Vibz — Privacy Policy
Version: 1.0.0 Effective date: 2026-08-27 Last updated: 2026-09-03 Operator: Midwest Technical Training & Consulting INC, a Missouri corporation ("Vibz", "we", "us").
This Privacy Policy explains how Vibz ("we", "us") collects, uses, and shares information when you use the Vibz mobile apps, website, and related services (the "Service").
1. Information we collect
1.1 Information you give us
- Account info: phone number, display name, profile photo, status, date of birth (used to enforce minimum age), the friend code you choose.
- Your content: posts, comments, captions, messages, photos, videos, voice / video call participation, stickers you create, and channels you publish or follow.
- Teen social access information, where enabled: adult/minor link requests, approvals, declines and revocations; the adult's age-and-authority attestations; teen safety acknowledgement; relationship status; and the social-capability settings selected by the linked adult. This control does not collect companion-view activity, message copies, call content, or decryption keys for adult review.
- Contacts, only if you allow it: if you give the app permission to read your contacts, it reads the phone numbers saved in your device's address book and sends them to our servers so we can tell you which of your contacts already use Vibz. Your device sends numbers that fit the North American ten-digit format, which covers the United States, Canada, Jamaica, and other countries that share the +1 country code. A number in any other format is skipped on your device and is not sent. On our servers each number is converted into a scrambled value using a key only we hold, compared against our users in memory, and then discarded when the request finishes: we do not store the numbers from your address book, we do not write them to our logs, and we do not give them to anyone else. What we keep is the result of the match only — a record that your account and a matched account are connected, with no phone number attached to it. We use those records to suggest people you may know. The same match also names calls: our reply tells your device which Vibz account a number your device sent us belongs to, so your phone can recognise a Vibz call as coming from someone already saved in your contacts. That matching happens on your device, against your own address book — the names and photos saved in your contacts are never sent to us, and we never see them. On iPhone, Vibz calls are recorded in your phone's own Recents call history whether or not contacts permission is on, and this match is what lets those entries carry the name you have saved for that person instead of their Vibz name; those entries sit in your phone's call history outside the Vibz app, and you clear them there. While contacts permission is on, your device refreshes them about once a day. You can turn contacts permission off at any time in your device settings, and the rest of the Service works without it.
- Support: the contents of any email or in-app form you send us.
1.2 Information collected automatically
- Device + technical: device model, OS, app version, locale, timezone, language, push token, app-instance identifiers used for push delivery, optional crash reporting and app-integrity attestation, and limited network/request data used to deliver and secure the Service.
- Usage: what public content you view and interact with in the feed (impressions, watch progress, likes, comments, follows, "not interested" feedback), and message delivery and read state. If you enable optional crash reporting, Firebase Crashlytics also receives crash and error details, basic app and device state, and the Vibz account identifier used to correlate a report with a support request.
- Network and location: our infrastructure processes IP addresses and may retain them in limited security or access logs. We do not use them to build a location profile, and we do not collect precise GPS location.
- Third-party SDKs: we do not use third-party advertising SDKs. Google Firebase supports authentication, push notifications, optional crash reporting, and app integrity. Cloudflare RealtimeKit handles camera, microphone, and network connection details during voice and video calls. These services do not receive your message contents.
- Optional Firebase Crashlytics reporting is off by default. You can enable or disable it with the Share crash reports toggle under Profile → Account Settings → Account → Privacy → Diagnostics. A change takes effect the next time you open Vibz. Disabling it stops that device from sending further Crashlytics reports; reports already sent are not recalled.
- Service diagnostics are separate from the optional Crashlytics switch. When phone verification fails, Vibz sends our servers the phone number attempted, failure stage and reason, app version, platform, and limited technical context so we can secure and troubleshoot sign-in. The phone number is encrypted in the diagnostic record and also converted to a keyed value used for lookup. We also keep limited authentication, security, encryption-delivery, and call events needed to operate and protect the Service. Authorized staff can enable a time-limited diagnostic capture for a specific account when investigating a serious technical problem; depending on the problem, it may include account, device, message or conversation identifiers, event stages, app/platform version, errors, and limited technical state. These server-side records are access-controlled, and our retention target is 7 days, after which a scheduled sweep removes them, unless they must be preserved longer for legal, safety, or security reasons. They are not controlled by the optional Crashlytics switch.
