Privacy Policy
Last updated August 7, 2026
The short version
We never connect to your AI account — there is nothing to connect. You copy one prompt, your AI writes a structured profile, you review and edit it, and your browser converts it into an encoded compatibility profile. Only that encoded version is stored for matching. Your conversations with your AI stay where they have always been: with you.
Straight answers first
| Do you connect to my ChatGPT, Claude or Gemini account? | Never. You copy a prompt and paste an answer — that is the whole exchange. |
| Do you read my conversation history? | No. We never ask for it and have no way to receive it. |
| What do you actually receive? | The profile you reviewed and approved, encoded in your browser, plus the signup basics: name, birth date, city, email. |
| Do you sell my data? | No. |
| Do you train AI models on my data? | No. We never train on your data, our AI providers are contractually barred from doing so, and some of our AI runs entirely on our own servers. |
| Does a match see my whole profile? | No. They see your first name, age, approximate area, relationship goal, languages, and the introduction you wrote. Nothing else. |
| Can I delete everything? | Yes, yourself, without asking anyone — see “Your data” below. |
| Where is it stored? | On servers in the EU, run by a German company. |
Who we are
Velorinya is operated by the company TamerinTECH GmbH, Seestr. 19, 83727 Schliersee, Germany, registered at Amtsgericht München under HRB 263667. For data-protection purposes we are the controller of the data described below. Contact: dpo@velorinya.app.
Exactly what we store
| Data | Why | How it is held |
|---|---|---|
| Email address | To send your confirmation and, later, an introduction | Encrypted (AES-256-GCM); the key is not in the database |
| First name or nickname | So a match knows what to call you | Plain |
| Date of birth | To enforce 18+ and match age ranges | Plain |
| City | To match within a metro area | Plain — city only, never an address |
| Gender identity, who you want to meet, age range, relationship goal, languages | These are the filters applied before compatibility | Plain |
| Encoded compatibility vectors | The actual matching | Arrays of numbers containing no text |
| Your approved summary and introduction | Shown back to you; the introduction is shown to a match | Encrypted |
| Consent records | To prove what you agreed to and when | Plain, append-only |
| How you found us (UTM, click IDs) | To know which adverts work | Plain |
| Truncated IP prefix | Rate limiting and abuse investigation | Last octet removed — /24 or /48 |
What we never store
- Your AI conversation history. We never ask for it and have no way to receive it.
- The original response your AI produced. It is discarded after encoding and never written to our database.
- A readable personality report or raw personality scores.
- Your home address, precise location, or GPS coordinates.
- Payment card details. We do not currently take payment at all.
What happens to the text you paste
When your AI's answer is valid JSON, your browser reads and encodes it locally — the text itself is never sent to us. When the answer cannot be read locally (prose, broken formatting), your browser sends it once to our server so our AI provider can reshape it into the structured profile. The original paste is then discarded — never written to our database or logs. The optional “improve with our AI” buttons send only the section you are editing and your short instruction, never the original paste.
An honest limit
The encoding is a privacy-preserving transformation, not encryption. It means we cannot reconstruct a conversation we never received. It does not mean the numbers we hold are mathematically impossible to analyse. We prefer telling you that to overstating it.
Sensitive data, named plainly
Who you want to meet can reveal your sexual orientation, and a compatibility profile can touch other intimate territory. European law calls this special-category data (GDPR Art. 9) and holds it to the strictest standard. So do we: we process your compatibility profile only with your explicit consent — the separate matchmaking checkbox at signup, never a line buried inside the Terms — and withdrawing that consent, or deleting your account, deletes the profile it covered.
Legal basis
- Your compatibility profile explicit consent (GDPR Art. 9(2)(a); LGPD Art. 11). You can withdraw it at any time, and withdrawal deletes the profile.
- Your email and matching notifications consent (GDPR Art. 6(1)(a)), given by confirming your address.
- Security, abuse prevention and legal compliance legitimate interest (GDPR Art. 6(1)(f)).
- Advertising measurement separate, optional consent. Declining changes nothing about the service you receive.
