Scenity — Privacy Policy
Last updated: July 12, 2026
This Privacy Policy explains how Scenity ("Scenity," "we," "us," or "our") collects, uses, shares, and protects your personal information when you use the Scenity mobile application (the "App"). It also explains your rights and choices.
Scenity is a taste-based place-discovery app. You save places you love or want to visit, organize them into lists, follow other people, and receive personalized recommendations based on your taste.
Please read this policy carefully. If you do not agree with it, please do not use the App.
1. Who We Are and Scope
This policy applies to the Scenity mobile application and the services provided through it.
Scenity is the controller responsible for your personal information. For any privacy questions or requests, contact us at privacy@scenity.app.
This policy covers all users of the App. Additional rights for users in the European Economic Area (EEA), the United Kingdom, and the United States are described in Sections 8 and 9.
2. Information We Collect
We collect information in three ways: information you provide directly, information collected automatically from your device, and information from third parties.
2.1 Information you provide directly
- Account information. When you sign up, we collect your email address and password. If you sign up using Google or Apple, we receive your email address and basic identity information from that provider instead of a password.
- Profile information. Your username, full name, profile photo, bio, and home city.
- Age confirmation. During onboarding, we ask for your date of birth to confirm you meet the minimum age to use the App. We calculate your age on your device and store only the fact that your age was verified, together with the date of verification. We do not store your date of birth.
- Content you create. Lists you build (including list name, cover image, city, and neighborhood), the places you save and their status (want to go, visited, favorite), notes you write about places, tags you select, and posts you share.
- Onboarding preferences. The vibe tags and place types you select when you first set up the App, which help us build your initial recommendations.
- Business information. If you claim a venue as a business owner, we collect the information needed to verify your ownership and manage your venue listing.
2.2 Information collected automatically
- Device and usage information. Basic technical information about your device and how you interact with the App, needed to operate and secure the service.
- Approximate and precise location — used in the moment, never stored. When you use discovery features, the App accesses your device location to sort nearby results and power features such as "Around You." Your location is used only while you are actively using the App and is never saved to our servers. It is used in the moment and then discarded. We do not track your location in the background.
- Push notification token. If you enable notifications, we receive a device token used solely to deliver push notifications to you.
- Analytics — only if you opt in. We use Microsoft Clarity, a product-analytics tool, to understand how the App is used through session and interaction recordings. Microsoft Clarity is turned off by default. It only begins collecting after you explicitly grant consent, and you can withdraw that consent at any time in Settings. If you never opt in, no analytics data is collected. See Section 7.
2.3 Information from third parties
- Sign-in providers. If you sign in with Google or Apple, we receive your email and basic identity information from them to create and secure your account.
- Place information from Google. Place details shown in the App — such as names, categories, photos, opening hours, and editorial summaries — are provided by Google Places. This is catalog information about places, not information about you.
3. How We Use Your Information
We use your information to:
- Provide and operate the App — create your account, save your places and lists, show your profile, and let you follow and interact with others.
- Personalize your experience and generate recommendations. This is the core of Scenity. Based on the places you save, their status, and your navigation activity, we build a private "taste profile" — a mathematical representation of your preferences — which we use to recommend places you are likely to enjoy. This process involves automated profiling, described further below. This profiling is used only to personalize your own experience within the App.
- Enable social features — show what people in your circle are saving and following, subject to the visibility settings described in this policy.
- Communicate with you — send account-related messages and, if you have enabled them, push notifications.
- Maintain safety and security — protect against fraud, abuse, and misuse, and enforce our Terms of Service.
- Improve the App — but only using analytics data if you have opted in (Section 7).
Automated profiling. Your taste profile is derived, inferred information about your preferences. Under the European General Data Protection Regulation (GDPR), this constitutes profiling. It is used solely to personalize the recommendations you see. It does not produce legal or similarly significant effects about you. You have the right to object to this profiling, as described in Section 8.
4. Legal Bases for Processing (EEA / UK Users)
Where the GDPR or UK GDPR applies, we process your personal information on the following legal bases:
- Performance of a contract — to provide the App and the features you request (for example, saving places, building lists, showing your profile).
- Legitimate interests — to secure the service, prevent abuse, and improve the App in ways that do not override your rights.
- Consent — for optional features that rely on your permission, such as analytics (Microsoft Clarity), push notifications, and device location access. You may withdraw consent at any time.
Where we rely on legitimate interests, we have balanced those interests against your rights and freedoms.
5. How We Share Information
We do not sell your personal information, and we do not share it for targeted advertising. We do not use your information to show you third-party ads.
We share information only with the service providers that help us operate the App, and only as needed for them to perform their function:
- Supabase — our core backend provider, which hosts our database, authentication, file storage, and server functions. Essentially all first-party data you provide is stored here. Supabase hosts our data in the European Union (see Section 11).
- Google — provides place and map information (Google Places, Maps, and Geocoding), sign-in (Google OAuth), and, for business owners, ownership verification (Google Business Profile). Google also processes place catalog text to generate the semantic data that powers place matching. The search text you type into place search is sent to Google to return results.
