Overview
Crush is a college connection app for current students. The app uses Apple sign-in, .edu verification, profile photos, prompts, one school-local Daily Drop at 8:30 PM, in-app chat, and safety tools. This policy explains what we collect, how we use it, and the choices you have.
Information We Collect
- Account and school information, including your app user ID, first name, age, school, .edu verification status, graduation year, major, gender, interested-in preferences, intent, Drop preference, and account settings.
- Profile content you provide, including photos, prompts, interests, and other profile details shown only through authorized app experiences.
- Daily Drop and chat activity, including match outcomes, Meet or Pass actions, chat messages, unread counts, and safety actions such as block, report, and unmatch.
- Device and notification data, including APNs tokens, notification preferences, app version, and basic diagnostics used to operate the service.
- Website campus interest, including the school name you request and, if you choose to provide it, your email address.
- Safety and moderation data, including photo safety classifications, the limited primary-photo suitability result described below, text moderation signals, reports, rate-limit events, and admin audit logs.
How We Use Information
- To authenticate accounts, verify school eligibility, hydrate the app, and operate Daily Drops at each school’s local 8:30 PM reveal time.
- To match students using eligibility, compatibility, activity, prompt, profile, safety, and quality signals while enforcing blocks, reports, cooldowns, and other boundaries.
- To deliver in-app chat, push notifications, foreground banners, and exact routing to Daily or chat threads.
- To understand which campuses are interested in Crush and, if you provide an email, notify you about availability at the school you requested.
- To review photos and user-visible text, enforce rate limits, investigate reports, prevent abuse, and improve reliability.
AI and Matching Signals
Crush may use private profile, prompt, behavior, and non-sensitive photo-context signals to rank compatible candidates. Photo-context signals are limited to broad scene, activity, and composition labels such as outdoors, graduation, or group activity. Missing AI signals do not block a Daily Drop. Face-review results are not used for matching. Crush does not use facial features, face geometry, biometric identifiers, attractiveness, race, ethnicity, disability, religion, body type, or other protected or sensitive traits for matching.
Photo Review and Face Data
Before Crush sends a selected profile photo for review, the app shows a disclosure and asks you to continue. If you choose Not now, the photo is not sent for review.
Crush processes the profile photos you select for two limited purposes: to identify potentially unsafe or prohibited image content, and, for the primary profile photo, to determine whether exactly one person is visible with a clear and unobstructed face. This helps keep profile photos safe and makes the primary photo useful to other students.
Crush does not use this review to identify you, recognize you across photos, compare your face with another person, authenticate you, infer protected or sensitive traits, create a face embedding or biometric template, target advertising, perform analytics, or make matching decisions.
Selected photos are sent to OpenAI, acting as a service provider, for image safety classification and the limited primary-photo suitability check. Crush stores the original photo and a private thumbnail in private Supabase Storage while the photo remains on your profile. Crush retains only the image-safety result and a limited primary-photo decision such as clear face, one person required, or face not clear. Crush does not retain face geometry, landmarks, a face count, a face embedding, or a biometric identifier.
OpenAI states that API inputs and outputs are not used to train its models by default. The OpenAI Moderation endpoint has no application-state retention. For the primary-photo suitability check, Crush uses the Responses API with storage disabled. OpenAI may retain API inputs and outputs in abuse-monitoring logs for up to 30 days unless legally required to retain them longer. OpenAI also states that an image detected as potential child sexual abuse material may be retained for manual review under its safety policies.
When you delete a profile photo, Crush deletes the stored original, thumbnail, and associated face-review result. Account deletion removes profile photos and their associated review results. Limited non-image safety or audit records may be retained where reasonably necessary to investigate abuse, comply with law, or protect users and the service.
How We Share Information
We do not sell personal data. We share data only as needed to operate Crush, including with infrastructure, authentication, storage, notification, email, moderation, and safety providers such as Supabase, Apple, APNs, and OpenAI. OpenAI receives selected profile photos only for the review described in Photo Review and Face Data.
Other users can see the profile information and photos that are revealed to them through authorized app surfaces such as Daily Spotlight, match sheets, and chat. Chat participants can see messages in their shared thread.
Notifications
Crush may send notifications for Daily Drops, chat unlocks, and messages if you enable them. Message notification previews do not include message text. You can manage notification preferences in the app and in iOS Settings.
Retention and Deletion
We keep account, profile, Drop, chat, and safety records while your account is active and as needed for safety, abuse prevention, auditing, and service operation. Historical poll records submitted before Polls were discontinued may remain until they are deleted under these same practices. You can request deletion from the app where available or by contacting hello@crushso.com. Some operational records may be retained for a limited period where needed to prevent abuse, enforce cooldowns, investigate reports, or comply with legal obligations.
We keep website campus-interest requests while we evaluate or support availability at the requested school. You can ask us to remove your request or email address by contacting hello@crushso.com.
Security
Crush uses authentication, row-level access controls, private storage, signed media URLs, encrypted transport, rate limits, moderation, and audit logging to protect the service. No system can be guaranteed perfectly secure, but we design the app so private school, photo, chat, and notification data are not publicly accessible.
Children
Crush is for current college students who are at least 18 years old. We do not knowingly collect information from minors.
Changes and Contact
We may update this policy as Crush changes. The updated date will reflect the latest version. Contact hello@crushso.com with questions, privacy requests, or complaints.