Privacy policy
Deep Connect Solutions ("we", "us", "our") operates the Abbs mobile application (the "App"). This Privacy Policy explains how we collect, use, disclose, and safeguard your personal data when you use our App. We are committed to protecting your privacy and complying with the EU General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and other applicable data protection laws.
By using Abbs, you acknowledge that you have read and understood this Privacy Policy.
1. Information We Collect
1.1 Information You Provide
- Account information: When you sign up via Apple Sign-In, we receive your Apple user identifier and, if you choose to share it, your email address. If you verify your phone number, we collect that number for identity confirmation.
- Profile information: Name, age, gender, ethnicity, height, weight, body type, tribe, relationship status, positions, looking-for preferences, and any free-text "about me" description you enter.
- Photos and videos: Images and videos you upload to your profile or share in chats, including album content.
- Messages: Text messages, photos, and videos sent through the in-app chat feature.
- Location data: Your precise GPS coordinates (latitude and longitude) and derived city name, used to show you nearby users and display your approximate distance to others. We also store a history of your location updates to provide features such as showing where you have recently been and to improve the service.
- Subscription and purchase data: Details of any in-app purchases (Gold or Platin subscriptions), processed through Apple's App Store.
1.2 Information Collected Automatically
- Device information: We maintain a record of the devices you use to access the App, which is updated each time you open the App and is associated with your account. This record includes your device model, platform, operating system name and version, app version and build number, language, locale, time zone, a per-vendor device identifier (Apple's identifierForVendor), basic display characteristics (screen dimensions and scale), low-power-mode status, and push notification tokens. The per-vendor device identifier is not an advertising identifier (we do not collect Apple's IDFA) and is not used for cross-app tracking; accordingly, no App Tracking Transparency prompt is presented.
- Usage data: Interactions within the App such as profiles viewed, swipe actions, likes, favorites, chat activity, and session duration. This data is collected via our interaction tracking system and is used to improve the discovery experience.
- Location history: A record of your location updates over time, used to power features such as "Recently in" and to improve the service. Location history is retained for 90 days and then automatically deleted.
- Log and connection data: IP addresses, access times, app crashes, and diagnostic information. When you open the App, we record the IP address of your connection (determined on our servers from your network request) together with the device record described above, to help secure your account and prevent fraud and abuse.
- Online status: Whether you are currently active in the App, based on your WebSocket connection state.
1.3 Information from Third Parties
- Apple Sign-In: Authentication tokens and, optionally, your email address from Apple.
- Apple App Store: Subscription status and transaction identifiers for in-app purchases.
2. How We Use Your Information
We process your personal data for the following purposes:
- Providing the service: Creating your account, displaying your profile to other users, enabling chat and messaging, facilitating discovery of other users based on location and preferences.
- Personalisation: Tailoring the profiles shown to you based on your stated preferences (filters), location, and interaction history.
- Content moderation: Reviewing uploaded photos and videos to ensure they comply with our community guidelines and applicable laws.
- Safety and security: Detecting and preventing fraud, abuse, harassment, and other harmful activities. Enforcing our Terms of Service and blocking users who violate them. We use device information and connection data (including device identifiers and IP addresses) to identify suspicious activity and protect accounts.
- Push notifications: Sending you messages, likes, visit notifications, and other relevant updates via Apple Push Notification Service (APNs).
- Subscriptions: Processing and verifying in-app purchases, managing your subscription tier (Free, Gold, or Platin), and providing tier-appropriate features.
- App compatibility and support: Recording the app version and build you are running so we can ensure compatibility, deliver and prompt required updates, and provide technical support and diagnostics.
- Analytics and improvement: Understanding how users interact with the App to improve features, fix bugs, and enhance the user experience. We may use aggregated, de-identified data for this purpose.
- Legal compliance: Responding to legal requests, enforcing our agreements, and complying with applicable laws and regulations.
3. Legal Basis for Processing (GDPR)
Under the GDPR, we rely on the following legal bases:
- Contract performance (Art. 6(1)(b)): Processing necessary to provide you with the App's services, including account creation, profile display, messaging, and discovery.
- Legitimate interests (Art. 6(1)(f)): Processing for fraud prevention, security, analytics, and service improvement, where our interests do not override your fundamental rights.
- Consent (Art. 6(1)(a)): For processing your precise location data and sending push notifications. You may withdraw consent at any time through your device settings.
- Legal obligation (Art. 6(1)(c)): Where we are required to process data to comply with applicable law.
