your account;
understand your request;
resolve technical issues;
investigate reported problems;
respond to complaints;
improve customer support.
5.6 Legal Compliance
Certain processing activities are required in order to comply with legal obligations, including obligations relating to:
accounting;
taxation;
fraud prevention;
consumer protection;
data protection;
court orders;
lawful requests from competent authorities.
Where required by law, personal data may be disclosed to competent authorities.
5.7 Research and Statistics
GotYou may use anonymous or aggregated information to better understand how the Services are used.
Statistical information generated from anonymised data does not identify individual Users and may be used for research, service improvement, capacity planning and business analysis.
6. LEGAL BASES FOR PROCESSING
Where the General Data Protection Regulation ("GDPR") applies, GotYou processes personal data only where a valid legal basis exists under Article 6 GDPR and, where applicable, Article 9 GDPR for special category data.
The legal basis depends upon the specific purpose of the processing.
6.1 Overview of Legal Bases
| Legal Basis | When We Use It |
|---|---|
| Performance of a Contract (Article 6(1)(b) GDPR) | To create your account, provide the Services, process subscriptions, deliver messages and operate platform features. |
| Legal Obligation (Article 6(1)(c) GDPR) | To comply with legal, regulatory, accounting and tax obligations, and lawful requests from authorities. |
| Legitimate Interests (Article 6(1)(f) GDPR) | To improve the Services, ensure platform security, prevent fraud, investigate abuse, maintain system integrity and defend legal claims. |
| Consent (Article 6(1)(a) GDPR) | Where consent is required, such as for certain optional permissions or processing activities under applicable law. |
6.2 Performance of a Contract
Much of the processing carried out by GotYou is necessary in order to fulfil the contract between you and GotYou.
This includes processing required to:
create and maintain your account;
authenticate your identity;
provide Nearby functionality;
enable messaging;
activate Premium subscriptions;
process Priority Messages;
display your profile;
deliver customer support.
Without this processing, the Services could not be provided.
6.3 Legitimate Interests
In certain circumstances, GotYou processes personal data on the basis of its legitimate interests, provided that those interests are not overridden by your fundamental rights and freedoms.
Examples include processing necessary to:
improve platform performance;
prevent fraud;
detect spam;
investigate abuse;
secure user accounts;
monitor service stability;
analyse system performance;
defend legal claims;
maintain internal records.
Where required, GotYou performs an appropriate balancing assessment before relying on legitimate interests.
6.4 Legal Obligations
Certain information must be processed because applicable law requires it.
Examples include obligations relating to:
taxation;
accounting;
consumer protection;
anti-fraud measures;
judicial proceedings;
cooperation with competent authorities.
Processing carried out for these purposes is limited to what is reasonably necessary to comply with applicable law.
6.5 Consent
Where required by applicable law, GotYou will request your consent before processing certain categories of personal data.
Examples may include:
enabling optional device permissions;
receiving marketing communications where consent is required;
using optional cookies or similar technologies on our website;
processing special category personal data where explicit consent is required and no other lawful basis applies.
You may withdraw your consent at any time. Withdrawal of consent does not affect the lawfulness of processing carried out before consent was withdrawn.
6.6 Special Category Personal Data
Where Users voluntarily provide information that constitutes special category personal data under Article 9 GDPR—such as information concerning sexual orientation, gender identity, racial or ethnic origin, religious beliefs or health—GotYou processes such information only where a lawful exception under Article 9 GDPR applies.
Where required, this processing is based on your explicit consent. In other cases, processing may be necessary because you have manifestly made the information public or where another applicable exception under Article 9 GDPR permits such processing.
7. HOW WE SHARE PERSONAL DATA
GotYou does not sell your personal data.
We share personal data only where it is necessary to provide the Services, comply with legal obligations, protect our legitimate interests or where you have instructed or authorised us to do so.
Whenever personal data is shared with third parties, we take reasonable steps to ensure that recipients process the information in accordance with applicable data protection laws and appropriate contractual safeguards.
