Privacy Policy

Rated Dating LLC · Effective June 15, 2026 · Last Updated June 15, 2026

1. Introduction

Rated Dating LLC (“Company,” “we,” “us,” or “our”) operates the Rated mobile application and website at ratedapp.com (collectively, the “Service”). Rated is an AI-powered facial scoring and self-discovery platform — not a traditional matchmaking or messaging service. This Privacy Policy explains how we collect, use, disclose, and protect your information.

Critical Notice — Biometric and Facial Data

Rated’s core feature analyzes your facial photographs using artificial intelligence. This constitutes collection and processing of biometric identifiers and biometric information under the laws of multiple U.S. states and international jurisdictions. Please read this entire Policy before submitting any image or using the scoring feature.

By accessing or using the Service, you acknowledge you have read, understood, and agreed to the practices described here. If you do not agree, do not use the Service.

2. What Information We Collect

2.1 Biometric Data and Facial Images

When you use our AI scoring feature, we collect:

These constitute biometric identifiers and biometric information as defined under applicable law, including the Illinois Biometric Information Privacy Act (BIPA), Texas Capture or Use of Biometric Identifier Act (CUBI), and the biometric provisions of comprehensive privacy laws enacted in 20+ U.S. states as of 2026.

We do not use facial images or biometric data to infer race, ethnicity, religion, political views, sexual orientation, or any other protected characteristic. Our scoring is limited to aesthetic and compositional facial analysis you explicitly request.

2.2 Account and Identity Information

2.3 Payment and Transaction Data

2.4 Device, Technical, and Usage Data

2.5 Communications

2.6 Information from Third-Party Sign-In

If you sign in using Apple ID or Google, we receive only your name and email address. We never receive your Apple or Google account passwords.

3. How We Use Your Information

3.1 Providing and Delivering the Service

3.2 Purchase Linking — Phone Number

We use your phone number as a linking identifier to connect purchases made through Shopify on ratedapp.com to your in-app account, triggering feature unlocks across our web and mobile platforms. This linking is a core function of the Service.

3.3 Safety, Security, and Fraud Prevention

3.4 Communications

3.5 SMS / Text Messaging

We use your mobile phone number to send one-time passcodes (OTP) for account verification. Mobile opt-in data and your phone number will not be shared with third parties or affiliates for marketing or promotional purposes. For full details including message frequency, data rates, opt-out instructions, and carrier liability, see our dedicated SMS Messaging Policy.

3.6 Legal Compliance

3.7 Service Improvement

4. How We Share Your Information

We do not sell your personal information or biometric data. We do not share for cross-context behavioral advertising. We share only as described below.

4.1 AI Processing Partner — OpenAI

Our facial scoring feature is powered by OpenAI’s API. When you submit an image for scoring:

4.2 Payment Processors

ProcessorRole
ShopifyWeb checkout at ratedapp.com
AppleiOS in-app purchases
GoogleAndroid in-app purchases

We do not receive or store full payment card numbers from any of these processors.

4.3 Service Providers (Processors)

We engage vetted vendors under confidentiality and data processing agreements, including:

These vendors may only process your data as directed by us and for the purposes described in this Policy.

4.4 Business Transfers

If Rated Dating LLC is involved in a merger, acquisition, asset sale, or restructuring, your information may transfer to the successor entity. We will notify you by email and/or in-app notice at least 30 days before any such transfer, and the successor will be bound by the terms of this Policy or a materially equivalent policy.

4.5 Legal Disclosures

We may disclose your information when required by law, legal process, or governmental authority, or when we believe in good faith that disclosure is necessary to: (a) comply with a legal obligation; (b) protect our rights or property; (c) prevent imminent harm; or (d) protect the safety of users or the public.

4.6 CSAM Reporting

We are required by federal law (18 U.S.C. § 2258A) to report any apparent child sexual abuse material to NCMEC. We cooperate fully with law enforcement in any related investigation.

5. Biometric Data — Enhanced Protections

5.1 Explicit Consent

We obtain your explicit, informed consent before processing your biometric data. You provide this consent each time you submit an image using the scoring feature. You may withdraw consent at any time by deleting your account (Section 10.3).

5.2 No Sale or Profit from Biometric Data

We never sell, lease, trade, or otherwise profit from your biometric identifiers or biometric information. No biometric data is disclosed to any third party except to OpenAI for real-time scoring delivery, and to law enforcement or regulatory authorities as required by law.

5.3 Storage Limitations

5.4 Security Measures for Biometric Data

5.5 U.S. State Biometric Rights

As of June 2026, 20+ U.S. states have comprehensive privacy laws that treat biometric data as sensitive personal information. The most protective state law applicable to you may govern your rights.