1.3 Information from third parties
- Phone-number verification results from our verification provider (Firebase Authentication / SMS delivery partners).
- Crash reports from Apple's and Google's own platform diagnostics, where your device's operating-system setting allows the platform to share them with developers. That setting is separate from optional Firebase Crashlytics reporting in the app, which is described in section 1.2 and is off until you enable it.
We do not sell your personal information.
2. How we use your information
- Provide, secure, and improve the Service.
- Personalize content and recommendations in the feed.
- Rank, recommend, or limit content based on signals such as how recently it was posted, the channels you follow, likes and comments from other users, what you have already seen and how long you watched it, your "not interested" feedback, and whether an account is under 18 (see our Recommender & Feed Transparency page).
- Authenticate you and protect against fraud, spam, and abuse.
- Moderate content and enforce our Terms of Service.
- Comply with law, respond to legal process, and prevent harm (including reporting CSAM to NCMEC as required by US 18 USC §2258A).
- Send you transactional messages (security alerts, account notices) and, only if you opt in, marketing messages.
We rely on the following legal bases under GDPR / UK-GDPR: contract performance (operating your account), legitimate interests (security, abuse prevention, product improvement), legal obligation, and your consent (for tracking, marketing, optional integrations).
3. Sharing
We share information with:
- Other users, in the way the Service is designed to display it (your posts, comments, profile, etc.).
- Service providers that process data on our behalf under contract: hosting, storage and content delivery, push notifications, phone verification, optional crash reporting, calling infrastructure, app attestation, and support tooling. A list of current categories appears in §10.
- Law enforcement / legal requests, where required by valid process or to prevent imminent harm.
- Business transfers (acquisition, merger, sale) — we will tell you in advance if your data would move to a different controller.
- Linked adult accounts, where teen social access controls are enabled, receive the link status and can manage the minor account's allowed social capabilities. They do not receive the minor's message contents, call content, communication copies, or activity-monitoring data.
We do not share your contact list or message contents with third parties for advertising. Section 1.1 explains what happens to address-book numbers when you turn contacts permission on, and section 5 explains how long the resulting match records are kept.
4. Encryption
- All traffic between the app and our servers uses HTTPS (TLS 1.2+).
- Direct messages between users are end-to-end encrypted (E2EE) using the Signal protocol. We hold ciphertext only; we cannot read your messages.
- Media you send in DMs — photos, videos, voice notes, and file attachments — is also E2EE: the bytes are encrypted on your device before upload and only the recipient can decrypt them.
- Group chats come in two visibilities, chosen at creation time and immutable thereafter:
- Private groups are end-to-end encrypted and are not discoverable in search, discovery, or recommendations. The per-message content key is wrapped to each eligible current member's device so only those members can decrypt; Vibz holds ciphertext only. Restricted accounts (under 18) cannot join or access private groups.
- Public groups (and public groups that require admin approval to join) are encrypted in transit (HTTPS / TLS 1.2+) but are not end-to-end encrypted. Vibz stores public-group content in server-readable form so we can review abuse reports, support discovery and search, enforce the Community Guidelines, and keep the Service safe. Anyone may join public groups, including restricted accounts, subject to our safety rules.
- Voice and video calls are routed through Cloudflare RealtimeKit and are encrypted in transit (TLS / DTLS-SRTP). Calls are not end-to-end encrypted. We do not record or store the audio or video content of your calls; a basic call record (participants, start/end time, status) is kept to a retention target of 30 days, after which a scheduled sweep deletes it.
- Channel and feed content is tiered. Content you publish to the public feed, or to the public tab of a channel, is not encrypted at rest: we store it and serve it in readable form, and the hosting, storage, and content-delivery providers we use can read it. That is deliberate—it lets us display, rank, and moderate public content. Non-public channel content uses end-to-end encryption. Profile-photo storage depends on the upload format; Vibz can stop serving the associated object when a profile image is removed. Group photos are stored in readable form.
- Custom personal stickers that you send in DMs and PRIVATE groups are end-to-end encrypted at rest, the same way as photos, videos, voice notes, and files. Stickers from our built-in catalog (default and downloadable packs we host) are public content by design and are not E2EE; everyone who has access to the catalog gets the same files.
