Privacy Policy
Last updated: May 20, 2026 · עברית
1. Who we are
Locado is a hyper-local community platform that connects service providers with nearby users. We are responsible for handling your personal data in accordance with this policy and applicable privacy laws (including the Israeli Privacy Protection Law and Apple's App Store guidelines).
2. What data we collect
| Data type | Purpose |
|---|---|
| Email and (encrypted) password | Authentication and account management |
| Name, profile photo, bio | Displaying your profile to other users |
| Location (coordinates / neighborhood) | Showing nearby services and placing services you offer on the map |
| User-generated content (services, reviews, messages, photos) | Displaying the content within the app |
| Phone number | Optional — used for contact between users who consent to share (SharePhoneModal) |
| Payment information | Processed by Stripe — we never see or store credit card details |
| iOS system permissions | Location, Camera, and Photos — required for core features. Fully controllable in device Settings |
| Technical info (IP, device type, browser) | Security, fraud prevention, and troubleshooting |
3. Location
Locado is location-based. We request access to your location only to show relevant nearby services and to place services you offer on the map. You can use the app without sharing location, but the ability to discover services around you will be limited.
4. How we use the data
- Operating the service and displaying services near you.
- Enabling communication between users (messages, reviews, bookings).
- Improving the product experience and fixing issues.
- System security and abuse prevention.
- Sending service notifications (booking confirmations, reminders).
We do not sell your data to third parties.
5. Who we share data with
- Other users of the app — your profile, services, reviews, and the approximate location of services you posted — are visible to other users. Private messages are visible only to the recipient.
- Infrastructure providers — we use Supabase (storage and database), Vercel (web app hosting), Stripe (payment processing), and Apple TestFlight / App Store (iOS distribution). These providers are bound by data protection standards.
- Law enforcement — only when required by law (court order, criminal investigation, etc.).
6. Cookies
We use essential cookies to maintain login state and identify the device. We do not use third-party advertising tracking cookies.
7. Data retention
We retain your data as long as your account is active. Upon account deletion, personal data will be deleted or anonymized within 30 days, except for data we are legally required to retain (e.g., billing records).
8. Your rights
- Access — request to see the data we hold about you.
- Correction — update inaccurate information.
- Deletion — request deletion of your account and data.
- Export — receive a copy of your data in a readable format.
- Object — object to certain data processing.
To exercise your rights — contact us through the in-app support form. We will respond within 30 days.
9. Security
We implement reasonable security measures — HTTPS traffic encryption, password hashing, and role-based access control. Despite this, no system is fully immune. If you identify a vulnerability, please report it to us immediately.
10. Minors
The service is intended for individuals 18 and over. We do not knowingly collect data from minors under 18. If you identify a minor under 18 registered with us, please notify us and we will remove the account.
11. Policy changes
We will update this policy from time to time. Material changes will be announced in the app before they take effect.
12. Contact
For questions, data access requests, or privacy issue reports — contact us through the in-app support form.