7.1 Information Shared with Other Users
Because GotYou is a social and dating platform, certain information is intentionally shared with other Users as part of the Services.
Depending on your profile settings and your use of the Services, other Users may be able to see:
your display name;
profile photographs;
profile biography;
age;
approximate distance;
profile preferences;
profile prompts;
online or recently active status, where applicable;
messages that you choose to send;
media that you voluntarily share.
Information that is displayed publicly within your profile is visible to other Users of the Services.
You remain responsible for the information you choose to make available through your profile or communications.
7.2 Service Providers
GotYou works with carefully selected third-party service providers that perform services on our behalf.
These providers may assist us with:
cloud hosting;
infrastructure management;
data storage;
customer support;
email delivery;
push notifications;
analytics;
fraud prevention;
security monitoring;
software development;
payment validation;
application performance monitoring;
backup and disaster recovery.
Service providers may access personal data only to the extent necessary to perform their contractual services.
They are not permitted to use your personal data for their own independent purposes unless they act as a separate controller under applicable law.
7.3 Apple App Store and Google Play
Where you purchase Premium subscriptions or other digital products through Apple App Store or Google Play, certain purchase-related information is exchanged between GotYou and the relevant App Store.
This information may include:
transaction identifiers;
subscription status;
renewal status;
expiration dates;
purchase validation information.
Apple and Google process payment information under their own privacy policies.
GotYou does not receive your full payment card details.
7.4 Payment Providers
Where applicable, payment-related information may also be processed by payment processors engaged by Apple or Google or by other authorised payment service providers.
Such providers operate under their own legal obligations and applicable financial regulations.
7.5 Legal Requirements
We may disclose personal data where disclosure is reasonably necessary to:
comply with applicable law;
comply with judicial proceedings;
respond to court orders;
respond to lawful requests from competent authorities;
protect the rights, property or safety of GotYou;
protect other Users;
investigate criminal activity;
prevent fraud;
enforce our Terms of Service.
Whenever legally permitted, we will seek to ensure that requests are valid, proportionate and properly authorised before disclosing personal information.
7.6 Business Transactions
If GotYou undergoes a merger, acquisition, investment, restructuring, sale of assets or other corporate transaction, personal data may be transferred as part of that transaction.
Where required by applicable law, Users will be informed before such transfer takes effect.
The recipient of the transferred information will remain subject to applicable data protection obligations.
7.7 Professional Advisers
Personal data may be disclosed where reasonably necessary to:
lawyers;
accountants;
auditors;
insurers;
financial advisers;
regulatory advisers.
Such disclosures occur only where required for legitimate business or legal purposes and remain subject to appropriate confidentiality obligations.
7.8 With Your Consent
In circumstances where your consent is required, we will only share your personal data after obtaining that consent.
You may withdraw your consent at any time where processing is based upon consent.
Withdrawal of consent does not affect processing that occurred before consent was withdrawn.
7.9 Aggregated and Anonymous Information
GotYou may create aggregated, statistical or anonymised datasets that no longer identify individual Users.
Such information is not considered personal data under applicable law once it has been irreversibly anonymised.
Aggregated information may be used for:
business analytics;
research;
platform improvements;
service planning;
reporting.
7.10 Categories of Recipients
The table below summarises the principal categories of recipients with whom personal data may be shared.
| Recipient Category | Purpose | Examples of Data Shared |
|---|---|---|
| Other Users | Social interaction | Profile information, messages, media, approximate distance |
| Cloud hosting providers | Hosting and storage | Account information, profile data, messages, technical data |
| Customer support providers | User assistance | Support requests, account identifiers |
| Analytics providers | Service improvement | Technical information, usage information |
| Push notification providers | Deliver notifications | Device tokens, notification preferences |
| Apple App Store / Google Play | Purchase validation | Subscription status, transaction identifiers |
| Professional advisers | Legal and business compliance | Information relevant to the specific matter |
| Competent authorities | Compliance with legal obligations | Information required by law |
8. INTERNATIONAL DATA TRANSFERS
GotYou may process or store personal data in countries other than the country in which you reside.
