Privacy Policy
Effective 5 October 2026 · Version 2026-10-05
Dating is personal. This policy explains, in plain language, what we collect, why, who can see it, and the rights you have under India's Digital Personal Data Protection Act, 2023 ("DPDP Act").
1. Who we are
Milanzo is operated by CoreVizen Private Limited (WeWork, Hyderabad, Telangana, India) ("we", "us"). For the purposes of the DPDP Act, we are the Data Fiduciary for the personal data you share with Milanzo.
2. The short version
- Your exact date of birth and location are never shown to other users. They see your age and a rounded distance.
- Your photos are private files. Other users only see a photo after our team has approved it, through links that expire.
- Religion is optional and hidden unless you choose to show it.
- You can only message people you have matched with.
- We do not sell your personal data, and we do not show third-party ads.
- You can delete your account at any time from your Profile. Your profile, photos and messages are erased straight away; only a minimal sign-up record is kept for 180 days, as Indian law requires.
3. What we collect
Information you give us
- Account: your email address (or mobile number, if phone sign-in is enabled). If you sign in with Google, Google shares your email address and name with us; we don't get your Google password or access to anything else in your Google account.
- Profile: first name, date of birth, gender, who you'd like to meet, what you're looking for, city, profession, education, bio, languages, interests, lifestyle answers (food, drinking, smoking, fitness, weekends, family plans) and answers to personality questions.
- Optional sensitive details: religion, and your gender and dating preferences, which can reveal information about your sexual orientation. You choose whether to provide them.
- Photos you upload.
- Verification selfie (optional): if you ask for the blue tick, a selfie you take in the app. Only our review team sees it, to check it matches your profile photos. It is never shown on your profile and is deleted as soon as it has been reviewed; we keep only the decision.
- Location (optional): if you tap "Use my current location", we store an approximate point to find people nearby. You can remove it at any time.
- Crossed paths (optional, off by default): if you turn it on, Milanzo records your device's location every few minutes while the app is open, to find people who were within about 300 m of you in the last 2 hours. Other people only ever see the area (such as a neighbourhood) and the day, never your exact location or time. Location points are deleted after 24 hours and crossings after 30 days. Turning the feature off deletes them immediately. If notifications are on, we tell you (and the other person) when you cross paths with someone new, naming only the area.
- Date plans (optional): if you use Date safety, the place, time and notes you enter. Only you, and anyone you send the private link to, can see them; the person you're meeting is not told. The link shows your first name, the place and time, your check-in status, and your match's first name, age, verified badge and main photo. It stops working 24 hours after your check-in time, or when you cancel the plan.
- Activity: likes and passes, super likes and any message you add to them, matches, messages you send, blocks and reports.
- Notifications (optional): if you turn on notifications, a push address for your device, so we can tell you about new matches and messages.
- Purchases (when paid features are available): what you bought, when, and its status. Payments are handled by our payment partners (see section 5); we do not receive or store your full card, UPI or bank details.
Information collected automatically
- Sign-in session cookies that keep you logged in. We use only essential cookies, not advertising or tracking cookies.
- Basic technical logs (such as IP address, browser type and error details) kept by our hosting providers for security and to keep the service running.
4. Why we use it
- To run the service: create your account, show your profile, and suggest compatible people.
- To calculate compatibility: we compare relationship goals, interests, lifestyle, personality answers and languages to produce a compatibility score and the "Why you matched" reasons. This is automated, but it only ranks suggestions. It never makes decisions about you with legal or similarly significant effects.
- To keep people safe: review photos and profiles, investigate reports, prevent fraud, scams and fake accounts, and enforce our Community Guidelines.
- To communicate with you: sign-in codes, safety notices and important changes to the service.
- To meet legal obligations: for example, responding to valid requests from authorities under Indian law.
We process your personal data on the basis of the consent you give when you create your profile, and for the legitimate uses the DPDP Act allows, such as complying with law. You can withdraw consent at any time by deleting your account. Some features won't work without certain data (for example, we can't suggest matches without your basic profile).
5. Who can see your information
- Other users can see your public profile: first name, age, city or rounded distance, profession, education, bio, interests, languages, relationship goal, some lifestyle answers, approved photos and verified badge, plus religion only if you choose to show it.
- Your matches can also see the messages you send them.
- People you super like see that you super liked them, and your message if you add one, at the top of their Discover. If they like you back, your super like messages appear in your chat. People you like normally are not told until you match.
- Our moderation team can see profile details, photos and reports. They can see a conversation only when it has been reported. Every such access is recorded in an audit log.
- Service providers who process data on our behalf under contract and only for running Milanzo:
- Supabase: database, sign-in and photo storage
- Cloudflare: website hosting, security and content delivery
- Our email delivery provider: sending sign-in codes and service emails
- Google: only if you choose "Continue with Google" to sign in
- Your browser or phone maker's push service (such as Google or Apple): delivering notifications you turned on
- Payment partners, when paid features are available: Razorpay for payments on the website, and Google Play for purchases in the Android app
- Authorities, when required by Indian law or to protect someone's safety.
Some of these providers may process data on servers outside India. Where that happens, we rely on their contractual commitments to protect it, and we follow any restrictions the Government of India notifies under the DPDP Act.
6. How long we keep it
- While your account is active: we keep the information needed to run the service.
- When you delete your account: your profile, photos, likes, super likes, matches and messages are permanently erased straight away, and your sign-in account is deleted.
- Minimal sign-up record (180 days): as required by the Information Technology (Intermediary Guidelines and Digital Media Ethics Code) Rules, 2021, we keep your email address (or mobile number), sign-up date and deletion date for 180 days after you delete your account. It is not visible to anyone in the app, is used only to answer lawful requests from authorities, and is then deleted automatically.
- Safety records: reports made about or by you, and moderation decisions, are kept after deletion without your profile attached, so we can prevent banned users from returning and meet legal obligations.
- Purchase records, when paid features are available, are kept for as long as tax and accounting laws require (generally 8 years).
- Technical and security logs are kept for 180 days, as required by CERT-In directions under the Information Technology Act, 2000, and then deleted.
7. Your rights
Under the DPDP Act, you have the right to:
- Access: get a summary of the personal data we hold about you and how we use it.
- Correction and updating: most details can be edited yourself from Profile, then Edit profile.
- Erasure: delete your account yourself from Profile, then Delete my account, or ask us to do it.
- Withdraw consent at any time, which we action by deleting your account.
- Grievance redressal: raise a complaint with our Grievance Officer (see below).
- Nominate someone to exercise these rights if you die or become unable to.
To use any of these rights, email corevizen@gmail.com from the email address on your account. If you're not satisfied with our response, you may complain to the Data Protection Board of India.
8. Security
We protect your data with encryption in transit (HTTPS), private photo storage, database rules that stop users from reading each other's private data, and restricted, logged access for our team. No system is perfectly secure. If we become aware of a personal data breach that affects you, we will notify you and the Data Protection Board of India, and report it to CERT-In, as the law requires.
9. Age limit
Milanzo is only for people aged 18 or over. We do not knowingly collect data from anyone younger. If you believe a minor is using Milanzo, report the profile or email us and we will remove it.
10. Changes to this policy
If we make significant changes, we will tell you in the app and ask you to review them. The version and date at the top of this page show when it was last updated.
11. Grievance Officer
For any complaint about how your personal data is handled, contact our Grievance Officer:
- Name: Surendra Aderu
- Email: saathi.milanzo@gmail.com
- Address: WeWork, Hyderabad, Telangana, India
See Grievance Redressal for how complaints are handled and response times.
