Privacy policy
Last updated 15 September 2026
About this policy
Gotilo helps people find garba partners and groups, share a meeting location, and connect through requests and conversations. This policy explains how information is handled when you use the Gotilo app. In this policy, ‘we’ and ‘us’ mean the team operating Gotilo.
Information you provide
Account and profile: we store your account identifier, email address, name, username, birthdate, gender, biography, city, profile photo and any additional photos you upload. If you sign in with Google, we receive the account details Google shares for sign-in, such as your email, name and profile image. Email sign-in uses verification codes.
Community activity: we store your map pin, venue or event details, groups, memberships, requests to connect or join, request decisions, messages and chat read timestamps. When you report a concern, we store the reason, details, the account or content reference, your account identifier and review status.
Location and device permissions
With your device permission, Gotilo uses location to find nearby people or venues and help you choose a map pin. A saved pin may contain precise coordinates. Other signed-in members can see shared pins and location information associated with profiles, venues or groups. Choose a public meeting place if you do not want to reveal where you live.
You can change your saved location in Settings and manage location, camera and photo-library permissions in your device settings. Revoking location permission does not delete a pin you already saved. Camera access supports selfie verification; photo access lets you choose images. The current app does not request access to your contacts or continuously track your background location.
Selfie and photo verification
Before verification, we ask for consent to record a short selfie video and compare it with your profile photo. Face detection and movement checks help assess whether a real person is present. Our verification service processes the video and profile image to evaluate liveness and face similarity. Face measurements may be treated as biometric information under applicable law.
We store your consent time, verification result, scores, reason codes and service/model version information. Verification media is kept in private storage and accessed with temporary links. The verification flow attempts to remove video after a completed check unless review is needed. Videos requiring review are marked for retention for up to seven days; failed cleanup or interrupted checks can delay removal. Verification is not a guarantee of someone’s identity or conduct. You can decline consent, although features requiring verification may then be unavailable.
How we use information
We use this information to authenticate you, display your profile and nearby discovery results, operate groups and chats, deliver requests and sign-in codes, verify photos, investigate reports, respond to privacy requests and maintain the service. Our hosting and delivery providers may process connection information such as IP addresses, request times and device or browser information to deliver content, troubleshoot problems and protect their systems.
Where consent is required, including for verification or device permissions, you can withdraw it for future processing. Depending on the applicable law, processing may also be necessary to provide the service you request, protect people and systems, or meet legal obligations.
Who can see information
Other signed-in members can access profile information, uploaded photos, shared locations and group information. Requests are available to their recipients or relevant group members. Conversations are available to authorized chat members, subject to membership and history rules. Photos delivered through public image links may also be accessible to someone who has the link. Other people may save or share content you send them.
Reports are stored in a private review inbox. Their contents and the reporter’s identity are not exposed to other members through the app. Authorized operators can access reports and related data to investigate concerns. Chats are stored on our servers; they are not end-to-end encrypted.
Providers used by the current app include Supabase for authentication, database, realtime and private storage; Cloudinary for uploaded image hosting; Google for optional sign-in; AgentMail for sign-in email delivery; HERE for venue search; and the infrastructure running the photo-verification service. Venue search can send search text and location context to HERE. These providers receive the information needed for the relevant feature. Their own services may also be subject to their privacy terms.
We may disclose information when required by law or necessary to respond to a serious safety concern, protect rights or investigate misuse. If operation of Gotilo transfers to another organization, information may transfer with the service subject to applicable safeguards and notice requirements.
Storage, security and retention
We keep account and activity information while it is needed to run your account and the features you use. Access controls protect private database records and verification media. No storage or transmission system can promise absolute security. Providers may process information in countries other than the country where you live.
Reports can remain after an account or reported content is deleted when needed for investigation, safety or legal obligations. Your reporter-account link is cleared on deletion, but the report text and target references can remain and may contain personal information. Backup copies, security logs and provider caches can remain until removed under the relevant provider’s retention processes. We restrict retained information to the purpose for which it is kept.
Your choices and account deletion
You can edit your profile, update your map location and log out from Settings. Logging out ends this device’s session; it does not delete your account. Uninstalling the app also does not delete your account.
To delete your account, open Settings → Delete account and complete the confirmation. Deletion removes your sign-in account, profile, pins, memberships, verification records, your messages, direct conversations and groups you created, including their conversations. Requests connected to your account are removed. Uploaded image references are placed in a restricted cleanup queue so an operator can verify ownership and arrange removal from the image provider. Those images may remain accessible until cleanup and cache expiry finish. We cannot remove copies that other people have saved independently.
Depending on where you live, you may have rights to access, correct, receive a copy of or delete information, withdraw consent, or object to or restrict particular uses. Send a privacy or data request through the contact route below. We may need to verify your identity before acting. You may also have the right to complain to your local data-protection authority.
Age and safety concerns
If you believe a member is under 18, is impersonating someone, or is putting others at risk, use Report on their profile or conversation. Avoid adding sensitive information about someone else unless it is necessary to explain your concern. Reports are not an emergency service; contact local emergency services if someone is in immediate danger.
Policy updates and contact
We may update this policy as Gotilo changes. The date above identifies the latest revision available in the app. We will provide additional notice or request consent when required for a material change.
To contact the Gotilo team about personal information, open Settings → Report a problem and choose Privacy or data request. You can also email gotilo.app@agentmail.to. Include enough information for us to understand your request, but do not send your password or sign-in code.