Where personal data is transferred internationally, GotYou takes appropriate measures to ensure that such transfers comply with applicable data protection legislation.
8.1 Transfers Within the European Economic Area
Where personal data is processed entirely within the European Economic Area ("EEA"), it remains subject to the protections provided by the GDPR and applicable national legislation.
8.2 Transfers Outside the EEA
Some of our service providers may operate outside the European Economic Area.
Where personal data is transferred to a country that has not been recognised by the European Commission as providing an adequate level of data protection, GotYou will implement appropriate safeguards before the transfer takes place.
8.3 Appropriate Safeguards
Depending on the circumstances, safeguards may include:
Standard Contractual Clauses (SCCs) approved by the European Commission;
an adequacy decision adopted by the European Commission;
other lawful transfer mechanisms recognised under the GDPR;
supplementary technical, organisational or contractual measures where appropriate.
8.4 Security Measures
When transferring personal data internationally, we implement reasonable measures designed to protect personal information throughout the transfer process.
These measures may include:
encryption;
access controls;
authentication procedures;
contractual confidentiality obligations;
vendor security assessments.
8.5 Third-Party Providers
Some third-party providers used by GotYou may independently process personal data in multiple jurisdictions.
Where such providers act as independent controllers, their processing activities are governed by their own privacy policies.
Examples may include:
Apple;
Google;
payment service providers;
internet service providers.
Users are encouraged to review the privacy policies of such third parties where relevant.
8.6 Your Rights
International transfers do not reduce the rights available to you under applicable data protection legislation.
Where required by law, you may request additional information regarding the safeguards applied to international transfers of your personal data.
Requests may be submitted to:
hello@thegotyou.com
9. DATA RETENTION
GotYou retains personal data only for as long as it is necessary to fulfil the purposes described in this Privacy Policy, comply with applicable legal obligations, resolve disputes, protect the security of the Services and enforce our legal rights.
The exact retention period depends on the nature of the information, the purpose for which it was collected and any legal or regulatory obligations applicable to GotYou.
Where personal data is no longer required, it will be securely deleted, anonymised or otherwise rendered permanently inaccessible, unless continued retention is required by applicable law.
9.1 General Retention Principles
When determining how long personal data should be retained, GotYou considers factors including:
the purpose for which the data was collected;
whether the Services are still being used;
legal and regulatory obligations;
accounting and tax requirements;
fraud prevention needs;
security investigations;
limitation periods for legal claims;
the sensitivity of the information;
the rights and interests of Users.
Retention periods may therefore differ between different categories of personal data.
9.2 Account Information
Account information is generally retained for as long as your Account remains active.
If your Account is deleted, account information will normally be deleted or anonymised within a reasonable period unless retention is required for legal, security or fraud prevention purposes.
9.3 Profile Information
Profile information remains available while your Account is active.
Following account deletion:
your public profile is removed from the Services;
profile photographs are deleted or anonymised;
profile information is removed from public visibility.
Certain technical backup copies may remain temporarily in secure backup systems until those backups are overwritten.
9.4 Messages
Messages are generally retained for as long as they remain part of an active conversation or until deleted in accordance with the functionality of the Services.
Where required for the investigation of abuse, fraud, safety incidents or legal obligations, relevant communications may be retained for a longer period.
Deletion of your Account may not automatically remove messages already delivered to other Users.
9.5 Purchase Records
Information relating to Premium subscriptions, Priority Pack purchases and other financial transactions may be retained for the period required by applicable accounting, taxation and financial reporting legislation.
Such records are retained even if your Account has been deleted where legally required.
9.6 Technical Logs
Technical logs may be retained for a limited period in order to:
investigate technical issues;
detect fraud;
identify security incidents;
monitor system stability;
improve platform reliability.
Logs are periodically deleted or anonymised when no longer required.