- Public posts are not end-to-end encrypted because the Service must be able to display them to other users and moderate them. Your use of public groups, channels, and the public feed does not affect the privacy of your personal messages, which continue to be end-to-end encrypted.
5. Retention
We keep your information only for as long as we need it. The periods below are the retention targets our systems apply. Deletion is carried out by scheduled clean-up jobs, so a record can persist past its stated period until the next sweep removes it. A legal hold, a safety investigation, or a security incident can extend any of them. Indicative retention:
| Category | Retention |
| Active account | Until you delete the account |
| Deleted account | Deletion runs immediately when you confirm it. Hard-deleted: your messages, posts, comments, follows, blocks, channel relationships, settings and interests, sessions, devices, encryption keys (including any optional key-recovery backup), and the media files you uploaded, which are removed from our storage and not only unlinked. Your phone number is erased from your account record, not replaced with a placeholder. What remains is a tombstone row carrying no phone number and the name "Deleted user", kept so that safety reports and other people's conversations referencing the account remain actionable. Moderation and safety records about the account — enforcement history, reports, and anything we are required by law to preserve — are retained as described in the rows below |
| Delivered direct messages and private-group messages (E2EE ciphertext) | We do not retain message contents in the ordinary course: message bodies are purged from active servers about 24 hours after delivery, unless reported or preserved for legal, safety, or security reasons |
| Undelivered messages | If a message cannot be delivered immediately (for example, the recipient is offline), we keep it in encrypted form on our servers for up to 30 days while we try to deliver it, then delete it |
| Call records (participants, start/end time, status — never call audio or video) | Up to 30 days |
| Teen social access records, where enabled | Pairing codes expire after 10 minutes. Link requests, approvals/declines/revocations, adult attestations, teen safety acknowledgement, and capability settings are kept as needed to operate and audit the relationship and are handled by the account-deletion process, subject to legal, safety, and security retention requirements. No companion-review message copies, call content, or decryption keys are created. |
| Message metadata and tombstones (message ID, timestamps, delivery/read state, reaction/edit/delete state — never message contents) | Up to 12 months where needed for delivery, abuse prevention, edits, reactions, deletions, safety, and legal compliance |
| Contact-match records (which two accounts are connected — never a phone number, and never a copy of your address book) | Kept while your account exists, and deleted when you delete your account. We only act on a record your device has refreshed within the last 35 days, so a contact you remove from your address book stops affecting your suggestions within that window even while the record itself is still on file |
| Sign-in, security, message-delivery state, and time-limited technical diagnostic records | Up to 7 days, unless preserved longer for legal, safety, or security reasons |
| Push notification delivery records (device token, message and conversation identifiers, delivery result) | Kept while your account exists, and removed when you delete your account |
| Stale device records | Deleted after 90 days of inactivity |
| Encrypted message key-delivery records for private groups | Kept with message metadata/tombstones where needed to deliver, sync, recover, or troubleshoot encrypted group messages; these records are wrapped to recipient devices and do not contain plaintext message content |
| Signal device public keys and one-time prekeys | Kept while the device/account is active; claimed one-time prekeys are pruned after about 90 days by default; old signed prekeys may be kept in limited history so delayed messages can still decrypt |
| Optional encrypted key-recovery backup | Kept until you replace it or delete your account; the backup is encrypted before upload and is used to restore access to encrypted messages still available to your account |
| Public posts | Until you delete or your account is deleted |
| Public-group messages | Until deleted by the sender, removed by moderation, or the account/group is deleted |
| Moderation reports + decisions | Kept while needed to enforce our rules, handle appeals, and detect repeat abuse. Reports tied to a child-safety determination are kept as required by law |
| Server access logs | 30 days |
| Backups | 35 days rolling |
Important encryption-retention note: deleting an encrypted message body from active servers does not immediately delete every supporting key or device record. Vibz keeps some encrypted key-delivery records, device public keys, prekey history, and optional encrypted key-recovery backups longer than 24 hours so the Service can deliver delayed messages, support multi-device sync, recover encrypted messages that are still available to an account, prevent abuse, and troubleshoot encryption failures. These records are not plaintext message content and are not made available to linked adults for review.
