Privacy Policy
Effective: August 14, 2026
Welcome to inTimid, Inc. (“inTimid,” “we,” “us” or “our”).
This privacy policy (“Policy”) explains how we collect, use, and disclose information about our users when you use our mobile application (the “App”), our Web site (the “Site”) and other online products and services that link to this Policy (collectively, the “Service”). We refer throughout this Policy to our users as “User,” “you,” or “your.” By using the Service, you consent to our collection, use and disclosure of your personal information as described in this Policy.
We take your privacy seriously. If you have any questions about this Policy or about privacy at inTimid, please contact us at privacy@intimid.net.
What Data Do We Collect?
Personal Data
Personal Data We Collect from Users
When a User indicates interest in joining our mailing list, we collect the following identifying information via our sign-up form for our mailing list: email address, and ZIP code. We collect this information through a landing page on the Site.
When a User creates an account to log into our app for the first time, we collect the following identifying information: copy of government identification (passport, green card, driver license), followed by collection of photographic selfie for verification. We collect this information through a third party provider (Persona). Persona retains the identification image and verification photographs; we do not store the identification image or photographs. From the identification, we retain the User’s first name, birth month and year, and ZIP code and city.
We also collect profile and analyzed data from Users. When Users sign up for our Service, we collect profile information based upon User interaction with the AI covering all types of personal preferences regarding the User’s lifestyle, preferences, and potential partner’s lifestyle. Please note this list is not exhaustive, as the profile creation is managed via AI, which is designed to be dynamic and adaptable. We collect this information through the App.
Tokens, Cookie Policy and Use of Other Tracking Technology
When you use our App we use tokens, cookies, or similar technologies like single-pixel gifs and web beacons, to record log data. We use tokens stored by Firebase, and these are refreshed with every login. We may use cookies, which are small data files stored on your hard drive or in device memory that help us to improve our Service and your experience, see which areas and features of our Service are popular, and count visits. Cookies may be session-based and persistent cookies. Session-based cookies last only while your browser is open and are automatically deleted when you close your browser. Persistent cookies last until you or your browser delete them or until they expire. They are unique and allow us to do site analytics and customization, among other similar things. If you access our App or Site through your browser, you can manage your cookie settings.
How Do We Use Your Data?
We may use information about you for various purposes, including to:
- Provide, maintain, and improve our Service;
- Provide and deliver the Service you request, process transactions, and send you related information, including confirmations;
- Investigate system issues that impact our ability to provide the Service to Users;
- Send you technical notices, updates, confirmations, security alerts and support and administrative messages;
- Respond to your comments, questions and requests and provide User service;
- Communicate with you about products, services, offers, promotions, rewards and events offered by inTimid and others, and provide news and information we think will be of interest to you;
- Monitor and analyze trends, usage, and activities in connection with our Service and improve and personalize the Service;
- Personalize and improve the Service and provide advertisements, content or features that match user profiles or interests; and
- Link or combine with information we get from others to help understand your needs and provide you with better service.
We will not sell, rent, or share Personal Data with third parties outside of our company without your consent, except in the following ways:
Law Enforcement and Internal Operations
Personal Data may be provided where we are required to do so by law, or if we believe in good faith that it is reasonably necessary (i) to respond to claims asserted against inTimid or to comply with the legal process (for example, discovery requests, subpoenas or warrants); (ii) to enforce or administer our policies and agreements with users; (iii) for fraud prevention, risk assessment, investigation, User support, product development and de-bugging purposes; or (iv) to protect the rights, property or safety of inTimid, its users or members of the general public. We will use commercially reasonable efforts to notify users about law enforcement or court ordered requests for data unless otherwise prohibited by law. However, nothing in this Privacy Policy is intended to limit any legal defenses or objections that you may have to any third-party request to compel disclosure of your information.
Business Transfer
In connection with a merger, acquisition, reorganization or sale of assets or in the event of bankruptcy, inTimid may sell, transfer, or otherwise share some or all of its assets, including your Personal Data. Under such circumstances, inTimid will use commercially reasonable efforts to notify its users if their personal information is to be disclosed or transferred and/or becomes subject to a different privacy policy.
Third Parties
We sometimes contract with other companies and individuals to perform functions or services on our behalf, such as software maintenance, data hosting, sending email messages, etc. We necessarily have to share your Personal Data with such third parties as may be required to perform their functions. When and to the extent we operate in jurisdictions which require Data Processing Addendum(s), EU Model Clauses and/or ensuring that third parties have EU-U.S. and Swiss-US Privacy Shield certification to ensure these parties take protecting your privacy as seriously as we do, we will take steps to ensure that applicable documentation is put into place.
Third Party-Service Providers
The following third-party processors collect personal data on our behalf and transmit it to us. We use the following third-party providers:
| Type of Provider | Third-Party Provider Details |
|---|---|
| Web Analytics and Text-to-Speech |
Third-Party Provider: AWS
Purpose of Use: Analytics/Text-to-Speech
Location of the Processing: United States
Privacy Policy: https://aws.amazon.com/privacy/
Basis for Processing: EU-US Data Privacy Framework, UK Extension, and Swiss-US Data Privacy Framework.
|
| Verification Service |
Third Party Provider: Persona
Purpose of Use: Verification Service
Location of Processing: United States, Germany
Privacy Policy: https://withpersona.com/legal/privacy-notices
Basis for Processing: EU-U.S. Data Privacy Framework (EU-U.S. DPF) and the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework (Swiss-U.S. DPF); EU-U.S. Data Privacy Framework Principles (EU-U.S. DPF Principles) with regard to the processing of personal data received from the European Union and the United Kingdom in reliance on the EU-U.S. DPF and the UK Extension to the EU-U.S. DPF; Swiss-U.S. Data Privacy Framework Principles (Swiss-U.S. DPF Principles).
|
| Voice AI Infrastructure |
Third-Party Provider: Vapi (Superpowered Labs Inc.)