9.7 Abuse Reports
Reports relating to:
harassment;
fraud;
impersonation;
child safety;
illegal activity;
Community Guidelines violations;
Terms of Service violations
may be retained for as long as reasonably necessary to investigate the incident, protect Users, comply with legal obligations or establish, exercise or defend legal claims.
9.8 Legal Retention
Certain information may continue to be retained after account deletion where necessary to:
comply with legal obligations;
respond to lawful requests;
comply with court orders;
prevent fraud;
protect platform security;
resolve disputes;
enforce contractual rights.
Such information will only be retained for the specific legal purpose requiring its retention.
9.9 Anonymous Information
Once personal information has been irreversibly anonymised so that it can no longer identify an individual, it may be retained indefinitely for:
statistical purposes;
product development;
service improvement;
research;
security analysis;
business planning.
Anonymous information is no longer considered personal data under applicable law.
9.10 Illustrative Retention Periods
The following table provides general guidance regarding common retention periods.
| Category of Personal Data | Typical Retention Period |
|---|---|
| Account Information | While the Account remains active and thereafter only as necessary for legal, security or fraud prevention purposes |
| Profile Information | Until Account deletion, subject to temporary backups |
| Messages | While required for the operation of the Services, subject to legal and safety requirements |
| Purchase Records | As required by applicable accounting and tax legislation |
| Device Information | Limited period necessary for security and technical purposes |
| Technical Logs | Limited operational retention period |
| Customer Support Requests | Until the request is resolved and thereafter as reasonably necessary for legal or operational purposes |
| Abuse Reports | As long as necessary to investigate, enforce policies or comply with legal obligations |
| Anonymous Statistical Data | May be retained indefinitely |
The retention periods described above are indicative only and may vary where required by applicable law or specific operational circumstances.
10. SECURITY OF PERSONAL DATA
Protecting the confidentiality, integrity and availability of personal data is a fundamental part of the operation of GotYou.
We implement reasonable technical and organisational measures designed to safeguard personal information against accidental or unlawful destruction, loss, alteration, unauthorised disclosure or unauthorised access.
Although we continually improve our security practices, no internet-based service can guarantee absolute security.
10.1 Technical Measures
Depending on the nature of the processing, security measures may include:
encrypted communications using industry-standard protocols;
encryption of sensitive data where appropriate;
secure authentication mechanisms;
password protection;
access controls;
network security monitoring;
vulnerability management;
logging and monitoring;
secure backup procedures;
disaster recovery measures.
Security controls are regularly reviewed and updated where appropriate.
10.2 Organisational Measures
In addition to technical safeguards, GotYou implements organisational measures intended to reduce the risk of unauthorised access to personal data.
Such measures may include:
confidentiality obligations;
restricted access based on business need;
internal security procedures;
incident response procedures;
periodic review of security practices;
vendor due diligence where appropriate.
10.3 Access Controls
Access to personal data is limited to individuals who require such access in order to perform their authorised responsibilities.
Personnel are granted access only to the information necessary for their specific duties.
Administrative access is regularly reviewed to minimise unnecessary privileges.
10.4 Security Monitoring
GotYou may monitor systems, infrastructure and Services in order to detect:
unauthorised access;
suspicious activity;
malware;
attempted attacks;
fraud;
abuse;
technical failures.
Monitoring is conducted for security and operational purposes.
10.5 Data Breach Response
If GotYou becomes aware of a personal data breach, appropriate action will be taken to investigate, contain and remediate the incident.
Where required by applicable law, we will notify the competent supervisory authority and affected individuals within the applicable legal time limits.
10.6 User Responsibilities
Users also play an important role in protecting their personal information.
Users should:
choose strong passwords;
keep login credentials confidential;
protect access to their devices;
promptly report suspected unauthorised access;
avoid sharing sensitive personal information unnecessarily;
keep their application updated to the latest version.
Failure to take reasonable precautions may increase the risk of unauthorised access to your Account.
10.7 Third-Party Security
Certain components of the Services rely upon independent third-party providers.
