Pairanoid answers are not automatically added to your iOS app profile.
Anyone who receives a Pairanoid capability link may obtain the access associated with it.
Pairanoid processes original answers so it can compare two people's results.
Use the controls in the service or contact support.
1. Who is responsible for the data
The service operator is Draw4love. Here, “Draw4love” means the name of the service, not a stated name of a separate legal entity. For privacy questions, email support@draw4love.com.
This policy applies to the draw4love iOS app, draw4love.com, and the Pairanoid web beta. It does not apply to third-party websites or apps that we may link to.
2. The draw4love app and Pairanoid are separate services
The draw4love app is intended for sending drawings and collages to a partner's widget. Pairanoid includes shared compatibility quizzes and a separate, individual Power Check. The Power Check does not create a pair result.
Important: we do not automatically combine original Pairanoid answers with drawings, subscription information, or a profile in the iOS app. If an optional integration is introduced in the future, it will require a separate, clear action and an update to this policy.
3. Data in the draw4love iOS app
Depending on the features selected, the app processes:
- account and pair identifiers, an invitation code, and connection status with a partner;
- drawings, collages, and private captions or short notes sent to a partner, plus technical delivery metadata;
- a local copy of the latest content in the protected app and widget container on the device;
- an app notification push token, which may be registered for silent subscription-access updates even when alert notifications are turned off; alert delivery still requires the user's permission;
- a separate WidgetKit update token plus widget kind and size metadata when a draw4love widget exists and iOS supplies that token; this system token may be registered even when alert notifications are turned off;
- subscription status and transaction identifiers that Apple provides to confirm access; we do not receive full bank card details;
- the adult-eligibility result, declaration source, consent version, and confirmation time; the app does not collect an exact birth date;
- a signed App Transaction from Apple when the app establishes whether the current purchase session is using the Sandbox or Production environment. The backend verifies this proof but does not retain the signed payload or its App Transaction identifier;
- the IP address used for rate limiting and limited request or security-event details needed for abuse prevention and troubleshooting. Security events may include an account or pair identifier when relevant.
The current iOS app does not upload device crash reports or performance telemetry. If that changes, this policy and the App Store privacy disclosures will be updated before collection starts.
This data is needed to create a pair, deliver content to the correct partner, display it in the widget, restore purchases, maintain security, and answer support requests.
4. Data in the Pairanoid web service
Pairanoid is a beta product for users aged 18 and over. It may process:
- a pair identifier, pair code, participant status, and selected quizzes;
- original answers (raw answers), results, scores, methodology versions, and shared activity history;
- relationship check-ins or notes, if a user enters them in an available feature;
- invitations and random capability tokens in private links;
- local browser data needed to continue a session and recover the pair on that device;
- the IP address and limited request or security-event logs used for rate limiting, abuse prevention, and troubleshooting. We do not put original answers in request logs or use them for advertising analytics.
Answers are used to calculate a result, synchronize two participants, show a shared report, provide an export on request, and operate Pairanoid features. Do not enter information in free-text fields unless it is needed to complete the quiz.
Private Power Check
The Power Check is intentionally separate from the shared quiz system. Its answers are held only in the memory of the open page while the check is in progress. Its categorical result is calculated in the browser and is not sent to the Pairanoid API, written to local or session storage, added to pair history or export, used for analytics, shared with a partner, or used to send a notification. The in-page state is cleared when the user leaves, reloads, or closes the page and when a restored browser page is shown from the back-forward cache.
This design does not make the device invisible. A browser may still show that the Pairanoid page was visited, the web server may process the IP address and ordinary request details when serving the page, and device, network, account, parental-control, or monitoring software may expose browsing activity. Following a support-directory link opens an independent third-party service governed by its own privacy policy. If a device may be monitored, use a safer device when possible.
Pairanoid is not a medical, psychotherapy, diagnostic, or emergency service. A shared quiz result may be a starting point for conversation, not an assessment of a person or a prediction about a relationship. A Power Check result should not be shared or used to start a confrontation when doing so could increase risk.
5. Invitations and capability links
A private Pairanoid link may contain a random token that acts as an access key to an invitation, result, or pair data within the permissions of that link. The server must read the token to verify access.
- Do not publish the link or forward it to anyone else.
- Do not paste the full link into public forms, screenshots, or support requests.
- If the link is exposed, stop using it and, where available, delete the pair or create a new one.
Public pages on draw4love.com do not use external advertising scripts or fonts. Pairanoid may use only browser data and server logs that are technically necessary for its operation.
