DOMMI
Legal

Privacy Policy

Effective date: August 18, 2026


1. Who we are

Dommi is a members’ House you enter by invitation. This Privacy Policy explains what information we collect through the Dommi mobile application and the website at dommisociety.com (together, the “Service”), how we use it, who we share it with, and the choices and rights you have.

The controller responsible for your information is Soul Surferz, LLC, a Delaware limited liability company in the United States. If you have any question about this policy or how we handle your information, write to us at [email protected]. We will give you a postal address on request.

2. Sensitive information, in plain terms

Some of the information you provide to Dommi is, under privacy law, sensitive information. In particular, the role you declare, who you say you are seeking, the terms and limits you record, and the structure of the relationships you seek and agree to may constitute special category data under the EU and UK General Data Protection Regulation, specifically data concerning your sex life or your sexual orientation. For members in California and certain other jurisdictions, this is treated as sensitive personal information.

We collect and process this information only where you have given us your explicit consent to do so, and only to provide the Service to you. You provide that consent within the app before this information is used. You may withdraw your consent at any time (see Section 9), and doing so does not affect the lawfulness of processing carried out before you withdrew it. We aim to store this information in the least identifiable form consistent with operating the Service, and we never use it for advertising.

3. Information we collect

Information you give us

  • Account and sign-in information. Your email address and the credentials you use to sign in. If you use Sign in with Apple or sign in with Google, we receive an account identifier and the email address that provider returns to us. If you use Apple’s private relay, we receive the relay address rather than your personal one.
  • Your date of birth. We collect it to confirm you are 18 or older, and we record the date and time of that confirmation.
  • Identity details. The name shown in the House, your gender identity, and who you are seeking.
  • Your role and your archetype. The role you declare, your answers to the in-app typology questions, and the archetype assigned from them.
  • Your Declaration. The written statement you author describing what you offer, what you seek, and what you will not cross.
  • Your portrait. A photograph you choose from your photo library. Portraits are stored in private file storage and are never given a public link.
  • Accords, Rituals, and messages. The clauses you negotiate and seal, the Rituals you keep, and the content of messages you exchange with other members.
  • Your city and coarse location. Only if you choose to record it. See “Location” below.
  • Guardian details. If you appoint a Guardian, we collect that person’s name and their phone number or email address so they can be notified of a real-world meeting. Please appoint someone who has agreed to it, and tell them we hold their contact details.
  • Safety reports and support messages. What you write when you report a concern or contact us for help, including any member you name.

Location

Recording your city is optional and always begins with you. When you choose it, the app asks your device for a coarse position, turns it into a city name, and stores the city and approximate coordinates on your own member record. We use them for one purpose: to measure roughly how far away another member is. We never collect your location in the background, and no other member is ever shown where you are. You can decline at the door and still use the Service, and you can update your city later in House settings.

The waitlist on this website

If you request an invitation through the form on dommisociety.com, we collect the email address you submit and the optional note you write, and we store them so we can contact you about admission to the House. You can ask us to remove your email from this list at any time by writing to [email protected].

Information we collect automatically

  • Device and notification information. Your platform, device model, and app version. If you allow notifications, we store a push token for your device so the House can reach you. Turning notifications off removes it.
  • Usage information. Records of how you use the Service, such as which screens you open and which actions you complete, with the time, your account identifier, and a session identifier. We use this to understand whether the Service works and where it fails.
  • Purchase and subscription state. Whether you hold an active subscription or entitlement, and the outcome of a purchase. We never receive or store your card details.
  • Technical records. Sign-in times, last activity, and the security and diagnostic logs our infrastructure providers keep, which include your IP address.

4. How we use your information

  • To create and administer your membership and to authenticate you.
  • To confirm that you are 18 or older.
  • To operate the core features of the Service: presenting members to one another, supporting Declarations, Accords, and the Rituals they become.
  • To personalize your experience using your archetype, your stated preferences, and, where you have given it, your city.
  • To send you notices you have asked for, such as check-ins and safety notices.
  • To support safety, moderation, and integrity across the House.
  • To provide and manage paid features, and to know whether a purchase entitles you to them.
  • To understand how the Service is used so we can fix and improve it.
  • To communicate with you about your membership, respond to your requests, and, where you have asked to join the waitlist, contact you about admission.
  • To comply with legal obligations and enforce our Terms of Service.

5. Legal bases for processing

Where the GDPR or UK GDPR applies, we rely on the following legal bases:

  • Explicit consent for special category data (the sensitive information described in Section 2), and for optional collections such as your location, your portrait, and push notifications. You can withdraw this consent at any time.
  • Performance of a contract to provide the Service you have signed up for.
  • Legitimate interests in securing, maintaining, and improving the Service, and in protecting members from harm, where those interests are not overridden by your rights.
  • Legal obligation where we are required to process your information to comply with the law, including confirming that our members are adults.

6. Automated processing and third-party AI services

Dommi does not send your content to any third-party artificial intelligence or large-language-model service. Your Declarations, your messages, your quiz responses, and the terms you record are handled within the Service and by the infrastructure providers named in Section 7. We do not make decisions about you by automated means that produce legal or similarly significant effects.

If we later add a feature that sends your content to a third-party processor for that purpose, three things happen before it reaches you. We name the provider in this policy. We tell you inside the app what would be shared and with whom. We ask for your consent at the point of use, and you may decline and keep using the rest of the Service. Any such provider would act as a processor on our behalf, bound by contract to use your content only to perform the service we have requested.

7. Service providers and how we share

We rely on a small number of providers to run the Service. Each acts as a processor on our behalf under a contract that limits what they may do with your information.

