Keyhold

Privacy Policy

Effective date: April 10, 2026  ·  Last updated: September 24, 2026

1. Introduction

Keyhold (“we,” “our,” or “us”) operates an adult lifestyle platform for consenting adults. This Privacy Policy explains what personal information we collect, how we use it, and the choices you have. It applies to keyhold.app and all associated services.

By using the Platform you agree to the collection and use of information as described here. If you do not agree, please do not use the Platform.

2. Information We Collect

Information you provide directly:

  • Account data: username, email address, password (stored as a hashed value — we never store plaintext passwords), date of birth.
  • Profile data: display name, bio, avatar, interests, experience level, and any other information you choose to add to your profile.
  • User content: photos, messages, posts, comments, and other content you submit.
  • Payment data: if you buy a paid plan, your card details are collected and processed by our payment processor, Stripe, Inc., and are never sent to or stored on our servers. We keep a record of your plan, its status and billing dates, and the Stripe customer and subscription identifiers that link your account to it. Stripe’s handling of your data is covered by its privacy policy.
  • Communications: messages you send us via email or support channels.

Information collected automatically:

  • Log data: IP address, browser type, operating system, pages visited, timestamps.
  • Device data: device type, unique device identifiers (for push notifications with your consent).
  • Usage data: features used, actions taken (lock creation, extension triggers, etc.) — used to improve the Platform.
  • How you found us: if you arrive from a link with advertising tags (such as utm_source) or from another website, your browser stores those tags and that site’s name for up to 30 days. If you then sign up, they are saved with your account so we know which ads work. We also count visits per day and per source, as totals that do not identify you. We use no third-party analytics or advertising trackers.
  • Cookies and similar technologies: session cookies (required for authentication), preference cookies, and analytics. See Section 8.

3. How We Use Your Information

We use the information we collect to:

  • Create and maintain your account and verify your identity.
  • Provide, operate, and improve the Platform.
  • Process subscription payments and send billing receipts.
  • Send transactional emails (email verification, password reset, lock event notifications) — you cannot opt out of transactional emails while your account is active.
  • Send optional marketing or product update emails (you may opt out at any time).
  • Enforce our Terms of Service and detect/prevent fraud, abuse, and illegal activity.
  • Comply with legal obligations, including mandatory reporting of CSAM to NCMEC and law enforcement.
  • Respond to your support requests.

4. How We Share Your Information

We do not sell your personal information. We share it only as described below:

  • Other users: Profile information you make public (username, bio, avatar, public locks) is visible to other users. Private messages are visible only to the participants.
  • Verification and task photos: visible to the keyholder on that lock and to our moderators. If you create a share link for a verification, the people you send it to can see that photo after signing in to an account with a confirmed email address, and only while the verification is open; anyone else holding the link sees only your username and the vote count. You can turn a share link off at any time.
  • Service providers: We share data with trusted third parties who assist in operating the Platform, including:
    • Resend — transactional email delivery
    • Amazon Web Services — media storage (S3) and, when automated screening is enabled, content moderation of uploaded images (Rekognition)
    • Sentry — error monitoring (may receive IP addresses incidentally; we do not send default PII)
    • PostHog — product analytics; loaded only after you accept cookie consent. Events are sent without your IP address and clicks are not captured automatically. Sessions may be recorded, with form fields and text marked private masked so what you type is not captured.
    • PhotoDNA (Microsoft) — CSAM detection on uploaded media, when automated screening is enabled. Screening is switched off during our closed testing period (see Terms §5), so no media is currently sent to it.
    These providers are contractually bound to use data only to provide services to us.
  • Legal requirements: We will disclose information if required by law, court order, or government authority, or if we believe disclosure is necessary to protect the rights, property, or safety of Keyhold, our users, or the public. We are required by law to report CSAM to NCMEC.
  • Business transfers: If Keyhold is acquired or merges with another company, your information may be transferred as part of that transaction. We will notify you before your information is subject to a materially different privacy policy.

5. Data Retention

We retain your personal information for as long as your account is active or as needed to provide services. When you delete your account, deletion is scheduled for 30 days later so you can change your mind. At the end of that period we anonymize your account and delete or anonymize your personal data, except:

  • Information we are required to retain by law (e.g., billing records for up to 7 years).
  • Lock and activity records, which are kept without your username or email so that other users’ histories stay intact.
  • Aggregated or anonymized data that cannot identify you.
  • Records related to CSAM reports, which are retained as required by law.
  • Backup copies, which are purged on a rolling 90-day cycle.

