Privacy Policy
Learn how WhatScent collects, uses, and protects your personal information. We are committed to privacy and data protection compliance.
Last updated: September 2025
Introduction
This Privacy Policy explains how WhatScent ("we," "us," or "our") collects, uses, discloses, and safeguards your information when you use our fragrance discovery platform, mobile application, and website (collectively, the "Service").
We are committed to protecting your privacy and complying with all applicable data protection laws, including GDPR, CCPA, and other privacy regulations. By using our Service, you agree to the collection and use of information in accordance with this policy.
Contact Us: privacy@whatscent.app
Information We Collect
Personal Information
- • Email address and name when you create an account or join our waitlist
- • Profile information including fragrance preferences and scent history
- • Communication preferences and marketing consent choices
- • Payment information for premium subscriptions (processed securely by third-party providers)
- • Contact information when you reach out to our support team
Usage Information
- • Device information (type, operating system, browser)
- • IP address and approximate location data
- • Usage patterns, feature interactions, and time spent on the platform
- • Performance metrics and error logs
Cookies and Tracking Technologies
We use cookies and similar tracking technologies in accordance with EU ePrivacy Directive and GDPR requirements:
Essential Cookies (Always Active)
Required for basic website functionality and cannot be disabled:
- • Authentication and security cookies
- • Session management cookies
- • CSRF protection cookies
Analytics Cookies (Consent Required)
Help us understand how visitors use our website:
- • Google Analytics (with IP anonymization)
- • Usage patterns and performance metrics
- • Error tracking and debugging information
Marketing Cookies (Consent Required)
Used to deliver relevant advertisements:
- • Targeted advertising cookies
- • Social media integration cookies
- • Retargeting and conversion tracking
Your Cookie Choices
You can manage your cookie preferences at any time through our cookie consent banner or privacy settings. You may also disable cookies through your browser settings, though this may affect website functionality.
Data Retention
We retain your personal information only as long as necessary for the purposes outlined in this Privacy Policy:
- • Account data retained while your account is active and for 3 years after account deletion
- • Usage analytics retained for 26 months for service improvement
- • Payment information retained for 7 years for tax and accounting purposes
- • Marketing data retained until you unsubscribe or withdraw consent
- • Legal holds may extend retention periods as required by law
International Data Transfers
Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards for international transfers:
- • EU-US Privacy Shield Framework compliance
- • Standard Contractual Clauses (SCCs) for EU data transfers
- • Adequacy decisions for approved jurisdictions
- • Binding corporate rules for intra-group transfers
How We Use Your Information
We use the information we collect for the following purposes:
- • Provide and maintain our fragrance discovery services
- • Personalize your experience with AI-powered scent recommendations
- • Process transactions and manage your account
- • Send you important updates, security alerts, and support messages
- • Improve our services through analytics and user feedback
- • Comply with legal obligations and enforce our terms of service
Information Sharing and Disclosure
We do not sell, trade, or rent your personal information to third parties. We may share your information only in the following circumstances:
- • With your explicit consent
- • With service providers who help us operate our platform (under strict confidentiality agreements)
- • When required by law or to protect our rights and safety
- • In connection with a business transfer or merger (with proper notice)
Your Privacy Rights
GDPR Rights (EU Residents)
As an EU resident, you have the following rights under GDPR:
- • Right to access your personal data and obtain information about its processing
- • Right to rectification of inaccurate or incomplete personal data
- • Right to erasure ("right to be forgotten") of your personal data
- • Right to data portability - receive your data in a structured format
- • Right to object to processing based on legitimate interests or direct marketing
- • Right to restriction of processing in certain circumstances
- • Right to withdraw consent at any time (where applicable)
To exercise these rights, contact privacy@whatscent.app. We will respond within 30 days. EU residents may also contact their local data protection authority if needed.
CCPA Rights (California Residents)
As a California resident, you have the following rights under CCPA:
- • Right to know what personal information we collect, use, and disclose
- • Right to delete your personal information (with exceptions)
- • Right to opt-out of the sale of personal information
- • Right to non-discrimination for exercising your CCPA rights
To exercise these rights, contact privacy@whatscent.app.
Additional Rights
- • Right to lodge a complaint with supervisory authorities
- • Right to judicial remedy against unlawful processing
- • Right to compensation for damages caused by unlawful processing
Data Breach Notification
In the event of a data breach affecting your personal information, we will:
- • Notify the relevant supervisory authority within 72 hours for breaches affecting EU residents
- • Notify affected users without undue delay when the breach poses a risk to their rights and freedoms
- • Take appropriate measures to mitigate the breach and prevent future occurrences
For breach-related inquiries, contact security@whatscent.app
Third-Party Services and Integrations
Our Service may integrate with or contain links to third-party services. We are not responsible for the privacy practices of these third parties:
- • Payment processors (Stripe, PayPal) - handle payment information securely
- • Analytics providers (Google Analytics) - with consent and IP anonymization
- • Email service providers - for newsletters and notifications
- • Social media platforms - for sharing and authentication
Please review the privacy policies of these third parties before using their services.
Data Security
We implement industry-standard security measures to protect your information:
- • End-to-end encryption for data transmission
- • Secure servers with regular security audits
- • Access controls and employee training on data protection
- • Regular security updates and vulnerability assessments
Children's Privacy
Our Service is not intended for individuals under 18 years of age. We do not knowingly collect personal information from minors under 18. If we become aware that we have collected personal information from an individual under 18, we will take steps to delete such information promptly. Parents and guardians are responsible for monitoring their children's use of our Service and should contact us immediately if they suspect unauthorized use by a minor.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date. Your continued use of our Service after any such changes constitutes your acceptance of the new Privacy Policy.
Contact Information
If you have any questions about this Privacy Policy or our privacy practices, please contact us:
Email: privacy@whatscent.app