Privacy Policy
Your data, in plain words
Last updated: 1 October 2026
After All puts strangers around a table: small group dinners and plans in Indian cities. To do that safely we need to know a little about you. This page explains exactly what, why, who else sees it, how long we keep it and how to get it deleted.
The short version
- We collect what we need to verify you, match you into a good group and keep the night safe. We do not sell your data.
- Other members see your first name, last initial, what you do, your conversation starters and, if you add one, your photo. Never your surname, phone number, birthday or exact age.
- Your verification selfie is private. A person on our team looks at it once, and the file is deleted 30 days after it is approved.
- We never see or store your card, UPI or bank details. Apple and Razorpay handle payments.
- For advertising measurement we send Meta a few events (like "signed up" or "paid") with your phone number and email hashed, never your name or plain number.
- You can delete your account in the app at any time (Profile → Delete account).
1. Who we are
After All is run by Social Sailor Entertainment LLP, a limited liability partnership registered in India ("After All", "we", "us"). We are the Data Fiduciary for the personal data described here under India's Digital Personal Data Protection Act, 2023 (the "DPDP Act"). This policy covers the After All iPhone app, the web app at app.afterall.world and this website (afterall.world).
Questions or requests: hello@afterall.world.
2. What we collect
You give us
| What | Details |
|---|---|
| Sign-in | Your mobile number (we text you a one-time code to confirm it). If you use Sign in with Apple or Google, the email address they give us (which may be an Apple private relay address). |
| Profile | First name, last initial, what you do, birth date, gender (woman, man, non-binary or prefer not to say), home city, the languages you speak and your app language. |
| Personality quiz and preferences | Your quiz answers and the "social type" they produce, your conversation starters ("ask me about", "I talk too much about"), up to five comfort preferences, age-range preference, whether you want women-only groups or alcohol-free plans. |
| Food needs | Diet, religious diet and allergies, if you tell us. Allergies can reveal health information, so only add what you want the venue to plan around. |
| Verification selfie | One live selfie before your first booking. See section 3. |
| Profile photo (optional) | A photo you choose to add. See section 4. |
| Trusted contact (optional) | The name, phone number and preferred language of someone you choose. If you turn sharing on, we text them on plan nights. Please only add someone who is happy to hear from us. |
| Bookings and plans | The plans you book, join the waiting list for, cancel or attend; check-ins; seat credits and promo codes; membership pauses. |
| After the night | Your rating and comments about a plan, and the people you would like to see again ("yes" picks). When two people both say yes, they join each other's Circle. |
| Messages | Messages you send to people in your Circle. |
| Reports | Reports you make about another member (the reason, your note, whether you never want to be seated with them again) and reports made about you. |
| Invites and waitlists | Your referral code, who invited you, and the contact you type when you invite a friend or ask us to open your city. |
| Support | Whatever you write to us by email or WhatsApp. |
Created when you use After All
- Group and safety records: which group and venue you were placed in, no-shows, late cancellations, warnings, and notes our team writes on a plan night (for example a call to check you got home safe, or an incident).
- Membership and payments: your plan, status, start and renewal dates, the price and currency paid, the payment provider (Apple or Razorpay), and their order, payment and transaction IDs. We never receive your card number, UPI ID or bank details.
- Devices and notifications: a push notification token for each device, your notification settings and quiet hours, and a record of which notifications and texts were sent.
- Where you came from: if you arrived through an ad or an invite link, the campaign tags in that link (utm source, medium, campaign, content and term), the ad click ID (fbclid or gclid), the invite code, the page you landed on, your platform and when you first arrived. See section 8.
- Lifecycle events: sign-up, profile completed, first booking, payment, renewal and cancellation, with the amount where there is one.
- Staff access log: when a member of our team views a selfie, a phone number or exports a list, that is logged.
What we do not collect
- Your location. The app does not ask for it; maps show the venue's own address. (A live-location sharing feature for trusted contacts exists in the code but is switched off; if we turn it on we will ask you first and update this page.)
