Legal

Privacy Policy

Last updated July 2026 — effective immediately.

Overview

Kinky Match is built for the people you explicitly invite — never strangers, never public profiles, never a searchable directory. There's no account, no login, no password: your presence in a session is just an invite link and, optionally, a display name you pick. This page explains, honestly, what we collect to make that work, who else ever touches it, and when it stops being tied to you.

This isn't boilerplate copied from somewhere else and left unread — it's written to match exactly how this specific product is built, and it's kept current as the product changes. Where something below is still a placeholder pending our own paperwork (our registered business details, for instance), we've marked it plainly rather than guessing.

Who we are

Kinky Match is an independently developed and operated product ("we," "us," "our"). For the purposes of data protection law, we are the controller of the personal data described on this page. As a non-commercial project, we prioritize your privacy and transparency over data collection.

Age & eligibility

Kinky Match is strictly 18 and older. We don't knowingly collect personal data from anyone under 18, and the quiz content itself is gated behind a self-attestation age check before it's ever shown. If we become aware that someone under 18 has used the Service, we'll delete whatever data we hold about them as soon as reasonably possible.

See Protecting kids below for guidance if you're a parent or guardian concerned about a device in your household reaching adult content generally, not just this site.

What we collect

We collect the minimum needed to run a private compatibility quiz for a small, invite-only group. There's no browsing history to mine, no ad profile to build, and nothing here is used for anything beyond running the Service itself.

Session & participant information

  • An optional session name you choose, visible only to people in that session.
  • An optional display name per participant (we'll generate a random placeholder if you leave it blank) — this is never your real name unless you choose to type it.
  • Which question categories you've opted into, and an optional anatomy inventory used only to decide which questions are mechanically relevant to you — never inferred from anything you say about your identity, and never shown to anyone else as a "profile."
  • If you invite someone by email, that email address, used solely to send the invite.

Your answers

For each question you answer: a 0-5 interest rating, whether you flagged it as a hard limit, whether you're "already doing" it, or whether you skipped it. These are stored the instant you submit them so you can edit them later, add someone to the session, or pick up again days apart — see Retention & anonymization for how long, and Sensitive data & your consent for why this category of data gets special treatment.

Feedback

If you use our feedback form, whatever name, email, and message you type is emailed directly to us — it isn't written into our database at all, so there's no separate feedback record to retain or delete beyond that one email.

Technical & log data

Standard hosting-level data (request logs, error reports) generated by running the Service on Cloudflare's infrastructure — see Who processes it. We also use Cloudflare Web Analytics, which is cookie-less and reports aggregate site-traffic numbers only (page views, rough geography, referrers) — it doesn't identify you individually and isn't linked to your session or answers in any way.

Local Storage

We use your browser's local storage strictly to remember your active session and keep you connected when you refresh the page or come back later. This is purely functional — we do not use tracking cookies or local storage for advertising, profiling, or cross-site tracking.

Sensitive data & your consent

Your answers reveal things about your sexual interests and preferences. Under EU/UK GDPR and similar laws elsewhere, that makes them a special category of personal data — the kind that needs a clearly stated, specific legal basis to process, not just an assumed "legitimate interest."

Our legal basis for processing this data is your explicit consent, given when you confirm you're 18+ and continue past the entry screen — that same action confirms both your age and your consent to us processing your answers as described on this page, for the sole purpose of running your compatibility results within your own session. You can withdraw this consent at any time by not using the Service further and requesting deletion (see Your rights) — withdrawing doesn't affect anything already processed before that point.

We never infer sensitive categories (like sexual orientation) from anything you didn't directly tell us, and question relevance is driven purely by the anatomy inventory you optionally provide — never by any identity label.

How we use it

  • To run the quiz itself: deciding which question comes next, computing your individual archetype breakdown, and computing overlaps between participants in the same session.
  • To let a session be resumed, edited, or extended with new participants later, since answers are tied to your session while it's active.
  • To compute anonymous, aggregate statistics across all sessions (e.g. "8% of people share your top trait") — never traceable back to any one person, and only shown once there's a large enough sample that a single answer can't stand out.
  • To respond to feedback or support requests you send us directly.
  • To keep the Service secure and working — error monitoring, abuse prevention, and bot protection (Cloudflare Turnstile) at session creation and on the feedback form.

We do not use your data for advertising, do not build a profile of you for marketing, and do not sell it. There are no ad networks or trackers anywhere on this site.