  • Supabase hosts our database, our authentication, and our file storage. Everything described in Section 3 that we store is stored there.
  • Apple distributes the app, provides Sign in with Apple, and processes every in-app purchase. Apple charges your Apple ID and tells us whether a purchase succeeded. We never see your payment details.
  • Google provides Google sign-in, and receives your sign-in request when you choose it.
  • Expo delivers push notifications to your device and receives the push token and the notice being sent.
  • Superwall presents our paid offers and receives device and subscription information so it knows what to show you and whether you are entitled to a paid feature.
  • Our own analytics service, which we operate on our own infrastructure, receives the usage information described in Section 3. It is not a third-party advertising or analytics network.

Beyond those providers, we share your information only:

  • With other members, to the extent you choose to share it through the Service. Your Declaration and the terms of an Accord you enter into are visible to the member concerned. Your portrait stays sealed until the point the House rules allow it to be revealed. Your date of birth, your coarse location, your Guardian, and your email address are never shown to another member.
  • With your Guardian, if you appoint one and a real-world meeting triggers a notice.
  • For legal reasons, where we are required to disclose it by law or where disclosure is necessary to protect the rights, safety, and security of our members and the House.
  • In a business transfer, if we are involved in a merger, acquisition, or sale of assets, subject to this policy.

We do not sell your personal information. We do not share it for cross-context behavioral advertising, we do not use your content to train anyone’s models, and we do not run third-party advertising in the Service.

8. Data retention, departure, and deletion

We keep your information for as long as your membership is active, and for as long afterward as we need it to fulfil the purposes described in this policy, to comply with our legal obligations, resolve disputes, and enforce our agreements.

Departing the House

Departing the House and deleting your data are two different things. When you depart from within the app, your membership ends, every live dynamic you are part of is revoked, your Rituals are retired, and each counterpart is notified that consent has ended. Your record is retained in a departed state so that your membership can be restored if you ask, and records that were already sealed remain readable to the members who were party to them.

Deleting your account in the app

You can delete your account yourself. Open House settings and choose Delete this member record. When you confirm it, deletion happens immediately and is permanent. We erase your sign-in account, your member record, your Declaration, your portrait and any other images you uploaded, your Accords, your messages, and the notification tokens held for your devices. There is no waiting period, nothing is held in reserve, and your membership cannot be restored afterward. If you may want to return, depart instead of deleting.

Asking us to delete for you

If you cannot reach the app, because you have lost access to your device or cannot sign in, write to [email protected] and ask us to delete your account. We will delete or anonymize your personal information within 30 days, and remove your portrait from storage, except where we are required to retain something by law or need it to resolve a dispute or enforce our agreements. Waitlist emails are kept until you ask us to remove them.

Whichever route you take, copies of deleted information may persist in our encrypted backups for a limited period before those backups expire, and we do not restore an account from them.

Deletion and your subscription

Deleting your account does not cancel a subscription. Subscriptions are sold and billed by Apple, not by us, and they keep renewing until you cancel them in your App Store account settings. Cancel there as well if you no longer want to be charged.

9. Your rights and choices

Depending on where you live, you have some or all of the following rights over your personal information:

  • To access the information we hold about you.
  • To correct information that is inaccurate or incomplete.
  • To delete your information.
  • To receive a copy of your information in a portable format, and to ask us to transfer it where technically feasible.
  • To restrict or object to certain processing.
  • To withdraw your consent at any time, including your consent to process the sensitive information described in Section 2.

Some of these you can exercise yourself in House settings: edit your identity, record or update your city, remove your portrait, remove a Guardian, turn notifications off, keep detailed lock-screen previews off, depart the House, and delete your account outright, which erases it at once as described in Section 8. For anything else, including data export, or to delete your account when you cannot reach the app, write to [email protected]. We will respond within the time required by applicable law, and we will not charge you or treat you differently for asking. You also have the right to lodge a complaint with your local data protection authority.

10. California privacy rights

If you are a California resident, the California Consumer Privacy Act, as amended, gives you the right to know what personal information we collect and why, to access and delete it, to correct it, and to limit the use and disclosure of your sensitive personal information. The categories we collect, the purposes we use them for, and the parties we disclose them to are set out in Sections 3, 4, and 7. We do not sell your personal information, we do not share it for cross-context behavioral advertising, and we will not discriminate against you for exercising your rights. You may use an authorized agent to make a request. To make a request, contact us at [email protected].

11. International data transfers

We are based in, and process information in, the United States, and your information may be transferred to and processed in countries other than the one you live in. Where we transfer personal information out of the European Economic Area or the United Kingdom, we rely on appropriate safeguards such as the Standard Contractual Clauses approved by the relevant authorities.

12. Age requirement

Dommi is strictly for adults. You must be at least 18 years old to use the Service, and we ask for your date of birth before your place can be recorded. The Service is not directed to children, and we do not knowingly collect personal information from anyone under 18. If we learn that we have collected information from a person under 18, we will delete it and close the account. If you believe a minor has given us information, write to [email protected].

13. How we protect your information

We use administrative, technical, and physical safeguards designed to protect your information. Traffic between the app and our servers is encrypted in transit. Your sign-in session is held in your device’s secure storage. Access to member records is enforced at the database level, so a member can reach only what the House rules allow. Portraits are held in private storage with no public link and are served only through short-lived signed URLs. Detailed lock-screen previews are off by default, so a notice never names a member, a clause, or a message unless you turn them on. No method of transmission or storage is completely secure, so we cannot guarantee absolute security.

14. Changes to this policy

We may update this Privacy Policy from time to time. When we make material changes, we will update the effective date above and, where appropriate, notify you through the Service. Your continued use of the Service after an update means you accept the revised policy.

15. Contact us

For any question about this policy or your information, contact Soul Surferz, LLC at [email protected]. We will give you a postal address on request. You can also reach our team through the Support page.