Privacy Policy

Last updated April 13, 2025

This Privacy Policy for HeySitters (“we,” “us,” or “our”), describes how and why we might access, collect, store, use, and/or share (“process”) your personal information when you use our services (“Services”), including when you:

  • Visit our website at https://heysitters.com, or any website of ours that links to this Privacy Policy.
  • Download and use our mobile application (HeySitters), or any other application of ours that links to this Privacy Policy.
  • Use HeySitters to connect families with trusted nannies, babysitters, cleaners, housekeepers, and senior healthcare providers, browsing detailed caregiver profiles to find the perfect match for your needs.
  • Engage with us in other related ways, including any sales, marketing, or events.

Questions or concerns? Reading this Privacy Policy will help you understand your privacy rights and choices. We are responsible for making decisions about how your personal information is processed. If you do not agree with our policies and practices, please do not use our Services. If you have any questions or concerns, please contact us via our Contact Us page or at [email protected].

1. What Information Do We Collect?

Personal Information You Disclose to Us

In Short: We collect personal information that you provide to us, including through third-party services like Clerk and Stripe Identity.

We collect personal information that you voluntarily provide when you register on the Services, express an interest in obtaining information about us or our Services, participate in activities on the Services (such as creating profiles or messaging other users), or otherwise contact us. We use Clerk to manage user accounts and authentication, and Stripe Identity for the optional Verify Me service.

Personal Information Provided by You. The personal information we collect depends on your interactions with us and the Services, your choices, and the features you use. The personal information may include:

  • Names
  • Phone numbers
  • Email addresses
  • Usernames
  • Passwords
  • Contact preferences
  • Location information (e.g., city or postal code)
  • Profile details (e.g., photos, experience, preferences for care providers)
  • For care providers using the Verify Me service (via Stripe Identity): government-issued identification documents (e.g., driver’s license, passport), selfies, addresses, and browser metadata (e.g., IP address, camera type)

Sensitive Information. When necessary, with your consent or as otherwise permitted by applicable law, we process the following categories of sensitive information:

  • Government-issued identification numbers and documents (e.g., driver’s license, passport)
  • Selfies (biometric identifiers) for identity verification via Stripe Identity

Payment Data. We may collect data necessary to process your payment if you choose to make purchases (e.g., for subscriptions or Verify Me services), such as your payment instrument number and security code. All payment data is handled and stored by Stripe. You may find their privacy notice at https://stripe.com/en-ca/privacy.

Social Media Login Data. We use Clerk to offer registration using social media account details (e.g., Google, Facebook). If you choose this option, we collect profile information as described in “How Do We Handle Your Social Logins?” below.

Application Data. If you use our mobile application, we may collect, with your permission:

  • Geolocation Information: We may request access to track location-based information from your device, either continuously or while using our app, to provide location-based services (e.g., finding nearby jobs). You can change permissions in your device settings.
  • Push Notifications: We may send notifications about your account or app features. You can opt out in your device settings.

This information is needed for app security, operation, troubleshooting, and analytics. All personal information you provide must be true, complete, and accurate, and you must notify us of changes.

Information Automatically Collected

In Short: Some information, like IP addresses or browser characteristics, is collected automatically when you use our Services, including via Clerk.

We, and our authentication provider Clerk, automatically collect certain information, such as:

  • Log and Usage Data: Service-related data (e.g., IP address, browser type, pages viewed, date/time stamps, searches, feature usage) recorded in log files for security and analytics.
  • Device Data: Information about your device (e.g., IP address, device ID, browser, operating system, hardware model, mobile carrier) to ensure functionality.
  • Location Data: Imprecise location data (e.g., based on IP address) to tailor Services. You can disable location settings, but this may limit features.

We use cookies and similar technologies (e.g., web beacons, pixels), including through Clerk, for security, analytics, and personalized ads, as detailed in our Cookie Notice.

Google API

Our use of information from Google APIs adheres to the Google API Services User Data Policy, including Limited Use requirements.

2. How Do We Process Your Information?

In Short: We process your information to provide, improve, and administer our Services, communicate with you, ensure security, and comply with laws, with your consent where required, using Clerk for authentication and Stripe Identity for verification.

