Privacy Policy
Last updated: August 2026
Loveblob is a private space for two people. This policy explains what we collect, what we genuinely cannot see, and the choices you have. We do not sell your data and we do not show ads.
The short version
•
Your messages, photos, videos and voice notes are end-to-end encrypted. We cannot read them, and we cannot recover them for you.
•
One exception, and it is yours to trigger: when you ask the AI to rewrite a message, that text is sent to our server and an AI provider. Nothing else leaves the encrypted envelope.
•
There are two ways back into your history if you lose your phone — your recovery key, or your partner’s device. Both are explained below.
•
If your partner deletes their account, your copy of your shared conversation stays in your account. You can delete it whenever you like.
•
We collect the minimum needed to run the app. We never sell personal information or use it for advertising.
•
Your data is stored in India (Google Cloud, Mumbai region).
What we collect
Account details: your name, email address, and a user ID we generate. If you sign in with Google or Apple, we receive your name and email address from them — nothing else, and no access to your Google or Apple account.
Relationship content: the messages, photos, videos, voice notes, daily-question answers and memories you and your partner create. This is end-to-end encrypted on your device before it reaches us. We store it as ciphertext we cannot open.
Preferences: your couple settings, such as how bold your daily questions should be and how they are chosen. These are not encrypted, because the app uses them to pick content.
Device tokens for push notifications. Notification text never contains message content — a new message shows only as “You have a new message from your partner.”
We do not collect location, contacts, calendar, health, financial or advertising identifiers. The mobile app currently sends no analytics events at all.
End-to-end encryption, and its limits
Your content is encrypted on your device using keys derived on your device (X25519 key agreement, AES-256-GCM). The keys never reach us in usable form. Even with full access to our servers, and even if compelled, we cannot produce the contents of your conversation.
This protects content, not the fact that you use Loveblob. We can still see that an account exists, when it was active, and which two accounts are paired.
Getting back in if you lose your phone
Because we hold no keys, recovery cannot go through us. There are two routes, and either is enough.
Your recovery key. When you set up encryption, the app offers to save your key to your device’s password manager — iPhone Passwords or Google Password Manager. That copy is held by Apple or Google under your own account, never by us. Whether it reaches a new phone depends on whether you have password syncing switched on, so it is worth keeping your own copy too.
Your partner’s device. If you have lost your key as well, your partner’s phone can unlock your history for you. You ask from your new device, they approve on theirs, and you both read a short code to each other first to confirm nobody is impersonating either of you. The value that unlocks your history is encrypted so that only your new device can open it — it passes through our servers, but never in a form we can use.
If you lose your key and your partner cannot help — for example, they have left and deleted their account — your existing content stays encrypted and unreadable. That is the cost of encryption we cannot bypass, and we would rather say so plainly than imply a back door exists.
AI features
Loveblob can suggest a rewrite of a message you are drafting. When you tap that, the draft text and recent conversation context are sent to our server and passed to an AI provider to generate suggestions. This is the only case where your message content leaves the encrypted envelope, and it happens only when you choose it — never in the background, and never for messages you did not ask us to rewrite.
We do not use your relationship content to train AI models. Suggestions are generated for that request and not retained for model training.
Why we ask you to confirm your email
New accounts created with an email address and password must confirm that address. This is not a marketing step. If you lose access to your account, a working email address is the only channel we have to help — and since we cannot decrypt your content, an address that does not reach you can mean losing your history permanently. Accounts created with Google or Apple skip this, because those providers have already verified the address.
When you or your partner delete an account
Deleting your account removes your login, your profile, and your device tokens from our systems.
It does not delete your shared conversation from your partner’s account. Those messages and photos are their record of the relationship as much as yours, and deleting your account does not delete their copy — in the same way that deleting a messaging account does not erase the conversation from the other person’s phone. Your public encryption key is retained for the same reason: without it, their own history would become permanently unreadable.
The room becomes a read-only archive. Nothing new can be added to it. The remaining partner can browse it, and can delete it entirely at any time from within the app.
If you both want everything gone, either of you can choose “Delete all data”, which removes the shared content for both sides. That cannot be undone.
Where your data is stored
We use Google Cloud and Firebase, with data stored in the Mumbai (asia-south1) region. As Google is a US company, US legal process can in principle reach our infrastructure — which is a further reason your content is stored only as ciphertext we cannot open.
Sharing
We do not sell your personal information and we do not share it for advertising. We share only with the service providers needed to run the app: Google Cloud and Firebase for hosting, authentication and delivery; Apple and Google for push notifications; and our AI provider, only for rewrites you explicitly request.
Retention
We keep your data while your account is active. Encrypted content stays until you or your partner delete it. Account records are removed when you delete your account, as described above.
Your rights
You can access, correct, export and delete your data from within the app, under Profile → Account. Depending on where you live, you may also have rights to object to or restrict certain processing, and to complain to a data protection authority.
If you are in India, the Digital Personal Data Protection Act gives you rights of access, correction, erasure and grievance redressal. Write to privacy@loveblob.com and we will respond. Note that we cannot provide the contents of your encrypted messages, because we cannot read them — you can export them yourself from the app.
Age
Loveblob is for adults. You must be 18 or older to create an account. We do not knowingly collect data from anyone under 18, and we delete such accounts if we learn of them.
Security
Beyond end-to-end encryption, private keys are held in your device’s hardware-backed secure storage, your session token is encrypted at rest, and access to your couple’s data is enforced server-side so that only the two of you can reach it. No system is perfect; if we ever become aware of a breach affecting you, we will tell you.
Changes
We will update this policy as the app changes, revise the date above, and tell you in the app about anything material.
Contact
Questions, requests or complaints about privacy: privacy@loveblob.com.