Gizlilik Politikası

Son güncelleme: 5 Ekim 2026

Verilerin kullanımı

Verileriniz yalnızca uyumlu ev arkadaşı eşleştirmesi ve güvenli bir deneyim sunmak için kullanılır. Üçüncü taraflara satılmaz, reklam amacıyla kullanılmaz.

Güvenlik

Tüm veriler şifreli bağlantı (TLS) üzerinden iletilir ve satır seviyesi güvenlik (RLS) ile korunur. Mesajlarınıza normalde yalnızca siz ve eşleştiğiniz kişi erişir; mesajlar uçtan uca şifreli değildir ve şikayet incelemesi veya yasal yükümlülük hâlinde yetkili ekibimiz erişebilir.

Profilinizin görünürlüğü

Uygun kullanıcılara profil ve test yanıtları gösterilir. Yüklenen fotoğraflar, diğer kullanıcılara gösterilmeden önce otomatik bir güvenlik taramasından (çıplaklık, şiddet, kendine zarar verme) geçer; kurallara uymayan fotoğraf yayımlanmaz. Ekibimiz fotoğrafları ayrıca inceleyebilir ve ihlal tespit edilen fotoğrafı kaldırır. Dosyalar özel depoda tutulur ve kısa süreli bağlantılarla açılır. Engelleme veya silme, başka bir cihazın önceden indirdiği görüntüyü geri alamaz.

Hizmet sağlayıcılar

Supabase (hesap, veritabanı ve depolama), Resend (doğrulama ve parola sıfırlama e-postaları), Expo ile Apple/Google (bildirim), OpenAI (profil fotoğrafının otomatik güvenlik taraması; fotoğraf yalnızca bu tarama için gönderilir, reklam veya model eğitimi için kullanılmaz) ve yapılandırılmışsa Sentry (hata izleme) kullanılır. İşleme konumu hizmet sağlayıcı ve proje ayarlarına bağlıdır; yurt dışına aktarım söz konusu olabilir.

Analitik ve hata kayıtları

Ürün analitiği ve reklam izleme kullanılmaz. Sentry etkinleştirilmişse hatalar hesap kimlik numarasıyla ilişkilendirilebilir; kayıtlar anonim değildir. Gönderim öncesinde serbest hata metni, istek içeriği ve olay adımları çıkarılır. Bildirimlerde mesaj metni veya gönderen adı bulunmaz.

Saklama süresi

Aktif hesabın verileri hizmet için saklanır. Silme isteği alınınca profil gizlenir; dosya ve hesap silme işlemi hata durumunda tekrar denenir. Şikayet kanıtları 30 gün, işlenmiş bildirim işleri en fazla 7 gün tutulur. Kapanmış sohbetlerde 30 günden eski mesajlar bakım görevince temizlenir. Hizmet sağlayıcı yedekleri ve hata kayıtları sağlayıcının proje saklama ayarlarına tabidir.

KVKK Aydınlatma Metni

Son güncelleme: 5 Ekim 2026

Veri sorumlusu

Roomie uygulaması Skymoon Studios tarafından sunulur. 6698 sayılı Kişisel Verilerin Korunması Kanunu kapsamında veri sorumlusu Skymoon Studios'tur (skymoonstudios.com). İletişim: support@roomieapp.site. Hizmet yalnızca 18 yaş ve üzerine yöneliktir.

İşlenen veriler

Ad soyad, doğum tarihi, cinsiyet, e-posta adresi, profil fotoğrafı, 25 soruluk uyum testi yanıtları ve beyan ettiğiniz şehir/semt bilgisi eşleştirme hizmeti için işlenir. Uygulama cihazınızın GPS konumunu okumaz. Ayrıca bildirim jetonu, cihaz/çökme bilgileri ile engelleme ve şikayet kayıtları tutulur.

Hukuki sebepler

Hesap, eşleştirme ve mesajlaşma hizmeti için gerekli veriler ile güvenlik ve hata kayıtları işlenir. Ürün analitiği ve reklam izleme kullanılmaz. Kimlik belgesi, biyometri veya sağlık raporu istenmez. Biyografi ve mesajlara hassas kişisel bilgilerinizi yazmayın; serbest metinler ve yaşam tercihleriniz hassas bilgiler içerebilir.

Diğer kullanıcıların gördükleri

Testini tamamlamış uygun kullanıcılar adınızı, yaşınızı, şehrinizi, profil fotoğrafınızı, biyografinizi ve test yanıtlarınızı görebilir. Doğum tarihinizin tamamı ve e-posta adresiniz paylaşılmaz. Engelleme iki yönlü erişimi kapatır. Önceden indirilmiş görüntüler geri alınamaz; kısa süreli fotoğraf bağlantısı en fazla 60 saniye geçerli kalabilir.

Kimlik doğrulaması yapılmaz

Roomie kullanıcıların kimliğini doğrulamaz; selfie veya yüz tanıma kontrolü yoktur. Kayıt sırasında yalnızca e-posta adresinin size ait olduğu doğrulanır. Bu nedenle biyometrik veri toplanmaz ve saklanmaz. Hesabın arkasındaki kişinin gerçekte kim olduğunu Roomie garanti edemez.