Although we select providers using reasonable care and require appropriate contractual safeguards where applicable, GotYou cannot guarantee the security practices of independent organisations acting outside our control.
Users should review the privacy and security information provided by relevant third-party providers where appropriate.
10.8 No Absolute Security
Despite the safeguards implemented by GotYou, the transmission of information over the internet and electronic storage systems always involve inherent risks.
Accordingly, GotYou cannot guarantee that personal data will never be subject to unauthorised access, disclosure, alteration or destruction.
Nothing in this Privacy Policy shall be interpreted as providing an absolute guarantee of security.
11. YOUR PRIVACY RIGHTS
If you are located in the European Economic Area ("EEA"), the United Kingdom, Switzerland or another jurisdiction that grants similar rights under applicable data protection legislation, you may exercise certain rights regarding your personal data.
These rights are not absolute and may be subject to limitations or exceptions under applicable law.
GotYou will consider every request individually and respond in accordance with the requirements of applicable data protection legislation.
11.1 Summary of Your Rights
The following table provides an overview of the principal rights that may be available to you.
| Right | Description |
|---|---|
| Right of Access | Request confirmation that we process your personal data and obtain a copy of that data. |
| Right to Rectification | Request correction of inaccurate or incomplete personal data. |
| Right to Erasure | Request deletion of your personal data where applicable legal conditions are met. |
| Right to Restrict Processing | Request temporary restriction of certain processing activities. |
| Right to Data Portability | Receive certain personal data in a structured, commonly used and machine-readable format and request its transfer where technically feasible. |
| Right to Object | Object to processing based on legitimate interests in certain circumstances. |
| Right to Withdraw Consent | Withdraw consent at any time where processing is based on consent. |
| Right to Lodge a Complaint | Submit a complaint to a competent supervisory authority. |
11.2 Right of Access
You may request confirmation as to whether GotYou processes your personal data.
Where we do, you may request access to:
the categories of personal data processed;
the purposes of processing;
the categories of recipients;
applicable retention periods;
the legal basis for processing;
available safeguards for international transfers where applicable;
a copy of your personal data, unless an exception applies under applicable law.
Access requests will generally be provided free of charge unless they are manifestly unfounded, excessive or repetitive.
11.3 Right to Rectification
If you believe that personal data held by GotYou is inaccurate or incomplete, you may request that it be corrected.
Many items of profile information may also be updated directly through your account settings.
We may request reasonable evidence where necessary to verify the accuracy of the requested correction.
11.4 Right to Erasure ("Right to be Forgotten")
You may request deletion of your personal data where one of the conditions set out in Article 17 GDPR applies.
This right may apply, for example, where:
the data is no longer necessary for the purposes for which it was collected;
you withdraw consent and no other lawful basis applies;
you successfully object to processing;
the data has been processed unlawfully;
deletion is required by applicable law.
This right is not absolute.
GotYou may retain certain information where retention is necessary to comply with legal obligations, establish or defend legal claims, prevent fraud, protect platform safety or comply with other lawful requirements.
11.5 Right to Restrict Processing
Under certain circumstances, you may request that we temporarily restrict the processing of your personal data.
Where processing has been restricted, personal data will generally be stored but not otherwise processed unless:
you consent;
processing is necessary for legal claims;
processing protects the rights of another person;
processing is required for important public interest reasons.
11.6 Right to Data Portability
Where processing is based on your consent or the performance of a contract and carried out by automated means, you may request a copy of certain personal data in a structured, commonly used and machine-readable format.
Where technically feasible, you may also request that such information be transmitted directly to another controller.
This right applies only where required by applicable law.
11.7 Right to Object
Where processing is based upon GotYou's legitimate interests, you may object to such processing on grounds relating to your particular situation.
If you submit an objection, GotYou will assess whether compelling legitimate grounds continue to justify the processing.
You may also object to direct marketing communications at any time.
Where applicable, marketing communications will cease following your objection, except for service-related communications that remain necessary for the operation of your Account.