- Your contacts. When you pick a trusted contact from your phone, iOS hands us only the one contact you pick.
- Your calendar. "Add to calendar" writes the event on your phone; we never read your calendar.
- Card or bank details, or any advertising identifier (IDFA). We do not use third-party analytics or advertising SDKs in the apps.
3. Your verification selfie
Every member takes one live selfie before their first booking so that everyone at the table knows the others are real people who look like their profile.
- Your phone checks the photo for liveness and quality (one face, good light, a blink or head turn) using Apple's on-device tools. We do not use automatic face recognition, identity matching or any automatic gender detection.
- The selfie is uploaded to private storage that no member can read. A trained person on our team looks at it and approves it, asks for a retake or declines it. That decision, including whether the selfie fits a women-only booking, is a human judgement.
- Every time a team member opens a selfie it is logged, and the link they use expires after 60 seconds.
- We delete the file 30 days after it is approved (or 30 days after we ask for a retake). A declined selfie is kept for 90 days in case you appeal or there is a safety issue, then deleted. If you delete your account, the selfie is deleted straight away. After deletion we keep only the result ("verified" and the date), not the picture.
4. Your profile photo
Adding a photo is optional, and you can change or remove it at any time in Edit profile. It is stored privately, not on a public link. It can be seen only by:
- you;
- people seated at the same table as you on an upcoming or recent plan, from the time groups are set (we may change this to "from the venue reveal" or "after the plan"; this page will say which);
- people in your Circle (you both said yes after a plan);
- team members who run operations and safety for your city. Our marketing and finance staff cannot see it.
Nobody you have reported can see your photo, and once a member is removed from After All their photo is hidden from everyone except our safety team. We may remove a photo that breaks our rules.
5. Why we use your data
| Purpose | Data used |
|---|---|
| Create and secure your account; stop fake, duplicate or banned accounts | Phone number, Apple or Google email, verification selfie, hashed identifiers of deleted and removed accounts |
| Check you are 18 or older and mix groups by age | Birth date |
| Build balanced groups and honour your preferences (women-only, alcohol-free, age range, language) | Gender, birth date, quiz answers, preferences, languages, city |
| Run the plan: bookings, waiting lists, the venue reveal, reminders, cancellations, credits | Bookings, device tokens, notification settings |
| Tell the venue what to prepare | Group size and dietary needs, without your name or contact details |
| Keep people safe: trusted-contact texts, check-ins, reports, warnings, removals, never seating two people together again | Trusted contact, reports, safety notes, group records |
| Take payment and manage your membership | Membership and payment records |
| Answer you when you write to us | Support messages |
| Understand which ads and invites work, and measure the business | Attribution data, lifecycle events (see section 8), totals and trends |
| Send offers and news by WhatsApp, only if you opted in | Phone number, first name, city |
| Meet legal, tax and law-enforcement obligations | Whatever the law requires |
We process your data on the basis of the consent you give when you sign up and when you turn on optional features, and for the "legitimate uses" the DPDP Act allows (for example, complying with law, responding to a medical emergency or a threat to someone's safety). You can withdraw consent at any time (see section 12); some features, such as booking a seat, cannot work without the data they need.
6. What other members see
- Your first name, last initial, what you do, your conversation starters, your social type and, if you add one, your photo (see section 4).
- Before a plan, people booked on it may see hints about the group, such as an age range and how many people are coming. They do not see your exact age.
- Never your surname, phone number, email, birthday, exact age, selfie, allergies or reports.
- Messages go only to the Circle member you send them to.