6. Security

We implement industry-standard security measures including:

  • Passwords hashed with Argon2id.
  • All data in transit encrypted with TLS.
  • Sensitive stored values (e.g., device tokens) encrypted at rest using AES-256.
  • Short-lived JWT access tokens (15-minute expiry) with secure refresh token rotation.
  • Access controls limiting employee access to personal data to those with a business need.

No system is 100% secure. If you believe your account has been compromised, contact us immediately at [email protected].

7. Your Rights and Choices

Depending on your location, you may have the following rights:

  • Access: Request a copy of the personal data we hold about you.
  • Correction: Request correction of inaccurate data (much of this can be done directly in Settings).
  • Deletion: Request deletion of your account and personal data via Settings > Delete Account.
  • Data portability: Request an export of your data in a machine-readable format via Settings > Export Data.
  • Opt-out of marketing emails: Use the unsubscribe link in any marketing email or update your notification preferences in Settings.
  • Push notifications: Manage or revoke push notification permissions via your browser or device settings at any time.

To exercise any of these rights, contact us at [email protected]. We will respond within 30 days. We may need to verify your identity before fulfilling a request.

8. Cookies

We use the following types of cookies and similar technologies:

  • Strictly necessary: keyhold_access_token and keyhold_refresh_token (httpOnly authentication cookies), session cookies set by our hosting provider. These cannot be disabled while you are signed in.
  • Preference: keyhold-auth (your user profile in localStorage), keyhold_cookie_consent (records your cookie-consent choice).
  • Analytics (consent-gated): PostHog cookies (ph_*) load only after you accept consent via the banner shown on first visit. They expire after 12 months.

Manage your choice at any time via the consent banner (it reappears if you clear cookies) or by clearing your browser's site data for keyhold.app. Declining analytics does not affect access to the Platform.

9. Age Verification

At signup you confirm your date of birth; this self-attestation is how Keyhold checks age. We also operate an in-house review: if you choose, or if we ask you to, you may submit a photo of a government-issued ID document and an optional selfie. These images are:

  • Kept in private storage, served only through short-lived links, and visible only to our internal review team.
  • Used solely to confirm you are 18 or older.
  • Deleted from storage by our review team after your submission has been reviewed, whatever the outcome. This is currently a manual step rather than an automatic one, so the images may remain for a period after the decision. We keep a record of the review itself (the outcome, the document type, the dates, and any reviewer notes), not the images.
  • Never shared with third parties except as required by law.

You may ask us to delete your ID images at any time by contacting us at [email protected]. If your submission is still waiting for review, we will close it first.

10. Children's Privacy

The Platform is strictly for adults aged 18 and over. We do not knowingly collect personal information from anyone under 18. If we become aware that we have collected information from a minor, we will delete it immediately. If you believe a minor has created an account, contact us at [email protected].

11. International Transfers

Keyhold is operated from the United States. If you are located outside the US, your information will be transferred to and processed in the US, where data protection laws may differ from those in your country. By using the Platform, you consent to this transfer.

For users in the European Economic Area (EEA) or United Kingdom, we rely on Standard Contractual Clauses (SCCs) for transfers to third-party service providers where required.

12. GDPR — Additional Rights for EEA/UK Users

If you are located in the EEA or UK, you have additional rights under the General Data Protection Regulation (GDPR) or UK GDPR, including the right to object to processing, the right to restrict processing, and the right to lodge a complaint with your local data protection authority.

Our legal bases for processing your personal data are: (a) performance of our contract with you (account operation, subscriptions); (b) our legitimate interests (security, fraud prevention, platform improvement); (c) your consent (marketing emails, push notifications, optional age verification); and (d) compliance with legal obligations.

13. California Privacy Rights (CCPA)

California residents have the right to know what personal information we collect and how it is used, to request deletion, and to opt out of the sale of personal information. We do not sell personal information. To exercise your rights, contact us at [email protected].

14. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify registered users of material changes by email or in-app notification at least 14 days before they take effect. The updated policy will always be available at keyhold.app/privacy with the effective date.

15. Contact

If you have questions or concerns about this Privacy Policy or how we handle your data, please visit our Contact page or email us at [email protected].

Keyhold LLC
1427 North Main St, Suite A #1062
Logan, UT 84341
United States
TermsPrivacyRefundsComplaintsContent removal & appeals18 U.S.C. § 2257Contact