We process your personal information for:

  • Account Creation and Management: To enable registration, login, and account functionality, using Clerk for secure authentication and session management.
  • Service Delivery: To connect care providers and seekers, including profile creation and messaging.
  • Verify Me Service: To verify the identity of care providers who opt for the Verify Me service, using Stripe Identity to compare government-issued IDs and selfies, ensuring platform trust.
  • User Support: To respond to inquiries and resolve issues.
  • Administrative Communications: To send updates about our Services, terms, or policies.
  • User-to-User Communications: To facilitate messaging between users.
  • Feedback: To request feedback on our Services.
  • Marketing: To send promotional communications, with opt-out options (see “What Are Your Privacy Rights?”).
  • Advertising: To deliver personalized ads based on your interests or location.
  • Testimonials: To post testimonials, which may include personal information, with consent.
  • Security: To prevent fraud and ensure platform safety.
  • Improvement: To analyze usage trends and enhance Services, marketing, and user experience.
  • Legal Compliance: To meet legal obligations or respond to legal requests.

3. What Legal Bases Do We Rely On to Process Your Information?

In Short: We process your information with consent, to fulfill contracts, comply with laws, or meet legitimate business interests, as permitted by law.

If You Are Located in Canada

We process your information with express or implied consent for specific purposes. You can withdraw consent at any time via our Contact Us page. We may process without consent in cases like:

  • Urgent collection in your interest where consent is untimely.
  • Fraud investigations or prevention.
  • Business transactions meeting legal conditions.
  • Insurance claim processing.
  • Identifying vulnerable individuals.
  • Investigating breaches of agreements or laws.
  • Complying with legal orders.
  • Work-related data consistent with its purpose.
  • Journalistic or artistic purposes.
  • Publicly available data per regulations.

General

We process data to perform contracts (e.g., providing Services), protect rights, or pursue legitimate interests (e.g., improving Services), unless overridden by your rights.

4. When and With Whom Do We Share Your Personal Information?

In Short: We share information in specific situations with third parties like Clerk and Stripe Identity under strict agreements or with other users as part of the Services.

We may share your personal information:

  • Business Transfers: During mergers, sales, or acquisitions, under confidentiality agreements.
  • Other Users: When you create a profile, information like your name, photo, location, and details may be visible to other users to facilitate connections, as per your privacy settings. You can control what is shared.
  • Authentication Provider (Clerk): With Clerk for user management and login, including its sub-processors (e.g., analytics providers), under strict data processing agreements to ensure security and compliance.
  • Identity Verification Service (Stripe Identity): With Stripe Identity and its third-party verification providers for the Verify Me service, sharing ID documents, selfies, and related data (excluding biometric identifiers), under strict confidentiality agreements. Verification results are accessible to HeySitters but not to other users.
  • Payment Processor (Stripe): With Stripe for payment processing, bound by contracts to protect your data.

5. Do We Use Cookies and Other Tracking Technologies?

In Short: We, and Clerk, use cookies and tracking technologies for functionality, analytics, and ads.

We and Clerk use cookies, web beacons, and pixels to maintain security, save preferences, and analyze usage. Third parties may use tracking for analytics and tailored ads, which may be considered a “sale” or “sharing” under US laws. You can opt out via heysitters.com/personal-info. See our Cookie Notice for details.

Google Analytics

We use Google Analytics to track usage, with features like Demographics and Interests Reporting. Opt out at https://tools.google.com/dlpage/gaoptout or via Google’s Ads Settings. See Google’s Privacy & Terms at https://policies.google.com/privacy.

6. How Do We Handle Your Social Logins?

In Short: Social logins via Clerk provide us limited profile data, used only for stated purposes.

If you register via social media (e.g., Google, Facebook) through Clerk, we receive profile data like name, email, or photo, depending on the provider. We use this for account creation and Services, as outlined here. We don’t control social media providers’ data practices; review their privacy policies.

7. How Long Do We Keep Your Information?

In Short: We keep your information only as long as necessary, unless legally required.

We retain personal information for the purposes outlined here, typically as long as you have an account. For the Verify Me service, Stripe Identity deletes biometric identifiers (e.g., selfies) within one year of verification, and ID documents are deleted after verification, unless legally required (e.g., anti-money laundering, tax obligations). When no longer needed, we delete or anonymize data, or securely store it if deletion isn’t possible (e.g., backups).

8. How Do We Keep Your Information Safe?

In Short: We, Clerk, and Stripe use industry-standard measures to protect your data, but no system is 100% secure.

We implement technical and organizational measures, including encryption, access controls, and regular audits, to protect your information. Clerk uses HttpOnly cookies and SameSite flags to secure authentication. Stripe Identity uses TLS encryption for data transfers and AES-256 encryption at rest. Our servers are in secure data centers in Canada and the United States. Despite our efforts, no transmission or storage is fully secure, so transmission is at your own risk. Use secure environments to access our Services.

