Privacy Policy

This policy explains the information Comr handles, why we use it, and the choices available to you.

Last updated August 14, 2026

Effective date: August 9, 2026; clarified August 14, 2026 (version 2026-08-09)

Information we collect

  • Account and profile data, including your username, password hash, account security records, private date of birth, age-attestation and policy-acceptance records, display name, biography, interests, profile media, and account settings.
  • Content and communications you submit, including posts, comments, reactions, follows, Com memberships and messages, direct messages, reports about public illegal content, appeals, and support requests.
  • Security and technical data, such as session records, request IDs, rate-limit signals derived from IP address and user agent, and privacy-filtered diagnostics.

How we use information

We use information to provide accounts and social features, deliver content and messages, secure the service, investigate narrowly scoped reports about public illegal content, support users, maintain reliability, and comply with law. We do not sell personal information.

Important privacy limits

Comr is pseudonymous, not anonymous. Most service records are linked to an internal account identifier even when other members see only a username.

During early access, uploaded profile and post media is intended for signed-in active members. We use access controls and anti-abuse safeguards to limit automated collection, but an authorized viewer can still save, photograph, record, or republish content they can see. If public media is offered later, it will require a separate choice and cannot be made impossible for others to copy or analyze.

New browser one-to-one text, images, GIFs, and supported video are end-to-end encrypted between enrolled participant devices and have no server-readable fallback. Retained legacy direct-message history remains separately labeled and server-readable. The E2EE claim does not include legacy history, Com chats, message metadata, or unsupported file types. The current implementation has not received an independent security audit.

Com chats are available to authorized Com members. Their message bodies are access-controlled, server-readable application-layer plaintext and are not end-to-end encrypted. The channel screen states this before members use the chat. Direct and Com messages are not copied into a platform content-moderation queue. Authorized service personnel may access them only when necessary for user-requested support, service security, or a valid legal obligation. Com owners and local moderators can manage messages within their own Com under product permissions.

See Security & Encryptionfor a plain-language list of Comr's current hashing, transport, at-rest encryption, and messaging boundaries.

Service providers and disclosures

We use infrastructure and storage providers, including Vercel and Supabase, to operate Comr. When GIF features are enabled, Comr sends GIF search terms and stored GIPHY media identifiers to GIPHY from Comr's servers. Comr proxies GIPHY search results and media so GIPHY does not receive a member's browser IP address, private conversation URL, or viewing request. Opening a POWERED BY GIPHY attribution link is an explicit visit to GIPHY and is then subject to GIPHY's privacy practices. Privacy-gated diagnostics providers, such as Sentry, may be used only when enabled for the deployment. We may also disclose information when required by law, to protect users or the service, or in connection with a business transaction subject to appropriate safeguards.

Retention and deletion

We retain account data while your account is active and retain other records only as needed for the purposes above. Some security, public-content moderation, legal, and backup records may remain after account deletion when preservation is necessary. We minimize or de-identify retained data where possible.

See the Account Deletion page for the current in-product process and known limits. You may also ask for access, correction, or deletion help by emailing comrsupport@provarion.ai.

Your choices

You can edit profile information, control post audiences, use a generated avatar instead of a photograph, revoke sessions, and delete your account from Settings. You may contact us to request access or correction, object to certain processing, report suspected automated harvesting or profile linkage, or ask a privacy question. Rights vary by location, and we may need to verify that a request belongs to you.

Age and changes

Comr is intended only for people age 18 or older. We collect your date of birth during account setup to enforce that eligibility rule. It is kept in a private account record, is not shown to other members, and is not copied into public profiles or product analytics. We retain the date and the time you attested to your age while your account is active and handle it through the account-deletion process, subject to legal, safety, and backup-retention requirements.

We may update this policy as the service changes. Material changes will be communicated in the product or by another appropriate method before they take effect.