Illinois (BIPA — 740 ILCS 14): You have the right to receive written notice of biometric data collection (this Policy constitutes such notice); receive a written policy on retention and destruction (Section 5.3); prevent sale of your biometric data; and bring a private right of action for violations.

Texas (CUBI — Tex. Bus. & Com. Code § 503.001): We have obtained your consent prior to collection and will not sell your biometric identifiers.

Washington, Maryland, Connecticut: We comply with applicable biometric privacy requirements and do not sell biometric data.

California (CCPA/CPRA): Biometric data is “sensitive personal information” under California law. Your rights are detailed in Section 11.

All other states: We extend the core protections of this Section (notice, consent, no sale, retention limits, deletion rights) to all users regardless of state of residence, as a matter of Company policy.

6. EU AI Act Compliance (EEA, UK, and International Users)

6.1 Our AI System Classification

We have assessed our AI scoring system against EU AI Act requirements. Our system:

6.2 GDPR Compliance (EEA, UK, Switzerland)

If you are located in the European Economic Area, United Kingdom, or Switzerland, the following applies in addition to the rest of this Policy.

Processing ActivityLegal Basis
Facial image scoring (biometric data)Explicit consent (Art. 9(2)(a) GDPR)
Account creation and managementPerformance of contract (Art. 6(1)(b))
Payment processingPerformance of contract (Art. 6(1)(b))
Fraud prevention and securityLegitimate interests (Art. 6(1)(f))
Legal complianceLegal obligation (Art. 6(1)(c))

Your GDPR Rights: Access, rectification, erasure, restriction of processing, data portability, objection to legitimate-interest processing, and withdrawal of consent at any time without affecting prior lawful processing.

Data Transfers: Your data may be transferred to the United States. We rely on Standard Contractual Clauses (SCCs, 2021 Commission Decision) as our transfer mechanism.

Supervisory Authority: You have the right to lodge a complaint with your local EU/EEA/UK data protection supervisory authority.

7. Data Retention

CategoryRetention Period
Account informationDuration of account + 30 days after deletion
Raw facial images (not saved)Duration of scoring session only (real-time)
AI scores and derived insightsUntil user deletes or account is deleted
Biometric identifiers (maximum)3 years from last interaction with Service
Transaction and payment records7 years (tax and legal compliance)
Device and log data90 days rolling
Customer support communicationsDuration of account + 7 years
Consent recordsLife of account + 7 years

8. Children’s Privacy and Age Verification

The Service is exclusively for users 18 years of age or older. We do not knowingly collect personal information from anyone under 18. If we discover that a user under 18 has created an account or submitted images, we will immediately delete all associated data and terminate the account. If you believe a minor has accessed the Service, contact us immediately at safety@ratedapp.com.

9. Cookies and Tracking

Our website (ratedapp.com) uses cookies and similar technologies for session management, Shopify checkout functionality, site analytics, and remembering your preferences. You can control cookies through your browser settings. For full details, see our Cookie Policy.

10. Your Rights and Choices

10.1 Access and Portability

Request a copy of your personal data: email privacy@ratedapp.com with subject “Data Access Request.” We will respond within 45 days and provide data in a commonly used, portable format.

10.2 Correction

Update most account information directly in app settings. For data you cannot update yourself, contact us.

10.3 Deletion

Delete your account in app settings (Account › Delete Account). Upon deletion: account and profile data are deleted within 30 days; stored facial images and biometric-derived data are deleted within 30 days; transaction records are retained 7 years for legal compliance.

10.4 Opt-Out of Marketing

Opt out via the unsubscribe link in any marketing email, notification settings in the app, or by emailing privacy@ratedapp.com. This does not affect transactional communications.

10.5 Withdraw Biometric Consent

Withdrawing consent for biometric processing means you will no longer be able to use the AI scoring feature. To withdraw, delete your account or contact privacy@ratedapp.com.

11. California Residents — CCPA/CPRA

11.1 Categories Collected (Past 12 Months)

11.2 Your Rights

11.3 Submitting Requests

Contact: privacy@ratedapp.com — Subject line: “CCPA Rights Request.” We will verify your identity and respond within 45 calendar days.

12. Security

We implement administrative, technical, and physical safeguards including:

13. Contact Us

PurposeContact
Privacy, CCPA, GDPR, biometric rightsprivacy@ratedapp.com
General supportsupport@ratedapp.com
Child safety reportingsafety@ratedapp.com
Legal noticeslegal@ratedapp.com

14. Changes to This Policy

When we update this Policy, we will update the “Last Updated” date and notify you via email and/or prominent in-app notice at least 30 days before material changes take effect. For changes to biometric data processing, we will obtain fresh explicit consent before applying new practices.