Privacy Policy
Last updated: September 12, 2026
RimoRosh ("we", "our", or "us") respects your privacy. This Privacy Policy explains how we collect, use, and protect your information when you use our mobile application.
1. Information We Collect
We collect the following types of information:
Account Information
- Email address
- Username
- Name
- Profile photo (optional)
- Phone number (optional)
User Content
- Photos, videos, and audio you upload
- Messages you send to other users
- Comments, likes, and interactions
Device Information
- Device type and operating system
- IP address
- App usage data
Location
- Only if you choose to share location in a post
Camera and Microphone
- Used only when you actively record photos, videos, or voice messages
Connect Information (only if you use the Connect feature)
- Your confirmation that you are 18 or older
- The country server you choose
- Live camera and microphone streams during a call (transmitted, not recorded or stored by us)
- Text messages sent inside a call (shown during the call only, not stored by us)
Discover Information (only if you use the Discover feature)
- Date of birth (taken from your account, used to verify you are 18+)
- Gender, and the gender you want to be shown
- City (your chosen city and its identifier), and its coordinates
- A short description you write about yourself
- Photos you add to your Discover card
- Your likes, skips and matches
- Your Discover subscription status and its expiry date
2. How We Use Your Information
We use your information to:
- Provide and improve the app
- Enable social features (follow, chat, post)
- Show relevant content
- Display advertisements through Google AdMob
- Respond to support requests
- Keep the platform safe
3. Information Sharing
We do not sell your personal information. We may share information with:
- Firebase (Google) for authentication and data storage
- Google AdMob for advertising
- Other users (only what you post publicly)
- ZEGOCLOUD, for carrying live video calls in the Connect feature
4. Your Rights
You have the right to:
- Access your personal data
- Delete your account and data at any time
- Request a copy of your data
- Correct inaccurate data
To delete your account: Go to Profile โ Settings โ Delete Account
5. Children's Privacy
RimoRosh is not intended for anyone under 18. We do not knowingly collect data from anyone under 18. If we learn that we have collected data from a person under 18, we delete it.
6. Connect
Connect is optional. If you never open it, none of the data in this section is collected.
Why we collect it
- Age confirmation: to confirm that you are 18 or older. Connect is closed to anyone under 18.
- Country server: to match you with people on the server you selected.
- Camera and microphone: to carry the live call while it lasts.
How the call is handled
- Your camera and microphone streams are transmitted live to the other person through our call provider (ZEGOCLOUD) for the duration of the call.
- The call is not recorded and not stored by RimoRosh.
- Text messages sent inside a call are shown during that call only and are not stored on our servers.
- When you turn your camera off, the other person sees a black screen and no video is sent.
Reports and blocks
- If you report someone, we store your user ID, their user ID, the reason you selected and the time of the report. Reports are reviewed as quickly as we reasonably can.
- If you block someone, we store their user ID in your block list so that you are never matched with them again.
Legal basis (GDPR)
- We process this data on the basis of your consent (Art. 6(1)(a) GDPR), given by starting a call, and to perform the service you requested (Art. 6(1)(b) GDPR).
- Reports and blocks are processed on the basis of our legitimate interest in keeping the platform safe (Art. 6(1)(f) GDPR).
- You can withdraw your consent at any time by ending the call and not using the feature.
7. Discover
Discover is optional. If you never open it, none of the data in this section is collected.
Why we collect it
- Date of birth: to confirm that you are 18 or older. Discover is closed to anyone under 18.
- Gender and preference: to decide whose card is shown to whom.
- City and coordinates: to order cards by distance so that people near you appear first. Distance affects the order only, never who is excluded.
- Description and photos: these are the card that other users see.
- Likes, skips and matches: to avoid showing you the same person twice and to open a chat when two people like each other.
Who can see it
- Your card (name, profile photo, description, city, age and your Discover photos) is visible to other Discover users.
- Your exact coordinates are never shown to anyone. Only the city label you selected is displayed.
- A like is silent. The person you liked is not told, and nothing on your card reveals it. The paid subscription shows a user the list of people who liked them.
- A skip is never shown to anyone.
How long we keep it
- If you switch your Discover visibility off, your card stops being shown to others and your photos stay stored, so that your card is intact if you switch it back on.
- If you delete a photo from your card and save, that photo is deleted from our storage.
- If you delete your RimoRosh account, your Discover profile, photos, likes, skips and matches are deleted permanently.
- Skips expire automatically after 30 days.
Legal basis (GDPR)
- We process this data on the basis of your consent (Art. 6(1)(a) GDPR), given by choosing to set up a Discover profile, and to perform the service you requested (Art. 6(1)(b) GDPR).
- You can withdraw your consent at any time by switching Discover off or by deleting your account.