4. How We Share Your Information
4.1 With Other Users
Your profile information (name, age, photos, distance, and other profile fields) is visible to other Abbs users in accordance with your privacy settings. Messages you send are visible to the recipient.
4.2 Service Providers
We use the following infrastructure providers to operate the App:
- Amazon Web Services (AWS): Our backend infrastructure is hosted on AWS in the European Union (Frankfurt, Germany).
- Apple: For Sign-In with Apple authentication and App Store subscription processing.
4.3 We Do Not Sell Your Data
We do not sell, rent, or trade your personal information to third parties for their marketing purposes. We do not share your data with advertisers.
4.4 Legal Requirements
We may disclose your information if required by law, court order, or governmental request, or if we believe disclosure is necessary to protect our rights, your safety, or the safety of others.
5. Data Storage and Security
- All data is stored on AWS infrastructure in the European Union (Frankfurt, Germany).
- Media files (photos and videos) are delivered through a content delivery network with signed, time-limited URLs that expire automatically.
- Passwords are not stored; authentication is handled via Apple Sign-In with secure token-based sessions.
- We implement industry-standard security measures including encryption in transit (TLS), encrypted storage, and access controls. However, no method of transmission or storage is completely secure.
6. Data Retention
- Active accounts: Your data is retained for as long as your account is active.
- Account deletion: When you delete your account, we initiate a 30-day soft-delete period during which your data is marked for deletion but may be recoverable. After 30 days, your personal data is permanently deleted from our active systems.
- Location history: Your location history is retained for a maximum of 90 days. Older entries are automatically and permanently deleted on a regular schedule.
- Chat messages: Messages are retained for the duration of the conversation. When a conversation is deleted, associated messages are removed.
- Interaction data: Anonymised, aggregated interaction data may be retained beyond account deletion for analytics purposes.
- Legal holds: We may retain data longer if required by law or ongoing legal proceedings.
7. Your Rights
7.1 GDPR Rights (EU/EEA Users)
You have the right to:
- Access: Request a copy of the personal data we hold about you.
- Rectification: Request correction of inaccurate personal data.
- Erasure ("Right to be Forgotten"): Request deletion of your personal data, subject to legal retention requirements.
- Restriction of processing: Request that we limit how we use your data in certain circumstances.
- Data portability: Receive your personal data in a structured, machine-readable format and transmit it to another controller.
- Object: Object to processing based on legitimate interests.
- Withdraw consent: Where processing is based on consent, you may withdraw it at any time without affecting the lawfulness of prior processing.
- Lodge a complaint: File a complaint with your local data protection authority.
7.2 CCPA Rights (California Residents)
You have the right to:
- Know: Request disclosure of the categories and specific pieces of personal information we have collected about you.
- Delete: Request deletion of your personal information.
- Opt-out of sale: We do not sell personal information, so this right does not apply.
- Non-discrimination: We will not discriminate against you for exercising your CCPA rights.
To exercise any of these rights, please contact us using the information in Section 11 or use the account deletion feature within the App (Settings > Account > Delete Account).
8. Children and Age Restriction
Abbs is strictly for users aged 18 and older. We do not knowingly collect personal information from anyone under 18. If we learn that we have collected data from a person under 18, we will delete that data immediately. If you believe a minor has provided us with personal information, please contact us.
9. International Data Transfers
Your data is processed and stored in the European Union (AWS eu-central-1). If you access the App from outside the EU, your data will be transferred to the EU. We ensure appropriate safeguards are in place for any data transfers in accordance with applicable law.
10. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify you through the App (for example, by requiring re-acceptance) and update the "Last Updated" date above. Your continued use of the App after changes constitutes acceptance of the updated policy.
11. Contact Us
If you have questions about this Privacy Policy, wish to exercise your data protection rights, or have concerns about how we handle your data, please contact us at:
Deep Connect Solutions
Email: privacy@abbsapp.com
Address: Bremen, Germany
For GDPR-related inquiries, you may also contact your local data protection authority. The lead supervisory authority for Abbs is Die Landesbeauftragte fuer Datenschutz und Informationsfreiheit der Freien Hansestadt Bremen.
Website visitors
This section applies only to visitors of the abbsapp.com website. The controller is Deep Connect Solutions, Bremen, Germany (contact: privacy@abbsapp.com).
This website is a set of static pages hosted in the European Union and delivered through a content delivery network. It sets no cookies, runs no analytics, performs no tracking, and keeps no logs of your visit. It loads no resources from third parties and sends no data to anyone.
If you follow the links on this site to install or open the Abbs app, the privacy policy above governs your use of the app itself.