Privacy Policy
Last updated 2026-07-23
In short
Pairr is built to need less from you than most dating apps, and to be honest about what it does need.
- We store your date of birth, not your age — because age has to be derived correctly, not guessed.
- We store your location rounded to about a kilometre. We never know which street you are on.
- We do not read your messages. Nobody at Pairr can browse conversations. The only exception is a specific conversation attached to a safety report, and every such access is logged.
- We do not sell your data, and we do not run advertising.
- We use AI to check photos and triage safety reports. We explain exactly how below.
1. Who we are
Pairr is operated by Pairr, Australia.
For any privacy question, or to exercise the rights described in section 9, contact privacy@pairr-app.com.
2. What we collect, and why
You give us
| Data | Why | Kept |
|---|---|---|
| Email address | To create your account and send verification codes | Until you delete your account |
| Password | Stored only as an Argon2id hash — we cannot read it | Until you delete your account |
| Date of birth | To confirm you are 18+ and show your age | Until you delete your account |
| Display name, gender, who you're seeking, intention | Your profile | Until you delete your account |
| Suburb or locality | Shown on your profile | Until you delete your account |
| Approximate location | To show people you could realistically meet | Until you delete your account |
| Reality Photo and any additional photos | Your profile | Until you delete them or your account |
| Assessment answers (20 questions) | To calculate compatibility | Until you delete your account |
| Identity and bio text | Your profile | Until you delete your account |
| Availability | To find when you and a match are both free | Until you delete your account |
| Messages | To deliver your conversations | Until the conversation ends or you delete your account |
| Interest reasons | Shown to the person you wrote to | Until you delete your account |
| Reports you make | To investigate safety concerns | See section 7 |
On location specifically. Your coordinates are rounded to roughly one kilometre before they are stored. We never hold your precise position, and we cannot reconstruct it. We ask for "approximate location" permission only, never precise or background location.
On your date of birth. We store the date rather than a calculated age, so your age is always correct and never drifts. Your exact birth date is never shown to other users — only your age.
We collect automatically
| Data | Why |
|---|---|
| IP address and browser/device string | Attached to a session, so you can spot unfamiliar sign-ins, and for rate limiting |
| Last active time | To show whether someone is currently reachable, and to exclude dormant accounts |
| Crash and error reports | To find and fix faults |
We do not collect
We do not collect contacts, calendars, browsing history, advertising identifiers, precise location, or anything from other apps. We do not track you across the internet. Pairr contains no advertising SDKs.
3. How your profile is shown to others
This matters more on Pairr than on most apps, because the order is deliberate.
- In the discovery feed, other people see your compatibility score, the reasons behind it, your first name, age, suburb, approximate distance, and your own words. They do not see any photograph.
- When someone opens your profile, they additionally see your Reality Photo.
- Your other photos are visible only once you and that person have both expressed interest.
Nobody can pay to be shown more often, ranked higher, or seen before others. There is no mechanism in the product to do so.
4. Artificial intelligence
We use AI in three places. In each, a human makes the final decision on anything consequential.
Photo verification. Your Reality Photo is sent to Anthropic's Claude to assess whether it is a live photograph of one identifiable adult, rather than a photograph of a screen, a printed photo, a stock image or a generated image. The model is instructed not to assess attractiveness, body, race or perceived gender. It may automatically approve a photo it is confident about. Anything uncertain, and anything raising a safety concern, is reviewed by a person.
Profile text. Your assessment answers are sent to Claude to draft your identity description and bio. You always see and edit the result before it is published. Nothing is published without your approval.
Safety report triage. When someone reports a user, the report's text is sent to Claude to assign an urgency level so that dangerous reports are handled first. The model cannot lower the urgency implied by the category the reporter selected. A person reviews every report and makes every decision.
Anthropic processes this data on our behalf as a processor and does not use it to train models.
You can object to automated processing — see section 9. Note that we cannot offer the service without photo verification, as it is what makes Pairr's core promise true.
5. Who we share with
We do not sell your data. We share it only with providers who process it on our behalf:
| Provider | What they receive | Where | Purpose |
|---|---|---|---|
| Anthropic (Claude) | Photos for verification; assessment answers for profile text; report text for triage | United States | AI processing |
| Resend | Your email address and the message content | United States / EU | Sending verification and account emails |
| Cloudflare (R2) | Your photographs | Configurable region | Photo storage |
| Sentry | Error reports, with your account identifier — never message content, answers or email | United States | Crash reporting |
| Amazon Web Services | Photographs, only if content moderation is enabled | Configurable region | Automated content screening |
| Apple / Google | Purchase identifiers | United States | Verifying subscriptions |
We may also disclose data where legally required, or where necessary to protect someone's safety.
International transfers. Some providers are in the United States. Where required, transfers rely on Standard Contractual Clauses.
6. How we protect it
- Everything travels over HTTPS.
- Passwords are hashed with Argon2id and are never recoverable.
- Photographs are served through short-lived signed links that expire in minutes, and are never publicly addressable.
- Staff accounts require two-factor authentication.
- Every moderation action, including viewing a reported conversation, is written to an audit log before it takes effect.
- Sessions expire, and are revoked everywhere when you change your password.
No system is perfectly secure, but access to your conversations is deliberately narrow: there is no interface that lets anyone browse messages, and the only path to one is a specific report, which is logged.
7. How long we keep things
When you delete your account, your data is erased immediately — profile, photographs, assessment answers, availability and interests. Your messages are blanked in conversations you shared with others, so the other person's copy is not corrupted, but your words are gone.
Your email address is released straight away, so you can sign up again with it.
One exception. If a report against you is under a preservation hold — meaning a serious safety investigation is open — the material relevant to it is retained until that investigation closes. It is not visible to other users. This exists so that someone cannot erase evidence of serious misconduct by deleting their account.
Success stories are stored without any link to your account, so they survive deletion as anonymous text.
8. Children
Pairr is strictly for adults. We verify that you are 18 or over from your date of birth, and our photo verification specifically flags any doubt about age for human review. If we learn that someone under 18 has an account, we remove it immediately.
9. Your rights
Depending on where you live, you may have the right to:
- Access the data we hold — available instantly in the app under Settings → Your data
- Correct anything inaccurate — editable in the app
- Delete your account and data — Settings → Delete account, effective immediately
- Object to processing, including automated decisions
- Port your data — the in-app export is machine-readable JSON
- Withdraw consent for location by revoking the permission in your device settings
- Complain to your data protection authority (OAIC in Australia)
To exercise anything not available in the app, email privacy@pairr-app.com. We respond within 30 days.
10. Lawful basis (UK/EU)
| Purpose | Basis |
|---|---|
| Running your account and showing you people | Performance of a contract |
| Verifying your email and photograph | Performance of a contract; legitimate interests in preventing fraud |
| Location-based matching | Consent, withdrawable at any time |
| Safety moderation and reports | Legitimate interests in protecting users |
| Preserving evidence for investigations | Legal obligation; legitimate interests |
| Crash reporting | Legitimate interests in a working service |
11. Changes
If we change this policy materially, we will tell you in the app before the change takes effect. The date at the top always reflects the current version.
12. Contact
privacy@pairr-app.com Pairr — Australia