7. Who we share it with
We do not sell personal data. We share it only with the service providers below, who process it on our behalf for the purposes listed, and when the law requires.
| Who | What for | What they get |
|---|---|---|
| Supabase (on Amazon Web Services) | Our database, sign-in, file storage and server functions | All the data in this policy, stored for us |
| Twilio | Text messages: sign-in codes, trusted-contact texts, backup reminders | The phone number and the message |
| Apple | Sign in with Apple, push notifications, App Store subscriptions | Push tokens and notification text; Apple already holds your Apple ID and payment |
| Sign in with Google; fonts on our website | What Google needs to sign you in; your IP address when a page loads a font | |
| RevenueCat | Keeping track of App Store subscriptions | Your After All account ID and your App Store purchase records |
| Razorpay | Web payments (UPI, cards, net banking, wallets) | Your name, phone number and email to pre-fill the payment page, and the amount. You enter payment details on Razorpay's page, not ours. |
| Meta Platforms | Measuring ads (Conversions API) and WhatsApp messages (WhatsApp Business Platform) | See sections 8 and 9 |
| Venues | Preparing your table | Group size and dietary needs; no names or contact details |
| Your trusted contact | Knowing where you are on a plan night | Only if you turn sharing on: your first name, the plan, place and time |
| Police, courts or regulators | When the law requires it, or to protect someone in an emergency | Only what is required |
If After All is ever sold or merged, your data would move to the new owner under this policy, and we would tell you first.
8. Advertising and attribution
We advertise on Meta (Facebook and Instagram). To learn which ads bring people who actually enjoy After All, our server sends Meta's Conversions API a short record when one of these happens: you sign up, finish your profile, book, pay, renew or stop your membership.
- Each record contains the event name and time, the amount and currency for payments, and the ad campaign if you came from one.
- To let Meta match the event to an ad, it also contains your phone number, email address, After All account ID and country, each hashed with SHA-256 before it leaves our servers, plus the ad click ID from the link you clicked. Hashing turns them into a one-way code; Meta compares codes and does not receive your plain number or email. We never send your name, birthday, gender, photos, messages or anything about your bookings beyond the event itself.
- This happens on our server. There is no Meta pixel or SDK in our apps, and we do not use Apple's advertising identifier.
- If you do not want your events shared with Meta, email hello@afterall.world and we will stop sending them for your account.
When you open an invite or ad link, we note the tags in the link (described in section 2) once, the first time, so we can credit the friend who invited you and see which campaigns work. Our marketing team sees totals and a masked list (first name, initial, city, where you came from), never your contact details or safety records.
9. Texts, WhatsApp and notifications
- Push notifications tell you about your bookings, the venue reveal, your Circle and, if you choose, new plans. Change them in Profile → Notifications or in your phone's settings. We respect your quiet hours.
- SMS (through Twilio) is used for sign-in codes, a backup reminder if you have not opened the venue reveal, and your trusted contact's text on plan nights if you turned sharing on.
- WhatsApp (through Meta's WhatsApp Business Platform): we may send messages about your own bookings. We send offers and news only if you opted in, and you can opt out at any time by writing to us on WhatsApp or by email. Meta receives your phone number and the message to deliver it.
10. How long we keep it
| Data | Kept for |
|---|---|
| Your profile, preferences, trusted contact, photo | While your account is open. Removed when you delete your account. |
| Verification selfie (the picture) | 30 days after approval or a retake request; 90 days if declined; deleted at once if you delete your account. The result is kept. |
| Messages, Circle, push tokens, waitlist entries | While your account is open. Deleted when you delete your account (for both sides of a conversation). |
| Attribution data and WhatsApp opt-in | While your account is open. Wiped when you delete your account. Events already sent to Meta are held by Meta under its own terms. |
| Reports, never-seat-together pairs, ratings, safety notes and our staff access log | Kept after you delete your account, against an anonymous ID with no name or contact details, so that we can keep members safe and answer complaints. |
| Payment and membership records | As long as Indian tax and accounting law requires (generally up to 8 years), against an anonymous ID after deletion. |
| A keyed one-way hash of your phone number and email | Kept after deletion so the same number cannot claim a second free first plan, and so removed members cannot rejoin. The hash cannot be turned back into your number. |
| Backups | Our hosting provider keeps rolling backups that are overwritten within 30 days. |
11. Deleting your account
In the iPhone app or the web app: Profile → Delete account → Delete for good. You can also email hello@afterall.world from anywhere and we will do it for you after confirming it is you.