Your device may keep decrypted message bodies, media files, and media decryption keys in local app storage after the server copy is purged. You can remove that local copy by deleting the message, deleting the conversation, deleting your account, or clearing/removing the app data from your device.
6. Your rights
Depending on where you live (GDPR/UK-GDPR, CCPA/CPRA, Jamaica's Data Protection Act, etc.), you may have the right to:
- Access the personal data we hold about you.
- Correct inaccurate data.
- Delete your account and associated data (you can do this from inside the app).
- Export your data ("data portability") — request a copy under Profile → Account → Privacy → Download my data.
- Object to or restrict certain processing.
- Withdraw consent for processing that relies on consent.
- Lodge a complaint with your local data protection authority.
To exercise any right not directly available in the app, email privacy@marketvibz.com.
7. Children
The Service is not directed to children under 13. We do not knowingly collect personal information from children under 13. If we learn we have collected such information without verifiable parental consent, we will delete it. Some jurisdictions set a higher minimum age (e.g. 14, 15, or 16) — those minimums are enforced where they apply.
For users between 13 and 17, we apply additional safety defaults: private profile by default, restricted DM and calling, limited discoverability, no private-group access, public-group access only where allowed by our safety rules, and no view-once or time-expiring secure media. Teen accounts do not receive adult-oriented recommendations.
Where teen social access controls are enabled, an eligible minor and adult account must both approve a link before the adult can allow specific social capabilities. The adult account's declared date of birth must indicate age 18 or older, and the adult attests that they are authorized to supervise the minor; Vibz does not verify identity or legal relationship through this flow. The link controls access only and provides no message, call, or activity monitoring. Age-restricted content, adult-oriented recommendations, view-once media, disappearing media, private groups, and other age-restricted features remain blocked.
Adults may enable Filter messages from strangers so direct messages from people they do not follow land in a separate Message Requests inbox without a notification or badge. From there, the adult can accept the conversation into the main inbox or decline it and delete the request.
8. International transfers
We are based in the United States. If you use the Service from outside the US, your information will be transferred to and processed in the US (and possibly other countries where our service providers operate). If you use the Service from Jamaica, your information is processed in the United States. Where required, we use approved transfer mechanisms such as Standard Contractual Clauses.
9. Security
We use industry-standard administrative, technical, and physical safeguards. No system is 100% secure. Vibz has no passwords: you sign in with your phone number and a one-time code, so the security of your account depends on the security of your phone and your phone number. We encourage you to lock your device with a passcode or biometric, keep control of your phone number (and contact your carrier immediately if you suspect a SIM-swap), and never share a Vibz verification code with anyone — we will never ask you for one.
If we discover a security incident affecting your information, we will notify you and the appropriate regulators as required by law.
10. Service providers (categories)
The current categories of third parties that process data on our behalf include:
- Cloud hosting (US-based providers)
- Media storage and content delivery (Cloudflare R2 / CDN)
- Phone verification (Firebase Authentication and SMS delivery partners)
- Push notification delivery (Apple APNs, Google FCM)
- Real-time voice / video infrastructure (Cloudflare RealtimeKit)
- Crash and error reporting (Firebase Crashlytics)
- App attestation (Apple App Attest, Google Play Integrity via Firebase App Check)
Vibz does not claim proactive image or video scanning at upload. Reports involving possible child sexual exploitation receive priority moderator review. After a moderator records a reportable determination, the backend queues the required CyberTipline submission and applies the appropriate preservation and takedown workflow. End-to-end encrypted content cannot be inspected by Vibz; recipient reports may identify a message or attachment for targeted action.
The automated screening Vibz performs before publication is on text, not media: a keyword filter runs when you change your display name or profile status, when you upload a post with a caption, and when you write or edit a comment. The list is tiered, and a match does not always mean the same thing. A small set of child-sexual-abuse solicitation phrases is refused outright — the post, comment, or profile change is not saved. A separate list of severe slurs and explicit violent threats is not refused: that content is published, and an automatic report is filed at the same time so a person reviews it. Anyone who sees it can also report it. It is a keyword filter, not a general-purpose content classifier, and it does not read your end-to-end encrypted messages.
11. Changes
We may update this Policy. When we do, we will bump the version, post the updated version at this URL, and notify you in-app. For material changes affecting your rights, we will require you to accept the new policy before continuing to use the Service.
12. Contact