- Apple — provides Sign in with Apple for account authentication.
- Expo — delivers push notifications on our behalf. To reach your device, notification content is relayed through Apple (APNs) and Google (FCM).
- Microsoft — provides Microsoft Clarity analytics, only if you have opted in.
We may also disclose information if required by law, in response to a valid legal request, to protect the rights, safety, or property of Scenity or others, or in connection with a merger, acquisition, or sale of assets (in which case we will notify you of any change in how your information is handled).
6. Aggregate and De-Identified Information
We may create and use aggregate, de-identified information — insights computed across large groups of users — that does not identify any individual. For example, we may analyze overall demand patterns for types of places in a neighborhood.
Any such use is strictly at the group level, above a minimum-size threshold, and never reveals an individual's identity, taste profile, saved places, or activity. We never sell or disclose your individual taste profile or your individual saved-places data. All aggregate insights are computed so that no individual can be identified from them.
7. Analytics and Tracking Technologies
Scenity is a mobile app and does not use cookies, advertising identifiers, or cross-app tracking. We do not use device fingerprinting, and we do not collect advertising IDs.
- Microsoft Clarity (opt-in, off by default). We use Microsoft Clarity to understand how people use the App through session and interaction analytics. It is disabled until you explicitly consent, and it is configured so that it is not used for advertising. You can turn it off at any time in Settings; once withdrawn, it stops collecting.
- Local device storage. The App stores a small amount of information on your device — such as your analytics consent choice and your login session — so the App works correctly. This information stays on your device and is first-party and functional, not tracking.
8. Your Rights (EEA / UK Users)
If you are in the EEA or UK, you have the following rights regarding your personal information:
- Access — request a copy of the personal information we hold about you.
- Rectification — correct inaccurate or incomplete information.
- Erasure — request deletion of your account and personal information (you can also delete your account directly in the App).
- Restriction — request that we limit processing in certain circumstances.
- Objection — object to processing based on legitimate interests, and object to the profiling used for recommendations described in Section 3.
- Portability — receive certain information you provided in a portable format.
- Withdraw consent — where we rely on consent (analytics, notifications, location), withdraw it at any time.
To exercise any of these rights, contact us at privacy@scenity.app. You also have the right to lodge a complaint with your local data protection authority.
9. Your Rights (United States Users)
Depending on your state, you may have the right to:
- Know what personal information we collect and how we use it.
- Access or delete your personal information.
- Correct inaccurate personal information.
- Not be discriminated against for exercising your rights.
We do not sell your personal information, and we do not share it for cross-context behavioral advertising, as those terms are defined under U.S. state privacy laws — and we never have.
To exercise these rights, contact us at privacy@scenity.app.
10. Data Retention
We keep your personal information for as long as your account is active or as needed to provide the App.
When you delete your account, we delete your personal information — including your profile, lists, saved places, notes, follows, onboarding preferences, and your derived taste profile. Your taste profile and behavioral data do not survive account deletion.
Two things are retained by design:
- Shared place catalog. Information about places themselves (which is not personal to you), including the count of how many people have saved a place, remains in our shared catalog.
- Third-party retention. If you opted into Microsoft Clarity, any data already processed by Microsoft is subject to Microsoft's own retention policies.
11. International Data Transfers
Our primary database, authentication, and file storage — where essentially all of your first-party data is held — are hosted in the European Union (Stockholm, Sweden).
Some of our service providers are located outside the EEA, primarily in the United States. This applies to Google (place, map, sign-in, and place-processing services), Apple (Sign in with Apple), Expo and its delivery partners (push notifications), and Microsoft (Clarity analytics, only if you opt in). When your information is transferred to these providers, the transfer is protected by appropriate safeguards, such as the European Commission's Standard Contractual Clauses or an applicable adequacy decision.
12. Children's Privacy
Scenity is not intended for children under the minimum age required in their country. We require a minimum age of 13, and 16 in jurisdictions where local law (such as in parts of the EEA) sets a higher age.
During onboarding, we ask for your date of birth to confirm you meet the minimum age. If you do not meet the minimum age, you cannot create an account, and any information collected during signup is deleted.
We do not knowingly collect personal information from children below the applicable minimum age. If we learn that we have done so, we will delete it. If you believe a child has provided us information, please contact us at privacy@scenity.app.
13. Security
We take reasonable technical and organizational measures to protect your information, including authenticated access controls and access rules that restrict who can read and write data. Your account is protected by your login credentials; please keep them secure. No method of transmission or storage is completely secure, but we work to protect your information and continually improve our safeguards.
14. Changes to This Policy
We may update this Privacy Policy from time to time. If we make material changes, we will notify you within the App or by other appropriate means before the changes take effect. The "Last updated" date at the top reflects the most recent version.
15. Contact Us
If you have questions, requests, or complaints about this Privacy Policy or your personal information, contact us at:
Scenity privacy@scenity.app
You also have the right to lodge a complaint with your local data protection authority.