This Privacy Policy replaces and supersedes all prior versions as of the effective date stated in the heading above.
MyMatch.lk (Pvt) Ltd ("MyMatch," "we," "us," or "our") respects your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our matchmaking web application, website, and related services (collectively, the "Services"). It applies to all Users, including visitors, registered members, and paying subscribers.
By using the Services, you consent to the data practices described in this policy. If you do not agree, please do not use MyMatch.lk.
1. Information We Collect
1.1 Information You Provide Directly
When you create an account, complete your profile, or use our Services, you provide us with:
- Identity and biodata – Your full name, age, date of birth, gender, location (city or district), marital status, religion, ethnicity, education, occupation, income range, height, lifestyle habits such as smoking or drinking, and family background information that you choose to share.
- Photos and media – Profile pictures, photo albums, and any video introductions you upload.
- Match preferences – Your desired partner's age range, religion, location, caste (if you voluntarily provide it), education level, and other filters you set for matchmaking.
- Account credentials – Your email address, phone number, and a hashed (encrypted) version of your password.
- Communications – Messages you send to other Users, chat transcripts, and any correspondence with our support team.
- Payment information – If you purchase a subscription, your billing details are processed by our third-party payment provider (e.g., PayHere, Stripe, or other PCI-DSS compliant processor). We do not store full credit or debit card numbers on our servers.
1.2 Information Automatically Collected
When you use the Services, we automatically collect:
- Device and browser information – Your IP address, browser type and version, operating system, device model, and language settings.
- Usage data – Pages you visit, time spent on the app, features you use (e.g., swipes, likes, messages sent), search queries, and match interactions.
- Approximate location – Your general geographic area based on IP address. If you grant permission, we may collect more precise GPS location to show nearby matches.
- Cookies and similar technologies – We use cookies to remember your login session, preferences, and to analyze usage patterns. You may disable cookies via your browser settings, but some features may not function properly.
1.3 Information from Third Parties
If you choose to sign in using Google, Facebook, or Apple, we receive your public profile information (name, email address, and profile picture) from that platform.
If you verify your identity or phone number through a third-party verification service, we receive a confirmation of verification but not the underlying sensitive documents.
2. How We Use Your Information
We use your information for the following purposes:
- To provide matchmaking services – Our algorithm analyzes your profile and preferences to suggest compatible matches. Your name, photos, and certain biodata are shown to other Users who are potential matches based on mutual preferences.
- To operate and improve the Services – We use usage data to understand how members interact with the platform, to fix bugs, and to enhance the matching algorithm.
- To communicate with you – We send service notifications such as new matches, messages from other Users, subscription reminders, and responses to your support requests. You may receive occasional promotional emails about new features or offers, with an option to opt out.
- To ensure safety and prevent fraud – We monitor activity for suspicious behavior, fake profiles, harassment, or prohibited content. Automated systems and, in limited cases, human moderators may review messages and profiles flagged by Users or our algorithms.
- To comply with legal obligations – We may use and retain your data as required by Sri Lankan law, including responding to lawful requests from courts or government authorities.
- For payment processing – Billing information is used to manage subscriptions, process renewals, and issue refunds where applicable.
3. Legal Basis for Processing (for users in certain jurisdictions)
If you are located in the European Economic Area, the United Kingdom, or other jurisdictions requiring a legal basis, we process your personal data under the following grounds:
- Contract performance – To provide the matchmaking services you requested.
- Legitimate interests – To improve our platform, prevent fraud, and send service notifications.
- Consent – For optional features such as precise location tracking or marketing emails.
- Legal obligation – To comply with applicable laws.
5. Your Rights and Choices
Depending on your location and applicable law, you may have the following rights:
- Access and portability – You can request a copy of the personal data we hold about you.
- Correction – You can update or correct your profile information at any time via account settings.
- Deletion – You may delete your account at any time through Settings → Delete Account. Upon deletion, your profile, photos, and messages are removed from active systems. Residual copies may remain in encrypted backups for up to 30 days before being permanently erased.
- Restriction of processing – You can ask us to temporarily stop processing your data in certain situations (e.g., while a dispute is resolved).
- Object to processing – You can object to our use of your data for direct marketing or for legitimate interests that override your rights.
- Withdraw consent – Where we rely on your consent (e.g., location tracking), you may withdraw it at any time without affecting the lawfulness of prior processing.
To exercise any of these rights, contact us at privacy@mymatch.lk. We will respond within 30 days as required by law. Verification of identity may be required.
6. Data Retention
We retain your personal data for as long as your account remains active. If you delete your account, we delete or anonymize your data within 90 days, except where:
- We are required by law to retain certain records (e.g., transaction history for tax purposes may be kept for up to 6 years under Sri Lankan law).
- We need to retain data to resolve disputes, enforce our Terms of Service, or prevent fraud (e.g., logs of banned users may be retained indefinitely in a limited form).
Aggregated, anonymized usage data may be retained longer for analytical purposes.
7. Data Security
We implement reasonable technical and organizational measures to protect your information, including:
- Encryption of data in transit using TLS (Transport Layer Security).
- Hashing of passwords using industry-standard algorithms.
- Access controls restricting employee access to personal data.
- Regular security reviews and vulnerability scanning.
However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to protect your data, we cannot guarantee absolute security. You are responsible for keeping your login credentials confidential.
In the event of a data breach that affects your personal information, we will notify you and relevant authorities as required by applicable law.
8. International Data Transfers
MyMatch.lk operates primarily from Sri Lanka. Your information may be transferred to and processed in servers located in Sri Lanka, Singapore, the United States, or other countries where our service providers operate. These countries may have data protection laws different from your country of residence.
When we transfer data internationally, we take steps to ensure adequate safeguards are in place, such as using standard contractual clauses approved by relevant authorities or relying on service providers' compliance with frameworks like the EU-US Data Privacy Framework (where applicable).
By using the Services, you acknowledge and consent to such transfers.
9. Children's Privacy
The Services are not intended for anyone under 18 years of age. We do not knowingly collect personal information from minors. If we become aware that a person under 18 has registered or provided data, we will delete the account and all associated information immediately. If you believe a minor has accessed our Services, please contact us at privacy@mymatch.lk.
10. Third-Party Links
Our Services may contain links to external websites or services (e.g., payment gateways, social media platforms). We are not responsible for the privacy practices of those third parties. We encourage you to read their privacy policies before providing any personal information.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors.
- Non-material changes (e.g., clarifications, typographical fixes) will be posted on this page with an updated "Last Updated" date.
- Material changes (e.g., new data uses, expanded sharing, changes to retention) will be notified via email to the address associated with your account and/or via an in-app notice at least 14 days before the effective date.
Your continued use of the Services after the effective date constitutes acceptance of the revised Privacy Policy. If you do not agree, you may delete your account before the changes take effect.
12. Contact Information
For privacy-related inquiries, data subject requests, or concerns about how we handle your personal information, please contact us at:
MyMatch.lk
[Your Registered Address, e.g., No. 123, Galle Road, Colombo 03, Sri Lanka]
- Privacy: privacy@mymatch.lk
- General support: support@mymatch.lk
- Legal matters: legal@mymatch.lk
- Phone (example): [+94 11 234 5678]
Replace bracketed placeholders with your official registered address and telephone number when publishing.
