Privacy Policy

Last updated: March 11, 2026

1. Who We Are

SIDDES ("we," "us," or "our") operates the SIDDES mobile application and website (collectively, the "Service"). This Privacy Policy explains how we collect, use, share, and protect your personal information when you use our Service.

2. Information We Collect

Account Information: When you create an account, we collect your email address, display name, username, and optionally your profile photo, bio, location, and website URL. We may also collect your date of birth and age-verification status to enforce minimum-age and safety rules.

Content You Create: We store the flips you post (Side A and Side B text, images, and videos), comments, reactions, takes, reports, and moderation decisions tied to your account. If a Side B is locked behind a countdown, drop reveal, or other reveal mechanic, we still store it at creation time so we can moderate it, protect it, and reveal it later under the product rules you chose.

Usage Data: We collect information about how you interact with the Service, including pages viewed, flips engaged with, time spent, device type, operating system, and browser type. This helps us improve the experience.

Device Information: We collect device identifiers, push notification tokens, and IP addresses for security, analytics, and delivering push notifications.

Cookies & Local Storage: We use essential cookies and browser local storage to maintain your session, remember your preferences (such as theme), and improve performance. See Section 7 for details.

2A. Contacts & Discoverability

If you choose to import or sync contacts, we use the email addresses and phone numbers you provide only to match against SIDDES accounts that opted into discoverability for that identifier. We do not expose a raw address-book list back to other users.

We store contact-sync status, consent capture time, retention settings, and the resulting imported-contact graph needed to power follow suggestions and re-sync. You can disconnect contact sync or wipe imported contacts at any time from Settings.

3. How We Use Your Information

We use your information to operate and improve the Service, personalize your feed and discovery experience, deliver push notifications you have opted into, detect and prevent fraud or abuse, enforce our Terms of Service, moderate both sides of flips before and after publication, enforce age and account-trust controls, communicate with you about your account, and comply with legal obligations. We do not sell your personal data to third parties.

4. How We Share Your Information

Public Content: Your profile information (display name, username, avatar, bio) and any flips you post with "public" audience are visible to other users and may be indexed by search engines. Locked Side B content is not intended to be indexed or exposed to viewers who do not yet have access to it.

Service Providers: We share data with trusted third-party services that help us operate (hosting, database, email delivery, push notifications, error tracking, analytics). These providers are contractually required to protect your data.

Legal Requirements: We may disclose information if required by law, court order, or governmental regulation, or if we believe disclosure is necessary to protect our rights, your safety, or the safety of others.

5. Two-Sided Content & Reveal Mechanics

SIDDES is built around two-sided content. Side A may appear immediately, while Side B can remain locked until a countdown, manual reveal, or drop workflow completes. We process both sides at creation time for moderation, abuse prevention, and secure storage. Side B mentions and notifications may be delayed until reveal when the product experience requires it.

6. Data Retention

We retain your account data for as long as your account is active. If you delete your account, we remove or anonymize your profile, authored flips, takes, comments, reactions, notifications, push subscriptions, and other account-linked records from our live systems as part of the account-deletion workflow. Limited security, audit, or backup material may persist for a bounded operational retention period before expiring in the normal course of service protection and disaster recovery.

7. Your Rights

Depending on your location, you may have the right to access, correct, or delete your personal data, object to or restrict certain processing, request data portability, and withdraw consent where processing is based on consent.

You can exercise these rights through Settings → Account → Download My Data or Delete Account. The export currently includes profile data, authored content, reactions, notifications, blocks, mutes, auth logs, push subscriptions, audit activity, contact-sync consent and retention metadata, imported contact-group records, queued mention and moderation records tied to your account when present. You can also email us at privacy@siddes.com.

8. Cookies & Tracking

We use strictly necessary cookies to maintain your authenticated session and remember your theme preference. We use analytics events (processed server-side) to understand usage patterns. We do not use third-party advertising cookies. You can manage cookie preferences through your browser settings or our cookie consent banner.

9. Data Security

We implement industry-standard security measures including encryption in transit (TLS), encrypted storage, rate limiting, CSRF protection, Side B access controls, and Content Security Policy headers. While no system is perfectly secure, we take reasonable steps to protect your data from unauthorized access, alteration, or destruction.

10. Children's Privacy

SIDDES is not intended for users under the age of 13 and may apply a higher minimum age in some regions or product configurations. Accounts under 13 require a verified parent or guardian consent path before they can use the Service, and if that path is not available we block the account from participation. We may also apply stricter local age thresholds for interaction or other age-restricted features based on country, region, locale, or legal obligation. If we learn we have collected personal information from a child who is not permitted to use the Service, we will delete it promptly. If you believe a child has provided us with personal data in violation of these rules, please contact us.

11. International Users

If you are accessing the Service from outside the country where our servers are located, your data may be transferred to and processed in a different jurisdiction. By using the Service, you consent to this transfer. We comply with applicable data protection laws including the GDPR for European users.

12. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting a notice in the app or sending you an email. Your continued use of the Service after changes take effect constitutes acceptance of the updated policy.

13. Contact Us

If you have questions about this Privacy Policy or your personal data, contact us at privacy@siddes.com.