Who processes it

We keep the list of who touches your data short and deliberate. Nothing here is chosen for ad-targeting or resale — only to actually run the Service.

  • Cloudflare, Inc. — hosts the entire Service (Workers, D1 database, Durable Objects, Turnstile bot protection, Email Service for sending invites, and Web Analytics). Cloudflare processes data under its own data processing terms and standard contractual clauses.
  • Sentry (Functional Software, Inc.) — error monitoring, so we can find and fix bugs. We deliberately scrub this: automatic breadcrumbs record only a message type and a question/niche identifier, never your actual answer, hard-limit flag, display name, or email.
  • Google Fonts & unpkg — we use Google Fonts for typography and unpkg to deliver icons. Loading these assets may expose your IP address to Google and unpkg (Cloudflare) respectively, strictly for the purpose of serving the files to your browser.

That's the complete list. No analytics ad-tech, no CRM, no marketing platform, no payment processor (there's nothing to pay for yet).

What we never show or do

  • No one but you ever sees your raw, individual answers — not your partner, not the group, not us in any browsable form. Others only ever see where your answers overlap with theirs.
  • A hard limit you set stays yours alone; it never blocks a match between two other people in your session.
  • We never sell, rent, or share your personal data with advertisers or data brokers.
  • We don't show adult-themed content anywhere outside the quiz flow itself — marketing and help pages stay general-audience.

Retention & anonymization

While your session is active, your answers are stored securely and tied to your session and participant identity — that's what lets you edit an answer later, add someone to the session, or pick up right where you left off, even days apart.

If a session sits untouched for 30 days, it goes stale — the old invite links stop working, and starting again means a fresh session. That inactivity is also the trigger for anonymization: your answers themselves are never deleted (they remain part of the aggregate statistics dataset described above), but the link between them and your identity is permanently severed. Concretely, we delete the participant record entirely and replace the identifier on your answer rows with a freshly generated random ID that was never stored anywhere else and can't be reversed back to you — the session's name is cleared too. From that point on, there is no record we can produce that ties those answers back to a real person, including you.

International transfers

The Service runs on Cloudflare's global network, so your data may be processed in data centers outside your own country, including outside the EU/UK. Where that happens, it's covered by Cloudflare's own standard contractual clauses and data processing terms, which are designed to provide the same level of protection required under GDPR regardless of where the processing physically happens.

Your rights

Because there's no account to log into, most of these rights are exercised the same way: by editing your own answers directly in an active session, or by emailing us (see Contact) for anything an active session's own controls can't do.

  • Access, correction, and portability — edit any answer, any time, while your session is active; email us for a copy of what we hold if you need it in another form.
  • Erasure ("right to be forgotten") — let a session go stale (30 days of inactivity) for automatic anonymization, or email us to request it sooner.
  • Withdraw consent — at any time, with the effect described in Sensitive data & your consent.
  • Lodge a complaint — with your local data protection authority (in the EU/UK) if you believe we've mishandled your data, independent of contacting us first.
  • California and other US state privacy laws — we do not sell or share personal information for cross-context behavioral advertising, and we collect only the categories described on this page, so there's nothing further to opt out of. Residents of California, Colorado, Connecticut, Virginia, and similar states can still email us to exercise access/deletion rights the same way described above.

Security

Data is stored using Cloudflare's own infrastructure security (encryption in transit via HTTPS, and at rest as provided by Cloudflare D1). Access to production data is limited to what's needed to operate the Service. If we ever become aware of a breach affecting your data, we'll notify affected users and relevant authorities as required by applicable law.

Protecting kids

Kinky Match is for adults only and isn't designed, marketed, or intended for anyone under 18. If you're a parent or guardian and want to keep a shared device from reaching adult sites generally (not just this one), reputable parental-control tools like content filtering built into your operating system, browser, or router, or your internet provider's own filtering options, are the most reliable way to do that — no single site's own age check is a substitute for that kind of control.

This site is labeled RTA ("Restricted To Adults"), a free, widely-recognized standard that most parental-control software and filtering services already know how to block automatically — see rtalabel.org for details on how it works.

Changes to this policy

We may update this policy as the Service changes. If we make a material change, we'll update the date at the top of this page. Continuing to use the Service after a change means you accept the revised policy.

Contact

Questions about this policy, or a request relating to your data — reach us at privacy@kinkymatch.app, or use the feedback form.