Seatt

Seatt Privacy Policy

Last updated: 8 September 2026

Seatt is a dating app built on one mechanic: you post a plan with one seat open, and somebody asks for it. This policy describes every category of personal information the app actually handles. It was written against the source code rather than from a template, so where it says we do not collect something, that is a statement about the software.

Seatt is operated by Amboyance Inc., a company incorporated in Ontario, Canada. If you are in Illinois, Texas or Washington, see also the separate Biometric Data Policy.

1. What we collect

You give us

CategoryDetailsRequired?
AccountEmail address (via Apple, Google, or email sign-in)Yes
ProfileDisplay name, date of birth, bio, photosYes
Profile detailsGender, who you are open to, pronouns, height, ethnicity, intent, drinking, smoking, languages, prompt answersOptional, except gender and who you are open to
NeighbourhoodA coarse home area, rounded to roughly 1 kmOptional
CityWhich city's feed you are inYes
Plans and requestsThe plan, the venue, the note you write, the question a host asksAs you use it
MessagesThe thread on a confirmed planAs you use it
ReportsWhat you tell us when you report someoneAs you use it
Face scanA short video selfie, if you choose to verifyOptional. See §6

Your device gives us

  • A push notification token, if you allow notifications.
  • Approximate location, only when you ask the app to find your neighbourhood. Seatt does not track your location in the background and does not run any location service while the app is closed.
  • Which operating system you are on, iOS or Android. That is the whole of it: the name of the platform, not a device identifier, not a model, and not an advertising ID. Everyone on the same platform sends the identical value, so it cannot tell you apart from anybody else using it. We use it to know which of the two apps to fix first.

We create

  • Your reliability statistics: confirmed dates, no-shows, late cancels.
  • Whether you have earned the Reliable badge.
  • Weekly quota counters.

We do not collect

No contacts, no photo library beyond the images you pick, no microphone, no advertising identifier, no browsing history, no third-party trackers, no analytics SDK, and no background location.

If you ask us to open your city

The beta list is over: Seatt is out, and the form that used to join a waiting list now asks a different question. If your city is not one of the six, you can type its name on seatt.app and leave an email address.

That is not an account. We store the address you type, the name of the city you type, the date, and a token that makes the unsubscribe link in our emails work. Nothing else, and it is kept apart from the app's own data in a separate database.

The city is free text now rather than a choice from a list, because the whole point is hearing about places that are not on the list. Type what you like; it is read by us and by nobody else.

We use it for one thing: emailing you when Seatt opens where you are. It is not a newsletter, it is not passed to anybody, and it is not used to advertise to you. Use the unsubscribe link, or write to contact@seatt.app, and we delete your entry.

If you later create an account, the two are not linked: the list has no idea whether you became a user.

2. Why

  • To run the product. Show you a feed, let you post and ask, put two people in a thread once a seat is taken.
  • To sort by distance. Your coarse home area orders the feed. It is never shown to anyone; other people see a distance, not a place.
  • Safety. Automated photo and text screening, reports, blocks, the no-show record, and human review of reported or public content. We store Seatt Team notices, whether you have marked them read, and records of moderation actions so we can explain decisions and handle requests for review.
  • Billing. Seatt Plus, via the app stores.
  • Legal obligation, where one applies.

We do not use your information to train models, and we do not sell it. Seatt has no advertising business.

3. Who we share it with

Processors only, each under a written agreement, each limited to what they need:

ProcessorWhat they getWhyWhere
Amazon Web ServicesEverything aboveHosting, database, storage, push delivery, photo moderation, face livenessUnited States (us-east-1)
Google PlacesThe venue you search forConfirming a venue is a real public placeUnited States
RevenueCatA pseudonymous account id and purchase stateSubscription entitlementUnited States
Apple / GooglePurchase and sign-inBilling and authenticationGlobal

Other Seatt users see your profile: name, age, photos, bio, prompts, your stated details, your city, your badges, and (only if you verified) the checkmark. They never see your email, your neighbourhood coordinates, your statistics, your reports, or anything about your other plans.

We do not sell, rent or trade personal information to anyone, for any purpose.

4. Where your data lives, and what that means

Seatt runs in AWS us-east-1, in the United States. If you are in Canada, your personal information is stored and processed outside Canada and is subject to lawful access by US authorities.

This is a real trade-off and we chose it deliberately: the product launches in six cities across the United States and Canada, and moving regions after launch would break every account identifier. Under PIPEDA this is permitted with disclosure, which is what this section is. Quebec residents: Law 25 requires a privacy impact assessment before personal information leaves the province, and Montreal is a live city.

5. How long we keep it

WhatRetained
Your account and profileUntil you delete it
PhotosUntil you remove them or delete the account
Completed plans2 years
Cancelled or expired plans90 days
Open-to listings14 days
MessagesWith the plan they belong to
Face scanSeconds. See the Biometric Data Policy
ReportsRetained after your deletion, so a pattern of harm does not vanish with the account that caused it
Feedback you send us about the app180 days. If you delete your account first, your name and email come off it and the message stays
Beta list entryUntil launch in your city, or until you ask us to remove it

Your date of birth is stored so your age stays correct as time passes and so the 18+ rule can be checked. Only the resulting age is ever shown to anybody else; the date itself is never shown on your profile and is never shared.

Deleting your account deletes the account itself, not only what was in it. Your profile, photos, details and statistics go, and so does the login: the email address stops being registered, and signing in with it afterwards starts a new account from nothing.

Three things outlive it, and each for a stated reason.

Plans you shared with someone else survive in anonymised form. The other person keeps their own history, and you appear as a deleted user. This is deliberate: your deletion should not erase someone else's record of an evening.

Reports stay, as the table above says. If deleting an account erased the reports made about it, deleting and signing up again would be a way to wipe the record, and the person who reported you would have been better off not bothering.

Feedback you sent us about the app stays for the rest of its 180 days, with your account id and any contact address removed. What is useful about "the photo step kept failing" is the sentence, not who wrote it, and there is no longer anybody for us to reply to.

6. Face verification

Optional, and covered in full by the separate Biometric Data Policy. In short: a short video selfie confirms a live person is present and matches your profile photos, and every image is destroyed within seconds. We keep one word: verified, or not. We do not operate a face collection and there is no stored face template.

7. Your rights

Wherever you are, you can:

  • See your information. Most of it is on your profile; email us for the rest.
  • Correct it, in the app.
  • Delete it: Settings → Delete account, in the app, immediately.
  • Withdraw consent to optional processing, including verification.
  • Complain, to us first, then to the Office of the Privacy Commissioner of Canada, the Commission d'accès à l'information du Québec, or your state Attorney General.

Californians additionally have the CCPA rights to know, delete, correct and to opt out of sale or sharing. We do not sell or share personal information as those terms are defined, so there is nothing to opt out of, and we will never discriminate against you for exercising a right.

8. Children

Seatt is for adults aged 18 and over. We do not knowingly collect anything from anyone under 18. If we learn an account belongs to a minor we delete it. If you believe a minor is using Seatt, email contact@seatt.app.

9. Security

TLS in transit, encryption at rest, least-privilege access, and no standing human access to message content. No system is perfect; we will notify you and the relevant regulator of a breach affecting you as the law requires.

10. Changes

We will post the new date at the top and, for anything material, tell you in the app before it takes effect.

11. Contact

contact@seatt.app. Amboyance Inc., Ontario, Canada.