9. Do We Collect Information from Minors?

In Short: We don’t collect data from users under 19.

Our Services are for users 19 and older, aligning with childcare responsibilities. We don’t knowingly collect data from those under 19. If we discover such data, we deactivate the account and delete the information. Contact us at Contact Us if you suspect we have minor data.

10. What Are Your Privacy Rights?

In Short: You have rights to access, correct, delete, or restrict your data, including data managed by Clerk and Stripe, subject to laws.

We comply with Canada’s Personal Information Protection and Electronic Documents Act (PIPEDA) and US state laws like the California Consumer Privacy Act (CCPA) and Colorado Privacy Act (CPA). Depending on your location, you may have rights to:

  • Request access to your personal information, including data held by Clerk or Stripe Identity.
  • Correct inaccuracies.
  • Request deletion.
  • Restrict processing.
  • Data portability.
  • Object to processing.
  • Opt out of targeted advertising or sharing.
  • Limit use of sensitive data (e.g., biometric identifiers).

Withdrawing Consent: You can withdraw consent at any time via Contact Us, though this doesn’t affect prior lawful processing.

Marketing Opt-Out: Unsubscribe from marketing emails via links in emails, reply “STOP” to SMS, or contact us.

Account Information: Review or update your account at heysitters.com/personal-info. To terminate, request via Contact Us; we’ll deactivate or delete your data, including coordinating with Clerk and Stripe, retaining some for legal purposes (e.g., fraud prevention).

Cookies: Set your browser to reject cookies, but this may affect functionality.

Contact us at [email protected] for questions.

11. Controls for Do-Not-Track Features

In Short: We don’t respond to Do-Not-Track signals, but you can opt out of tracking.

No standard exists for Do-Not-Track (DNT) signals, so we don’t respond to them. You can opt out of tracking via heysitters.com/personal-info. We’ll update this policy if a DNT standard is adopted.

12. Do United States Residents Have Specific Privacy Rights?

In Short: US residents in certain states have rights to access, correct, delete, or opt out of data processing, including sensitive data like biometrics.

Categories of Personal Information We Collect

We’ve collected the following in the past 12 months:

Category Examples Collected
A. Identifiers Name, email, phone, IP address, account name YES
B. Personal Information (California Customer Records) Name, contact info, employment history YES
C. Protected Classifications Gender, age, race, marital status YES
D. Commercial Information Transaction, payment info YES
E. Biometric Information Selfies for Verify Me YES
F. Internet Activity Browsing, search history, interactions YES
G. Geolocation Data Device location YES
H. Audio/Visual Data Images, recordings YES
I. Professional Information Job history, qualifications YES
J. Education Information Student records YES
K. Inferences Preference profiles NO
L. Sensitive Information ID numbers, selfies, login info YES

We collect sensitive information (e.g., ID documents, selfies via Stripe Identity) only with consent or as allowed by law, not to infer characteristics. Retention is as long as you have an account, except for Verify Me data, where biometrics are deleted within one year by Stripe Identity unless legally required.

Your Rights

Residents of California, Colorado, Connecticut, and other listed states may have rights to:

  • Know, access, correct, or delete your data.
  • Obtain a copy of your data.
  • Non-discrimination for exercising rights.
  • Opt out of targeted advertising, sales, or profiling.
  • Limit sensitive data use (e.g., biometric identifiers via Stripe Identity).
  • Access categories or specific third parties we share with (e.g., Clerk, Stripe).

Exercise Rights: Visit heysitters.com/personal-info or email [email protected]. Authorized agents need proof of authorization.

Verification: We verify identity using existing data or may request more to prevent fraud.

Appeals: If we deny a request, appeal to [email protected]. We’ll respond with actions taken or reasons for denial. You can complain to your state attorney general.

California “Shine The Light” Law

California residents can request information about data shared for direct marketing, free annually, via Contact Us. We haven’t shared such data in the past year.

13. Do We Make Updates to This Policy?

In Short: Yes, we update this policy to comply with laws.

We may revise this policy, updating the “Last updated” date. Material changes will be notified via email or prominent posting. Review regularly at heysitters.com/privacy-policy.

14. How Can You Contact Us About This Policy?

If you have questions, email us at [email protected] or visit our Contact Us page.

15. How Can You Review, Update, or Delete the Data We Collect from You?

You may have rights to access, correct, delete, or restrict your data, including data managed by Clerk or Stripe. Visit heysitters.com/personal-info or contact us via Contact Us to make a request. We’ll respond per applicable laws.