6. Retention and security
draw4love account deletion
When in-app account deletion succeeds, live account content, device and widget registrations, sessions, and active subscription and renewal rows are removed. The signed App Transaction used to verify the purchase environment is not retained, so there is no separate App Transaction binding to keep after deletion. For up to 30 days, we retain a one-time deletion receipt containing a non-reversible confirmation-token digest, the pseudonymous deleted-account identifier, and expiry metadata so a lost deletion response can be retried safely; automatic cleanup then deletes the receipt. The deleted account row retains a randomized, HMAC-based tombstone instead of the raw Sign in with Apple subject so deletion remains terminal and the old identity is not attached accidentally.
Deleting an account removes its live subscription entitlement and renewal rows, but does not cancel billing handled by Apple. We retain a minimal purchase-ownership record containing the App Store environment, Apple's original transaction identifier, its creation time, and a link to the pseudonymous deleted-account tombstone. It prevents the purchase from being transferred or attached to a different or newly created draw4love account and supports refund, chargeback, fraud, accounting, or legal obligations. Restore Purchases cannot reattach that purchase after the owning draw4love account is deleted, even if a new account uses the same Sign in with Apple identity, so manage or cancel the Apple subscription before deleting the account. This record is retained while it is reasonably needed for those purposes; the production retention schedule must also comply with applicable law.
Pairanoid invitations
The target lifetime of an incomplete invitation is 7 days. It should expire after that. While Pairanoid is in beta, this is a stated retention target that we are verifying together with automatic deletion; do not rely on an invitation as permanent storage.
Answers and pair data
An empty pair with no invitations, results, check-ins, or purchases is automatically deleted after 24 hours of inactivity. A pair with history and no active pending invitation is automatically deleted after 365 days without changes. Cleanup runs when the service starts and when API requests are handled; deletion cascades to invitations, results, and related technical records for the pair.
Data may also be deleted sooner through an action by the pair owner, a verified user request, or technical cleanup of the beta environment. Beta data may be reset when the service is updated. Technical logs are kept only for as long as reasonably necessary for security, diagnostics, and legal obligations.
Security measures
We use access restrictions, random tokens, and web-service protection measures. No storage or transmission method provides an absolute guarantee. Users are also responsible for securing their devices and private links.
7. Providers and data transfers
The services may use providers for hosting, image-safety processing, notification delivery, support email, security monitoring, and infrastructure. They receive only the data needed for their function and act under contractual or other applicable data-protection requirements.
draw4love safety processing: after a user accepts the displayed processor disclosure and chooses to send artwork, draw4love sends the normalized image, its caption, and text extracted locally from the image to the OpenAI Moderations API solely to classify prohibited or abusive content before private delivery. This request does not include the user's draw4love account ID, Apple ID, partner identity, invite code, purchase record, or push token. If safety processing is unavailable or does not approve the artwork, the artwork is not published. OpenAI's handling is governed by its Privacy Policy and API data controls. OpenAI states that API data is not used to train its models unless the API customer opts in; draw4love does not authorize that use.
For iOS purchases and notifications, Apple and its providers may act as separate controllers. Their processing is governed by Apple's policies. Data may be processed in countries other than the user's country, subject to safeguards required by law.
8. Export, correction, and deletion
- Pairanoid: Export and Delete are available only to the device that holds the owner capability for the person who created the pair. A participant capability received after answering an invitation allows the participant to continue quizzes, results, and check-ins, but not to export all original answers or delete the entire pair. If the owner's controls are missing or do not work, contact support and provide the pair identifier without original answers and without the full capability link.
- draw4love app: account and pair deletion are available in the app; support can assist if an in-app control does not work. Deleting the app from a phone does not by itself delete server data.
- Apple subscription: deleting data does not cancel a subscription. It must be managed separately in Apple Account settings. Account deletion permanently ends that draw4love account's access, and Restore Purchases cannot reattach its purchase to a newly created draw4love account, so manage or cancel the subscription before deletion.
We may request reasonable verification so that data is not disclosed or deleted at the request of someone else. If access is based only on a lost capability link, we may be unable to confirm entitlement to the data safely. Export and deletion also take into account the rights of the other participant in the pair and mandatory legal requirements.
You can disable push notifications in iOS settings. You can clear local Pairanoid data using browser controls, but this does not necessarily delete the pair from the server.
9. Age and sensitive situations
Draw4love and Pairanoid are intended only for people aged 18 and over. We do not knowingly collect data from children. If you believe a minor has submitted data, tell us.
The services are not intended for reports of threats, violence, self-harm, or other emergencies. If there is immediate danger, contact local emergency services or someone you trust.
10. Changes and contact
We may update this policy as the services develop. A new version will be published on this page with a new date. If a change materially affects data processing, we will try to provide notice in the product or in another prominent way.
Questions and requests for access, export, or deletion: support@draw4love.com.