Privacy Policy

Last updated: August 6, 2026

ISO App (“ISO”, “we”, “us”) collects limited information to operate the app: account sign-in, your posts, and messages you send within ISO. We do not sell personal information.

Account closure: If you’d like to close your account, email support@heyiso.app.

1. Information we collect

  • Account info: email address, authentication identifiers, and (when your email is confirmed at sign-in, via our confirmation link, Google, or Facebook OAuth) a timestamp we may store for optional “email confirmed” badges. Those badges are not background checks.
  • Sign-in with Facebook or Google: if you choose OAuth, we may receive your email address, display name, and profile photo URL from that provider to create your account, pre-fill your profile name (you can edit it), and optionally show your photo as an avatar on your profile and listings. We do not post to Facebook on your behalf or access your Facebook friends, groups, or timeline through login.
  • Email preferences:at sign-up (or finish-profile for Google/Facebook) you choose whether to receive message alerts and tips & community updates, both default on. We store your choices and timestamps. See Email below.
  • Profile info: ZIP code (to show approximate location labels).
  • Phone verification (optional): if you choose Verify your phone on Profile, we collect the US mobile number you enter and store a verification timestamp and last four digits after you confirm the one-time SMS code. See Text messages below.
  • Content: ISO posts, photos you upload, and messages/offers you send.
  • Referral invites: if you send email invites from /refer, we store the recipient addresses you enter (deduplicated per account) and send a one-time invite on your behalf with your personal link.
  • Diagnostics: basic logs and performance metrics to keep the service reliable.

2. How we use information

  • Operate the app (posting, browsing, messaging).
  • Prevent abuse and improve safety.
  • Improve performance and fix bugs.
  • Send message alerts when you opt in (someone messages you about an ISO).
  • Send tips & onboarding email when you opt in (welcome, posting guides, occasional community news).
  • Send one-time SMS verification codes when you request phone verification on Profile.
  • For neighbors selected for promotional neighbor-help fulfillment who consent in writing: photograph and/or record video during fulfillment and use that content in ISO App marketing (see Terms, Promotional programs).

3. Sharing

We share information only as needed to operate ISO (for example, infrastructure and SMS providers such as Supabase and Twilio that process data on our behalf). Messages are intended to be visible only to conversation participants.

Mobile numbers: We do not sell mobile phone numbers. We do not share mobile phone numbers with third parties or affiliates for their marketing or promotional purposes.

4. Text messages (phone verification)

ISO APP may send SMS one-time passcodes (OTPs) to US mobile numbers when a signed-in user requests phone verification on Profile. This is optional 2FA / identity-signal messaging for a Phone verified badge — not marketing.

  • Opt-in: only after you enter your number on Profile and click Text code (see also public consent summary).
  • Message frequency: typically one SMS per verification request you start; more if you request another code. No recurring marketing SMS program.
  • Message and data rates may apply.
  • Help / opt-out: reply HELP for help, STOP to cancel SMS from this program. Support: support@heyiso.app.
  • Terms: https://heyiso.app/terms.

5. Email, unsubscribe & your choices

Message alerts are transactional, they notify you about in-app conversations you are part of. You can turn them off in Profile → Email preferences; you may miss replies when off.

Tips & community updates include welcome email, onboarding guides, and occasional Bay Area ISO news (about 1–2 emails per month in beta). We only send these when you opted in at sign-up or on Profile, or when applicable law allows and you have not unsubscribed.

Every tips email includes an Unsubscribe link (one click, no login required) and a link to Profile → Email preferences. Auth emails (confirm signup, password reset) still send when required for security.

EEA / UK (GDPR): You may access, correct, or delete your data (see Data deletion above), object to or restrict certain processing, and withdraw consent for tips email anytime via unsubscribe or Profile. To exercise rights, email support@heyiso.app. You may lodge a complaint with your local data protection authority.

6. Data deletion (accounts)

You can delete your ISO App account and associated data (profile, posts, messages, and sign-in identifiers) in the app or by email.

  1. In-app (recommended): log in → Profile → scroll to Delete account → type DELETE → confirm. Deletion starts immediately.
  2. Or email support@heyiso.app from the address on your account.
  3. If you signed in with Facebook or Apple, you can also revoke ISO App in that provider's account settings; email us if you need remaining data removed.

7. Data retention

We keep data as long as needed to operate the service and comply with legal obligations, unless you request deletion as described above.

8. Public profile signals

When you post or appear on a listing, we may show limited trust signals derived from your account (for example a Founding Member badge after qualifying posts, or a campus badge when your verified sign-in email matches a participating school domain). These badges are informational only: they do not mean ISO has verified your identity for commerce, vouched for your items, or screened you for safety beyond normal account controls.

9. Beta note

ISO is in private beta. Features and data flows may change as we improve security and fraud prevention.