When you delete your account, straight away:
- your upcoming bookings are cancelled and your seat goes to the next person waiting;
- your name becomes "Deleted" and your surname initial, occupation, birth date, gender, city, quiz answers, preferences, food needs, trusted contact, invite code, notification settings, photo and selfie are erased;
- your messages, Circle and device tokens are deleted;
- your phone number and email are removed from your login, the login is locked and you are signed out everywhere; if you signed in with Apple we ask Apple to revoke our access.
What we keep is listed in section 10: anonymous safety records, payment records the law requires, and the one-way hash that stops a deleted number taking another free plan.
Deleting your account does not cancel an App Store subscription. Apple bills it, so cancel it in Settings → your name → Subscriptions on your iPhone. Web memberships do not renew, so there is nothing to cancel.
12. Your rights under the DPDP Act 2023
You have the right to:
- Access: get a summary of the personal data we hold about you and how we use it, and the list of those we have shared it with. In the app: Profile → Privacy → Request a copy of my data.
- Correction and completion: fix or update your data. Most of it you can change yourself in Edit profile.
- Erasure: have your data deleted (section 11), except what the law requires us to keep.
- Withdraw consent: as easily as you gave it, for example by turning off trusted-contact sharing, WhatsApp offers, notifications, or by deleting your account. Withdrawal does not affect what we did before.
- Grievance redressal: complain to us and get an answer (section 18).
- Nominate: name someone who can exercise these rights for you if you die or become unable to.
Write to hello@afterall.world. We will confirm it is you (usually by replying from the app or texting a code to your number) and respond within 30 days. If you are not satisfied with our answer, you may complain to the Data Protection Board of India.
If you live outside India, you may have similar rights under your local law. Write to us and we will honour them.
13. Security
- All traffic is encrypted (HTTPS). Data is encrypted at rest by our hosting provider.
- Every table has row-level rules: members can read only what this policy says they can see. Selfies and photos are in private storage.
- Our team works on a need-to-know basis by role and city. Marketing and finance staff cannot see contact details or safety records. Sensitive views and exports are logged.
- Payment and messaging keys are kept in an encrypted vault, never in the apps.
No system is perfect. If a breach affects your data, we will tell you and the Data Protection Board of India as the law requires.
14. Age
After All is for adults. You must be at least 18 (or the age of majority where you live, if higher). We check your birth date at sign-up and do not knowingly collect data from anyone younger. If we learn that a member is under 18, we delete the account. If you think a child is using After All, write to us.
15. Where your data is stored
Our database and files are hosted by Supabase on Amazon Web Services in Mumbai, India. Some of our service providers (Apple, Google, Meta, Twilio, RevenueCat) process data in other countries, including the United States, under their own safeguards. We transfer data outside India only as the DPDP Act allows.
16. This website and the web app
The web app stores your sign-in session and small settings (like light or dark theme) in your browser's local storage so you stay signed in. We do not use advertising or analytics cookies on this website. Pages load fonts from Google Fonts, which receives your IP address. Payments open on Razorpay's own page, under Razorpay's privacy policy.
17. Changes to this policy
If we change this policy in a way that matters, we will tell you in the app before the change takes effect and, where the law needs it, ask for your consent again. The date at the top always shows the latest version.
18. Contact and grievances
Social Sailor Entertainment LLP (After All)
Registered office: Shop No. 6, 2nd floor, Hebbal Kempapura, Bengaluru, Karnataka 560024, India
Email: hello@afterall.world
Grievance Officer: Ismail (Founder), hello@afterall.world
We acknowledge grievances within 48 hours and resolve them within 30 days.