Privacy Policy
This policy describes how Elevated Life Connections, LLC, the operator of Hey, It’s Me! (again), handles information in its current testing service. The service is for adults aged 18 and over. Questions and privacy requests can be submitted through our contact form.
Information we collect
We store your email, password hash, first and last name, birth date, phone number, verification status, authenticator configuration, recovery-code hashes, and session information. We also store connections, messages, your per-conversation read position for unread badges, sharing choices, connection decisions, account-status requests, consent records, support requests, and staff security records. We also store your submitted profile photo and its verification status. Government ID capture and face matching are not active yet; do not send an ID through the support form or profile-photo upload. Delivery and hosting providers process technical information needed to operate their services. We use IP-based request limits to reduce abuse.
How we use it
We use information to create and secure accounts, check the stated age requirement, verify access to contact details, connect members, deliver messages, apply sharing choices, provide support, prevent abuse, and address documented legal obligations. Email or phone verification confirms access to that contact method; it is not an identity or background check.
What others can see
People with your connection link and your connections see your first name and your age once your birth date is verified. We never show an age calculated from an unverified birth date. Your full birthday and email stay private. Your connections can see your verified profile photo and verification status; your ID documents are never shown. You can save a connection before verification, but both people must complete verification before exchanging messages or contact details.
Choosing “I’m ready to share my info” shares your last name and verified phone number with that specific connection. The recipient can Call, Text, or Save their info as a contact card containing your name and phone number. Sharing is one way and sharing back is optional. Emails and social accounts are not shared. Turning sharing off blocks future access in the app, but cannot erase contacts, screenshots, or information already saved outside it. Editing your name, phone, or birth date clears your existing sharing choices.
Date logs and connection controls
Connected, verified members can record a date’s scheduled time and place for both participants to see. Notes and thumbs-up/down ratings are private to the member who saves them and are not shown to the other participant. Pausing contact stops messaging and new shared date entries until contact is enabled again. Severing a connection removes both participants’ access to its conversation, photos, contact details, and date log. Severing cannot be undone from the old connection. To reconnect in person, generate a fresh short-lived QR code, have the other person scan it, and confirm their request. This creates a new connection; the old conversation stays closed. Severing does not erase retained records or information previously saved outside the app; account deletion and legal-hold rules continue to apply.
Connection locations
If you opt in when connecting and grant device location access, we save that device’s coordinates, accuracy, and device-reported connection time alongside the server timestamp. Each person can save one pin from their own device, visible only to the two participants. A pin added later records its actual capture time and does not recreate where you were earlier. Older connections may only have a server-recorded time. Blue identifies your pin and green identifies the other person’s pin. This does not prove that both people were present and is not live tracking. Connecting works without location access. Opening a dashboard map sends the pin coordinates and technical request information to OpenStreetMap so it can display the map. Existing connections without a saved location show no pin. Location records follow the connection’s deletion and legal-hold rules.
Service providers and disclosures
Our hosting, database, email, and verification providers process information needed to deliver the service. Email verification uses Resend; phone verification is designed to use Twilio Verify when activated. We do not sell personal information or share mobile numbers or SMS opt-in records with third parties for their marketing. SMS consent information is used only for verification delivery, related operational support, and necessary legal compliance. Disclosure to authorities requires review of a valid legal basis; merely requesting deletion does not result in disclosure.
Suspension, deletion, and retention
Temporary suspension hides the account while preserving its data until reactivation or a deletion request. Requesting deletion hides the account immediately and starts a 60-day retention period. During that period you can sign in, complete two-factor authentication, and explicitly cancel deletion. After the deadline, cancellation is disabled and cleanup deletes the account and associated profile, authentication records, consent records, connections, and conversations.
A documented legal hold can delay deletion of relevant account or connected-conversation records. Access remains restricted while retained. Staff access and action logs are retained for 15 years from each event, including the staff account identifier, work email, affected record identifiers, action, outcome, and timestamp. These audit records survive deletion of staff or member accounts. Government ID images, selfies used for verification, and biometric templates are not included in this 15-year audit retention rule. Hosting or delivery-provider copies and backups follow those providers’ retention processes and are not guaranteed to disappear at the same instant as the active database. Information already copied outside this service cannot be removed by us.
The 60-day account workflow does not waive your statutory privacy rights. Where applicable law requires earlier action or permits only narrower retention, that law controls. Use the contact form to request review, correction, access, portability, earlier deletion, or appeal. We may need to verify your identity and will explain any applicable limitation.
Profile photos and identity verification
One profile photo is required. Uploads remain pending until government ID, birth-date, and face-match checks are completed through a connected verification service. No such service is connected in this testing release. Before collecting ID images or biometric verification data, we will identify the provider and present its processing, consent, and retention information. Ordinary staff cannot browse ID documents or manually approve verification. Replacing a profile photo or changing a birth date requires a new verification result tied to those details.
Security and cookies
We use secure session cookies, password hashing, two-factor authentication, and server-side access controls. Only staff with relevant permissions may access administrative tools. The app does not promise end-to-end encryption or absolute security. Essential session cookies keep you signed in; this release does not intentionally use advertising cookies.
Changes and contact
We will update the date above when this policy changes and obtain additional agreement when required. Contact Elevated Life Connections, LLC at support@elevatedlifeconnections.com or through Help & contact for support and privacy requests.