Yurt dışına aktarım

Supabase hesap, veritabanı ve dosya depolama; Resend hesap e-postalarının (doğrulama, parola sıfırlama) gönderimi; Expo ve Apple/Google bildirim iletimi; OpenAI profil fotoğrafı güvenlik taraması; yapılandırılmışsa Sentry hata izleme amacıyla kullanılır. Bu hizmetler yurt dışında veri işleyebilir. Veriler reklam amacıyla satılmaz. Hizmetlerin gerçek proje bölgeleri ve aktarım koşulları veri sorumlusu tarafından belirlenir.

Mesajların gizliliği

Mesajlarınıza normalde yalnızca siz ve eşleştiğiniz kişi erişir. Mesajlar uçtan uca şifreli değildir: bir şikayeti incelemek veya yasal bir yükümlülüğü yerine getirmek gerektiğinde yetkili ekibimiz ilgili kayıtlara erişebilir.

Haklarınız ve başvuru

Verilerinize ilişkin erişim, düzeltme, silme ve diğer taleplerinizi support@roomieapp.site adresine iletebilirsiniz. Uygulamadaki hesap silme işlemi profilinizi hemen gizler, dosyaları ve hesabı arka planda kaldırır. Şikayet incelemesi için ayrılmış sınırlı kanıtlar, şikayet tarihinden itibaren 30 güne kadar tutulur.


Privacy Policy

Updated: 5 October 2026

Use of data

Your data is used solely to match compatible roommates and provide a safe experience. It is never sold to third parties or used for advertising.

Security

All data is transmitted over encrypted connections (TLS) and protected with row-level security (RLS). Normally only you and your match can read your messages; they are not end-to-end encrypted, and our team may access them when investigating a report or complying with the law.

Profile visibility

Eligible users can see your profile and questionnaire answers. Uploaded photos go through an automatic safety scan (nudity, violence, self-harm) before other users can see them; photos that break the rules are not published. Our team may also review photos and removes any found in violation. Files are private and accessed through short-lived links. Blocking or deletion cannot recall images already downloaded to another device.

Service providers

We use Supabase (accounts, database and storage), Resend (confirmation and password-reset emails), Expo and Apple/Google (notifications), OpenAI (automatic safety scan of profile photos; the photo is sent only for this scan and is not used for advertising or model training), and Sentry when configured (error monitoring). Processing locations depend on provider and project settings and may be outside your country.

Analytics & crash logs

Product analytics and advertising tracking are not used. If Sentry is enabled, errors may be linked to your account ID and are not anonymous. Free-text errors, request payloads and breadcrumbs are removed before transmission. Notifications contain neither message text nor sender names.

Retention

Active account data is retained to provide the service. Deletion hides the profile immediately and removes files and the account, retrying on failure. Safety report evidence is retained for 30 days and processed push jobs for up to 7 days. Maintenance removes messages older than 30 days from closed conversations. Provider backups and error records follow the provider project retention settings.

Privacy Notice (KVKK)

Updated: 5 October 2026

Data controller

The Roomie app is provided by Skymoon Studios, the data controller under Turkey’s Personal Data Protection Law (No. 6698) (skymoonstudios.com). Contact: support@roomieapp.site. The service is intended for people aged 18 and over only.

Data processed

Full name, date of birth, gender, email address, profile photo, your answers to a 25-question compatibility test and the city/district you declare are processed to provide the matching service. The app does not read your GPS location. We also process your push notification token, device and crash diagnostics, and block/report records.

Legal bases

Data needed for accounts, matching, messaging and service security is processed. Product analytics and advertising tracking are not used. We do not request identity documents, biometric data or health reports. Avoid adding sensitive personal information to biographies or messages; free text and lifestyle preferences may contain sensitive information.

What other users can see

Eligible users who have completed onboarding can see your name, age, city, profile photo, biography and questionnaire answers. Your full birth date and email address are not shared. Blocking restricts access in both directions. Previously downloaded images cannot be recalled; a short-lived image link may remain valid for up to 60 seconds.

No identity verification

Roomie does not verify the identity of its users; there is no selfie or face check. Only ownership of your email address is verified at sign-up. No biometric data is therefore collected or stored. We cannot guarantee who is really behind an account.

International transfers

Supabase provides accounts, database and file storage. Resend sends account emails (confirmation, password reset). Expo and Apple/Google deliver notifications. OpenAI scans profile photos for safety. Sentry provides error monitoring when configured. These providers may process data outside your country. Your data is not sold for advertising. The controller determines project regions and applicable transfer arrangements.

Confidentiality of messages

Normally only you and your match can read your messages. They are not end-to-end encrypted: our team may access the relevant records when investigating a report or complying with a legal obligation.

Your rights and how to apply

Send access, correction, deletion and other privacy requests to support@roomieapp.site. In-app account deletion hides your profile immediately and removes files and the account in the background. Limited safety report evidence is retained for up to 30 days from the report date.