11.8 Right to Withdraw Consent
Where processing is based upon your consent, you may withdraw that consent at any time.
Withdrawal of consent:
does not affect processing already carried out before withdrawal;
does not affect processing based upon another lawful basis;
may limit the availability of certain optional features.
Certain permissions, such as location access or camera access, may also be withdrawn through your device settings.
11.9 Right to Lodge a Complaint
If you believe that GotYou has processed your personal data unlawfully, you have the right to lodge a complaint with a competent supervisory authority.
Where applicable, you may generally submit a complaint in:
your country of habitual residence;
your place of work; or
the country where the alleged infringement occurred.
You may also seek judicial remedies where provided by applicable law.
12. HOW TO EXERCISE YOUR RIGHTS
GotYou is committed to facilitating the exercise of your privacy rights in a transparent and accessible manner.
You may contact us at any time to submit a request relating to your personal data.
12.1 Contact Details
Privacy requests should be submitted to:
Email: hello@thegotyou.com
To help us process your request efficiently, please provide sufficient information to identify your Account and describe the nature of your request.
12.2 Identity Verification
Before responding to certain requests, GotYou may require reasonable verification of your identity.
Identity verification helps protect personal data from unauthorised disclosure, alteration or deletion.
Depending on the nature of the request, we may ask you to:
confirm your registered email address;
verify your account through the application;
provide additional information reasonably necessary to establish your identity.
We will request only the information necessary for verification.
12.3 Response Time
GotYou will respond to privacy requests without undue delay and, where the GDPR applies, generally within one month of receiving a valid request.
Where permitted by law, this period may be extended by up to two additional months if the request is particularly complex or numerous.
If an extension is required, we will inform you of the reasons for the delay within the time required by applicable law.
12.4 Fees
Requests are generally processed free of charge.
However, where permitted by applicable law, GotYou may:
charge a reasonable administrative fee; or
refuse to act on a request
if the request is manifestly unfounded, excessive or repetitive.
Any such decision will be explained to you.
12.5 Limitations
Certain rights may be limited where necessary to:
comply with legal obligations;
protect the rights and freedoms of others;
maintain platform security;
investigate fraud or abuse;
enforce contractual rights;
establish, exercise or defend legal claims.
Where we are unable to fulfil your request in whole or in part, we will explain the legal basis for that decision unless prohibited by law.
12.6 Requests Made on Behalf of Another Person
Privacy requests submitted by an authorised representative may require proof of authority before any personal data is disclosed or modified.
GotYou reserves the right to contact the account holder directly where appropriate to verify the legitimacy of such requests.
12.7 Account Deletion Requests
You may request deletion of your Account through the functionality provided within the Services or by contacting us using the contact details set out in this Privacy Policy.
Deletion of your Account does not automatically require the immediate deletion of all associated personal data where continued retention is necessary to comply with legal obligations, protect the security of the Services, prevent fraud or establish, exercise or defend legal claims.
Further information regarding the consequences of account deletion can be found in the Terms of Service and in the Data Retention section of this Privacy Policy.
13. COOKIES AND SIMILAR TECHNOLOGIES
13.1 Overview
When you visit the GotYou website or other web-based Services, GotYou and its authorised service providers may use cookies and similar technologies to improve functionality, enhance security, analyse website usage and remember your preferences.
This section applies primarily to the GotYou website and any web-based Services. Certain technologies described below may not apply when you use only the mobile application.
13.2 What Are Cookies?
Cookies are small text files placed on your device when you visit a website.
Similar technologies may include:
local storage;
session storage;
software development kits (SDKs);
pixels;
tags;
web beacons;
device identifiers;
other technologies that perform similar functions.
For simplicity, this Privacy Policy refers to these collectively as "Cookies."