Purpose of Use: Real-time processing of intake session audio (speech-to-text, natural language understanding, response generation)
Location of the Processing: United States
Privacy Policy: https://vapi.ai/privacy
Basis for Processing: Data Processing Addendum
|
| Authenticator Service |
Third-Party Provider: Firebase
Purpose of Use: Authenticator Service
Location of Processing: United States
Privacy Policy: https://policies.google.com/privacy
|
| Payment Processing |
Third-Party Provider: Revenuecat
Purpose of Use: Payment Processing
Location of Processing: United States
Privacy Policy: https://www.revenuecat.com/privacy/
Basis for Processing: Data Processing Addendum; other agreements
Third-Party Provider: Google Play Store
Purpose of Use: Payment Processing
Location of Processing: United States
Privacy Policy: https://policies.google.com/privacy
Third-Party Provider: Apple App Store
Purpose of Use: Payment Processing
Location of Processing: United States
Privacy Policy: https://www.apple.com/legal/privacy/en-ww/
Basis for Processing: Standard Contractual Clauses
|
| In-App Messaging |
Third-Party Provider: Cometchat
Purpose of Use: In-App Messaging
Location of Processing: United States
Privacy Policy: https://www.cometchat.com/legal-privacy-policy
Basis for Processing: Unspecified
|
| Open AI |
Third-Party Provider: ChatGPT
Purpose of Use: AI Services, including avatar image generation (receives your verification photographs from Persona as reference images while your avatar is created; the photographs are not stored by inTimid) and processing of avatar text prompts derived from your intake session content, de-identified on a best-effort basis
Location of Processing: United States
Privacy Policy: https://openai.com/policies/privacy-policy/
Basis for Processing: Unspecified (performance of contract)
|
| Individual AI Modeling |
Third-Party Provider: Claude AI
Purpose of Use: Individual AI Modeling
Location of Processing: Canada, United States
Privacy Policy: https://www.anthropic.com/legal/privacy
Basis for Processing: Standard Contractual Clauses
Third-Party Provider: Anthropic
Purpose of Use: Individual AI Modeling
Location of Processing: Canada, United States
Privacy Policy: https://www.anthropic.com/legal/privacy
Basis for Processing: Standard Contractual Clauses
Third-Party Provider: xAI (Grok)
Purpose of Use: Individual AI Modeling — processing of avatar text prompts derived from your intake session content, de-identified on a best-effort basis
Location of Processing: United States
Privacy Policy: https://x.ai/legal/privacy-policy
Basis for Processing: Unspecified (performance of contract)
|
| AI Modeling |
Third-Party Provider: Gemini (Google)
Purpose of Use: Open AI Modeling
Location of Processing: United States
Privacy Policy: https://policies.google.com/privacy
Third-Party Provider: Together.ai
Purpose of Use: AI Modeling
Location of Processing: United States and other places where involved parties are located
Privacy Policy: https://www.together.ai/privacy
Basis for Processing: Standard Contractual Clauses
|
How is My Data Protected?
We have implemented reasonable administrative, technical, and physical security measures to protect your personal information against unauthorized access, destruction, or alteration. For example:
- SSL encryption (https) where we deal with personal data. Personal Data is encrypted in transit using https/ssl/tls and encrypted at rest. Personal data stored on our database is encrypted
- Password protection on your account.
- Rotating verification codes to access by some parties
- Data is kept on secure, encrypted servers, located in the US.
- Restricting staff access to Personal Data, protected by password logs and two factor authentication.
However, because no security system can be 100% effective, we cannot completely guarantee the security of any information we store, process, or transmit.
Payments Encryption: inTimid utilizes only PCI-DSS compliant third-party payment processors to ensure the security of your personal information. Users should review https://www.revenuecat.com/privacy/, https://policies.google.com/privacy, and https://www.apple.com/legal/privacy/data/en/app-store/ before initiating transactions on the Site or App.
Your Choices
The foregoing rights apply to persons located in the United States.
Transnational Transfer of Data
If you are providing your Personal Data to us directly to use our Services, we will transmit your data, including your Personal Data, to the United States in order to fulfill our contractual obligations to you.
Your California Privacy Rights
California residents who have an established business relationship with inTimid may make a written request to inTimid about whether inTimid has disclosed any Personal Information to any third parties for the third parties’ direct marketing purposes during the prior calendar year. To make such a request, please send an email or write us:
Name: Andreas Da Costa
Address: 550 South Palos Verdes Street, #865, San Pedro, California 90731
Phone: 213-726-8967
Email: privacy@intimid.net
Third Party Websites
We may link to other websites. When you click on one of these links, you are ‘clicking’ to another website. inTimid does not control the data collection or privacy practices of such third-party sites. We encourage you to read the privacy policies of any third-party sites, as their collection, use and storage practices, and policies may differ from ours.
Minors Under 18 Years of Age
inTimid does not knowingly collect or store any personal information from or about children under the age of 18.
If you believe a child under the age of 18 has under any circumstances provided us with personal information and data, a parent or legal guardian can email us at privacy@intimid.net to request that their children’s information be deleted from our records.
Changes to Privacy Policy
inTimid reserves the right to amend this Privacy Policy at any time. If inTimid makes material changes to its Privacy Policy, we will notify you by (1) changing the Effective Date on our Privacy Policy and (2) providing additional notification via email or other means as we may deem commercially reasonable.
Questions?
If you ever have any questions about our online Privacy Policy, please contact us. We respect your rights and privacy and will be happy to answer any questions or concerns you might have. You may direct any such questions to us via email at privacy@intimid.net.