How matching decisions are made
Matching is automated. Our system compares encoded profiles in both directions and proposes an introduction only when each side independently fits what the other is looking for — a strong fit one way can never override a poor fit the other way. Nobody is ranked in a public pool, readable compatibility scores are never shown to anyone, and no decision with legal or similarly significant effect is made about you: an introduction is a suggestion that both people are free to decline. If you want to understand why you did or did not receive an introduction, write to privacy@velorinya.app and a human will answer.
Where AI is involved
Your dating analysis, the optional section rewrites during signup, and the café conversations between profile agents are AI-generated, and the product presents them as exactly that. An agent speaks on a member's behalf, but it is software — it is never the other member typing, and the first words two humans exchange come after both have chosen to reveal themselves. To produce these, we use the AI providers listed below or models running on our own servers — and what we send them is structured profile text, never your conversations.
How long we keep it
| A confirmed profile | Until you delete it, or the service closes |
| An unconfirmed signup | Deleted after 30 days — no confirmation means no basis to keep it |
| After you request deletion | Removed immediately; gone from backups within 14 days |
| Consent records | 5 years, anonymised once the account is deleted |
| Server logs (truncated IPs) | 90 days |
| Encrypted backups | 14 days, then destroyed |
Who else touches it
We do not sell your data, and we do not share it with other members beyond the introduction card described in the Terms. These processors help us run the service:
| Processor | Job | What it receives |
|---|---|---|
| Our hosting provider | Runs our servers and database, in the EU | The stored data listed above |
| Microsoft (Azure OpenAI Service) and Google (Gemini) | AI processing: your analysis, reformatting unreadable pastes, agent-café dialogue | Structured profile text — never your conversations, and never used to train their models |
| Cloudflare | Delivers and routes our email | Your email address |
| Meta and Google | Advertising measurement — only with your separate consent; declining changes nothing | Irreversibly hashed identifiers, never profile content |
Some AI work never leaves us at all: we also run Google's open Gemma models on our own servers in the EU, and what those process never reaches any third party. Matching and storage stay on servers in the EU. Where a processor is a US company, we rely on its EU–US Data Privacy Framework certification, with standard contractual clauses as the fallback (GDPR Art. 46).
Your rights
Access, correction, deletion, portability, restriction, objection, and withdrawal of consent. Delete everything yourself at velorinya.app/your-data, or write to privacy@velorinya.app. We respond within 30 days. You may also complain to your national authority — any EU supervisory authority (for us, the lead authority is the Bavarian Data Protection Authority, BayLDA), ANPD in Brazil, INAI in Mexico, or SIC in Colombia.
Photographs
We do not currently collect photographs. When we do, we will update this policy first and ask for your consent separately. Our commitments in advance:
- A photo will only ever be shown to someone you have been introduced to — never publicly, never in a browsable directory, and never indexed by a search engine.
- Photos will be served from expiring signed links, not public URLs.
- We will not run face recognition to identify you, and we will not sell or license photos or use them to train models.
- Deleting your account deletes the image files, not just the database rows.
- Biometric-adjacent processing is treated as sensitive data and would need separate, explicit consent.
Changes
If we change how we use your data in a way that affects you, we will email you before it takes effect — not quietly update this page.
Impressum / Provider
TamerinTECH GmbH
Seestr. 19
83727 Schliersee, Germany
Managing Director: Ron Tamerin
Amtsgericht München · HRB 263667
VAT ID (§ 27a UStG): DE340834936
Contact: hello@velorinya.app · Data protection: dpo@velorinya.app
Responsible for editorial content per § 18 (2) MStV: Ron Tamerin, address as above.
Online dispute resolution: ec.europa.eu/consumers/odr. We are neither obliged nor willing to participate in dispute resolution proceedings before a consumer arbitration board.
ChatGPT, Claude, Gemini and Copilot are trademarks of their respective owners. Velorinya works with them but is an independent product — not affiliated with or endorsed by OpenAI, Anthropic, Google or Microsoft.