13.3 Types of Cookies We Use
Depending on the Services you use, GotYou may use the following categories of Cookies.
| Category | Purpose |
|---|---|
| Strictly Necessary Cookies | Enable core website functionality, authentication, security and user sessions. |
| Preference Cookies | Remember language settings, preferences and user choices. |
| Analytics Cookies | Help us understand website usage and improve performance. |
| Functional Cookies | Support enhanced website functionality and user experience. |
| Marketing Cookies | Used only where applicable and where required by law, with your consent, to measure or deliver advertising. |
13.4 Consent
Where required by applicable law, GotYou will request your consent before placing non-essential Cookies on your device.
You may refuse or withdraw consent at any time through the cookie management tools provided on the website.
Strictly necessary Cookies do not require consent where permitted by applicable law because they are essential for the operation and security of the Services.
13.5 Browser Controls
Most web browsers allow you to:
delete existing Cookies;
block future Cookies;
receive notifications before Cookies are stored;
configure cookie preferences individually.
Please note that disabling certain Cookies may reduce the functionality or availability of some website features.
13.6 Third-Party Cookies
Some Cookies may be placed by trusted third-party providers that assist GotYou with:
website hosting;
analytics;
security;
fraud prevention;
performance monitoring.
Such third parties process information in accordance with their own privacy policies and applicable data protection laws.
13.7 Mobile Applications
The GotYou mobile application does not generally rely on traditional web browser Cookies.
Instead, the application may use device-based technologies, software development kits (SDKs), secure storage mechanisms and similar technologies necessary to operate the Services, maintain security and improve performance.
Where such technologies require consent under applicable law, GotYou will obtain that consent before processing.
14. CHILDREN'S PRIVACY
GotYou is intended exclusively for adults who are at least eighteen (18) years of age.
We do not knowingly collect personal data from children.
If we become aware that a person under the age of 18 has created an Account or submitted personal information through the Services, we may:
suspend or terminate the Account;
delete associated personal data, unless retention is required by law;
take additional measures reasonably necessary to protect the safety of minors and the integrity of the Services.
If you believe that a child has provided personal information through GotYou, please contact us immediately at:
hello@thegotyou.com
15. CHANGES TO THIS PRIVACY POLICY
GotYou may update this Privacy Policy from time to time in order to reflect:
changes to the Services;
new features;
changes in applicable law;
regulatory guidance;
improvements to our privacy practices;
organisational changes;
security enhancements.
Where changes materially affect the way personal data is processed, GotYou will provide notice where required by applicable law.
Notice may be provided by:
an in-app notification;
email;
publication on the website;
or another appropriate communication method.
The "Last Updated" date shown at the beginning of this Privacy Policy indicates the most recent revision.
Continued use of the Services following the effective date of an updated Privacy Policy constitutes acknowledgement of the revised Privacy Policy, except where applicable law requires another form of consent.
16. CONTACT INFORMATION
If you have questions, comments or concerns regarding this Privacy Policy or the processing of your personal data, you may contact GotYou using the details below.
Data Controller
Majerszki Nikolett Sole Proprietor
3351 Verpelét Kossuth út 39. Hungary
Registration Number: 54603222
Tax Number: 55861362-1-30
Email: hello@thegotyou.com
Privacy-related requests should be submitted by email.
GotYou will respond to requests within the time periods required by applicable data protection legislation.
17. EFFECTIVE DATE
This Privacy Policy is effective from the Effective Date displayed within the Services or on the official GotYou website.
By creating an Account or otherwise using the Services after the Effective Date, you acknowledge that you have read and understood this Privacy Policy.
Nothing in this Privacy Policy limits any rights granted to you under the General Data Protection Regulation (EU) 2016/679, applicable Hungarian legislation or any other mandatory data protection laws.
FINAL NOTE
This Privacy Policy is intended to provide a transparent explanation of how GotYou processes personal data while respecting the principles of lawfulness, fairness, transparency, purpose limitation, data minimisation, accuracy, storage limitation, integrity, confidentiality and accountability.
Where any provision of this Privacy Policy conflicts with mandatory data protection legislation, the applicable legislation shall prevail to the extent of the conflict.