8. Data Security
We use industry-standard security measures to protect your data, including encrypted connections and secure cloud storage.
9. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page.
10. Contact Us
If you have questions about this Privacy Policy, contact us at:
Payment Information Privacy
When you use RimoRosh to purchase Stars (โญ) or send/receive virtual gifts, we process specific payment-related information through trusted third-party payment providers, depending on your platform.
Information We Collect
For Stars Purchasers (when buying Stars packages)
- Stars package selected (e.g., 50 Stars, 165 Stars, etc.)
- Transaction amount and currency
- Payment method used
- Transaction timestamp
- Transaction ID (from Apple or Stripe)
- Store country of the purchase, used to apply the correct VAT rate
For Senders (when sending gifts using Stars)
- Number of Stars used per gift
- Selected gift type (e.g., ๐น Rose, ๐ฐ Castle)
- Recipient user ID
- Optional message text
- Anonymous status preference
- Transaction timestamp
For Recipients (when receiving gifts)
- Stars received per gift
- Star balance and its EUR value at the current withdrawal rate
- Transaction history
- Stripe Connect account information (linked separately by Stripe)
- Withdrawal request history
Payment Processors
iOS (Apple devices)
All in-app purchases of Stars on iOS are processed exclusively through Apple's In-App Purchase system. Apple handles all payment details. We receive only:
- Transaction ID
- Product purchased (Stars package ID)
- Verification receipt
- Store country and price of the transaction
Apple's Privacy Policy: apple.com/legal/privacy
Android (Google devices) and Web
Star purchases on Android and other non-iOS platforms are processed by Stripe Inc.
- Processes credit/debit card payments
- Handles SEPA Direct Debit, Klarna, Google Pay, Bancontact, and other regional payment methods
- Privacy Policy: stripe.com/privacy
Withdrawals for Creators (Receiving Earnings)
Withdrawals of creator earnings are processed through Stripe Connect
- Processes bank transfers (SEPA, ACH, and international wires)
- Available in 40+ countries
- Handles KYC/AML verification independently
- Privacy Policy: stripe.com/privacy
For countries not supported by Stripe Connect, alternative arrangements may be made by contacting supportrimorosh@gmail.com.
What We Do Not Store
We do not store on our servers:
- Full credit card numbers
- CVV codes
- Bank account numbers
- Apple ID passwords
- Stripe login credentials
This sensitive information is handled directly by Apple and Stripe in compliance with PCI-DSS standards.
How We Use Payment Data
We use payment information to:
- Process Star purchases and credit your wallet
- Process gift transactions between users
- Apply the correct VAT rate based on the store country of the purchase
- Calculate platform revenue and accounting figures
- Convert Stars to EUR when a creator requests a withdrawal
- Process withdrawal requests via Stripe Connect
- Comply with legal and tax obligations
- Detect and prevent fraud
- Resolve disputes (refund requests, chargebacks)
- Maintain transaction records for accounting
Data Retention
Payment records are retained for 7 years to comply with German tax law (Abgabenordnung ยง147) and EU financial regulations. After this period, transaction data is anonymized or deleted.
This includes:
- Star purchase transactions
- Gift transactions
- Withdrawal records
- Wallet balance history
Your Rights
Under the GDPR and applicable laws, you have the right to:
- Access your transaction history (visible in your in-app wallet)
- Request a copy of your payment data
- Request deletion of your account (subject to legal retention requirements)
- Object to processing under specific circumstances
- Data portability for your transaction records
To exercise these rights, contact supportrimorosh@gmail.com.
International Transfers
Payment data may be transferred to countries outside the European Economic Area (EEA) for processing by:
- Apple Inc. (USA) - for iOS Star purchases
- Stripe Inc. (USA) - for Android purchases and creator withdrawals
These transfers are protected by:
- Standard Contractual Clauses approved by the European Commission
- The EU-US Data Privacy Framework (where applicable)
- Industry-standard encryption during transit and at rest
Security Measures
We protect payment information through:
- TLS/SSL encryption for all data transmission
- Tokenization of payment credentials by Apple/Stripe
- Cryptographic verification of Apple purchase receipts before any Stars are credited
- Firebase Security Rules limiting data access to authorized users
- Cloud Functions authentication for all sensitive operations
- Regular security audits
Stars Wallet Privacy
Your Star balance and its EUR value:
- Are private to your account and not visible to other users
- May be displayed publicly in Top Supporters lists (only if you support a creator and choose not to be anonymous)
- Are stored in Firebase Firestore, protected by access rules and encrypted in transit and at rest
- Can be reviewed at any time within the app
You can choose to send gifts anonymously to hide your identity from the recipient and the public Top Supporters list.
Contact
For questions about payment privacy or to exercise your rights, contact: