SafeMeet Privacy Policy

Effective Date: November 24, 2025
Last Updated: November 24, 2025

Thanks for using SafeMeet! Here we describe how SafeMeet, Inc. (“SafeMeet,” “we,” “our,” or “us”) collects, uses, stores, and discloses your personal data when you use our secure messaging platform services and any other SafeMeet products and services (“Services”) and our website. Your messages, calls, or meetings are always encrypted end-to-end using client-side cryptographic keys and cannot be decrypted by SafeMeet, so they can never be shared or viewed by anyone (including us) except for you and your intended recipients.

1. What We Collect

  1. Account Information You Provide. We collect the following information directly from you during account registration and use of the Services:
  • Email address
  • Username
  • Display name
  • Optional profile information (if any)
  • Communications with our support or privacy teams
  1. Automatically Collected Technical Information. We collect certain device and technical information necessary to operate and secure the Service, including:
  • Device identifiers
  • IP addresses
  • Technical logs related to authentication, connectivity, failures, and performance
  • System event metadata (event IDs, timestamps, delivery status)
  • Session identifiers used for login persistence on browsers
  1. Cookies and Similar Technologies. We use cookies (small text files that are stored on your device by your browser or app) only where necessary to enable user login from a web browser. These cookies maintain session identifiers so that users do not need to re-enter their credentials.

    We do not use cookies for advertising, tracking, or analytics purposes and do not deploy third-party tracking technologies within the Service.

2. How We Use Personal Data

We process personal data for the purposes of providing the Services to you, including:

  1. Service Delivery. To operate, maintain, and provide access to the Services, such as:
  • Creating and managing your accounts and identities (via our authentication service)
  • Establishing secure sessions across devices
  • Routing and delivering messages, media, and events between users and devices
  • Synchronizing your data across our backend infrastructure for availability and functionality
  • Providing essential features such as login, presence, push notifications, and device management
  1. Security and Access Control. To secure the Service and protect users, systems, and infrastructure, such as:
  • Authentication and verification of user identity and credentials
  • Multi-device session management and device-level cryptographic keys
  • Rate limiting, abuse detection, and protection against spam, DDoS attacks, account compromise, and other threats
  • Audit logging for security and operational integrity
  1. Troubleshooting and Diagnostics. To ensure reliable and stable operation of the Service, such as:
  • Diagnosing issues, debugging failures, and ensuring reliable operation of the backend
  • Monitoring service availability, performance, and error logs
  • Providing user support and technical assistance
  1. Analytics and Service Optimization. To understand system usage patterns and improve the Service, such as:
  • Measuring system load, regional distribution, and capacity planning

  • Identifying usage trends and performance bottlenecks

  • Enhancing server efficiency, routing logic, and overall user experience

  • Testing authentication mechanisms and routing systems

  • Improving stability, reliability, and user experience

  • Refining user workflows

  • Evaluating backend performance

    Whenever possible, analytics are performed using aggregated or anonymized datasets that do not identify individual users. Importantly, we also want to point out that we do not use personal data for behavioral analytics, user profiling, or advertising purposes.

  1. Compliance. To enforce our Terms of Use , protect users and the platform, and comply with legal obligations, including:
  • Addressing fraudulent behavior, unauthorized access, or misuse of the platform
  • Enforcing use restrictions
  • Mitigating harmful or illegal activities occurring on or via the platform
  • Responding to valid legal requests
  • Maintaining compliance documentation or records
  • Handling security incidents in accordance with applicable laws

3. Disclosure of Personal Data

a) No Third-Party Sharing. We do not share your personal data with any third parties for hosting, analytics, advertising, data brokerage, or business purposes.

b) Legal and Regulatory Requests. We disclose personal data only when required by law and only in response to:

  • A valid court order.
    • A subpoena or warrant issued by a competent authority.
    • Another legally binding request obligating disclosure.

Importantly, message contents cannot be disclosed to law-enforcement authorities due to the end-to-end encrypted nature of the Service.

4. Your Rights

As a user entrusting us with your personal data, it’s important to be aware of the rights you have when using the Services. Depending on your location, these may include:

  • Accessing your personal data
  • Correcting inaccurate data
  • Deleting your data
  • Restricting processing
  • Objecting to certain types of processing
  • Porting certain data to another service
  • Appealing a decision related to a privacy request
  • Withdrawing consent where processing is based on consent

You can exercise these rights through:

  1. In-Platform Settings. You can perform certain actions directly from your account settings, including:
  • Updating profile information (display name, avatar, email)

  • Deleting messages you sent (redaction)

  • Removing linked emails

  • Managing device keys

  • Deleting your entire account

    1. Contacting Our Privacy Team. For rights that require administrative action, you can contact us through:
  • The dedicated privacy email address privacy@SafeMeet.us

  • A support form on our website and app

  • Written requests to our designated contact address

5. Security Measures

Security is fundamental to everything we do. All communications between clients, servers, shards, and authentication services are protected such that SafeMeet cannot access or decrypt the content you upload to the Services. Accordingly, we implement technical and organizational safeguards to protect your personal data, including:

  1. End-to-End Encryption.
  • TLS 1.2 or higher, modern cipher suites following industry best practices
  • HTTPS for all client-to-server and server-to-server federation communication
  • Message/Call/Meeting content is end-to-end encrypted on your device with Olm/Megolm cryptographic protocols
  1. Key Management. Cryptographic keys, used for the purposes of implementing secure encryption, are managed as follows:
  • Cryptographic keys are stored using industry-standard secure key storage mechanisms
  • Server TLS certificates are rotated and managed securely
  • E2EE session keys are managed client-side

6. Data Retention and Deletion

We’ll retain information you store on our Services for as long as your account exists or as long as we need it to provide you the Services. As a user, you can delete your accounts and data at any time. We do not retain personal data, metadata, or logs after you have deleted your account.

7. International Data Transfers; Legal Bases for Processing

SafeMeet operates its own servers. As of the effective date of this Privacy Policy, we do not use subcontractors. If subcontractors are used in the future, we will rely on appropriate transfer mechanisms such as standard contractual clauses or equivalent safeguards.

For users located in jurisdictions requiring confirmation of a lawful basis, we can confirm that we process personal data on the basis of:

  • Contract performance
  • Legitimate interests in operating and securing the Services
  • Compliance with legal obligations
  • User consent, where required by law

Where applicable, SafeMeet is the “controller” of personal data collected in connection with the Services.

8. Children’s Privacy

SafeMeet does not knowingly permit children below the minimum legal age, as applicable in their local jurisdiction, to create an account to use the Services. You must be at least 13 years old (or the minimum age required in your country) to use the Services. Please see our Terms of Use for more information.

9. Changes to this Privacy Policy

SafeMeet may update this Privacy Policy from time to time. If a change is material and could affect your rights, we will make reasonable efforts to notify you in advance by email and will act in good faith when determining what constitutes a material change.

We encourage you to review this Privacy Policy periodically to stay informed. Your continued use of the Services after updates confirms your acceptance of the updated Privacy Policy.

10. Contact Information

For inquiries relating to this Privacy Policy, requests to enforce your rights, or complaints, please contact us through privacy@SafeMeet.us.