APPENDIX A – SUMMARY OF PROCESSING ACTIVITIES
The table below provides a high-level overview of the principal categories of personal data processed by GotYou. It is intended to improve transparency and does not replace the detailed explanations contained in this Privacy Policy.
| Category of Personal Data | Purpose of Processing | Legal Basis | Typical Recipients | Typical Retention |
|---|---|---|---|---|
| Account Information | Account creation and authentication | Performance of a Contract | Internal systems, hosting providers | While the Account remains active and thereafter as legally required |
| Profile Information | Displaying user profiles | Performance of a Contract | Other Users | Until Account deletion |
| Location Data | Nearby functionality | Performance of a Contract / Consent where required | Internal systems | While required to provide the Service |
| Messages | User communications | Performance of a Contract | Intended recipients | While required for the operation of the Service |
| Device Information | Security and diagnostics | Legitimate Interests | Infrastructure providers | Limited operational period |
| Usage Information | Platform improvement | Legitimate Interests | Analytics providers | Aggregated or limited retention |
| Purchase Information | Subscription management | Performance of a Contract / Legal Obligation | Apple, Google Play | As required by applicable law |
| Customer Support Information | Responding to enquiries | Performance of a Contract / Legitimate Interests | Customer support providers | Until resolution and thereafter where necessary |
| Reports & Moderation Data | Platform safety | Legitimate Interests / Legal Obligation | Internal moderation personnel | As reasonably necessary |
| Technical Logs | Security | Legitimate Interests | Infrastructure providers | Limited retention period |
The exact retention period for any particular category of information may vary depending on legal obligations, ongoing investigations, fraud prevention requirements or other legitimate business purposes.
APPENDIX B – THIRD-PARTY SERVICE PROVIDERS
GotYou relies on a number of trusted third-party providers to operate, maintain and improve the Services.
The providers listed below may change over time as the Services evolve.
| Provider Category | Purpose | Role |
|---|---|---|
| Cloud Infrastructure Provider | Hosting, servers and storage | Processor |
| Database Provider | Data storage | Processor |
| Push Notification Provider | Delivering push notifications | Processor |
| Email Delivery Provider | Transactional emails | Processor |
| Apple App Store | Subscription processing and purchase validation | Independent Controller |
| Google Play | Subscription processing and purchase validation | Independent Controller |
| Analytics Provider | Product analytics | Processor or Independent Controller depending on configuration |
| Crash Reporting Provider | Error monitoring | Processor |
| Customer Support Provider | User support | Processor |
| Fraud Prevention Provider | Abuse detection | Processor |
Some providers may process limited information as independent controllers under their own privacy policies where required by law.
GotYou enters into appropriate contractual arrangements with processors where required by applicable data protection legislation.
APPENDIX C – USER CONTROLS
GotYou provides Users with various tools that enable them to control how their personal information is used within the Services.
Depending on the functionality available at the relevant time, Users may:
update profile information;
change profile photographs;
edit profile prompts;
modify notification preferences;
control location permissions through device settings;
enable or disable background location permissions through device settings;
manage visibility settings;
enable or disable Incognito Mode (Premium feature);
block other Users;
report inappropriate content;
delete conversations where supported;
request account deletion;
exercise applicable privacy rights.
Some settings are managed directly through the mobile operating system rather than within the application itself.
APPENDIX D – DEFINITIONS
For the purposes of this Privacy Policy:
Account means the registered user profile created to access the Services.
Controller means the person or entity that determines the purposes and means of processing personal data.
GDPR means Regulation (EU) 2016/679 of the European Parliament and of the Council.
Personal Data means any information relating to an identified or identifiable natural person.
Processing means any operation performed on Personal Data, whether automated or not, including collection, storage, use, disclosure, deletion or destruction.
Processor means a third party that processes Personal Data on behalf of GotYou.
Profile Information means the information displayed on a User's profile.
Sensitive Personal Data means special categories of personal data under Article 9 GDPR.
Services means the GotYou mobile application, website and related services.
User means an individual who accesses or uses the Services.
END OF PRIVACY POLICY
© GotYou. All rights reserved.