Privacy Policy
Random Video Call ("we", "us") lets you have a live 1:1 video conversation with another person. This policy describes exactly what we collect, why, and what we do with it. It's written to match what the app actually does, not a generic template — if a data practice changes, this page changes with it.
1. Data we collect and why
| Data | Why we collect it |
|---|---|
| Email address and password | To create and secure your account. Your password is never stored in readable form — it's hashed with Argon2id (an industry-standard, memory-hard hashing algorithm) before it ever touches our database. |
| Date of birth | Random Video Call is 18+ only. We ask for it once, at sign-up, to enforce that, and it can't be changed afterwards. |
| Profile details (display name, gender, country, spoken languages, interests) | Gender, country and languages are optional and used only to match you with someone compatible; interests are optional and shown to your match. |
| Camera and microphone, during a call only | To have the video call itself. Video and audio are sent directly, encrypted, between you and the other person — we do not record or store the content of your calls. |
| Call metadata (who was in a call, how long it lasted, how it connected, how it ended) | To operate matching, enforce fair use, and diagnose problems. This is metadata only — never the video or audio content itself. |
| Report evidence (only if a call is reported) | If you or the person you're speaking with files a report, a small number of still images from the reported video are captured on the device and uploaded so our moderation team has evidence to review. See §3. |
| Advertising identifiers, via Google AdMob | The app shows ads through Google AdMob to keep the app free. AdMob may use your device's advertising ID to show more relevant ads, subject to your device's ad-personalisation settings. See §4. |
We do not collect your contacts, photo library, precise location, or any persistent hardware identifier such as an IMEI, MAC address, or Android SSAID.
2. Camera, microphone, and the on-device blur
Your video is sent to the person you're matched with exactly as your camera captures it. On their phone, our on-device face detection checks the video they're receiving from you: if no face is in view, their phone blurs it automatically, and they can choose to see it unblurred only after an explicit warning, for that call only. The same thing happens in reverse for video you receive. This all happens locally on each phone — no image of anyone's face is ever sent to our servers as part of this feature, and we never build or store a biometric "faceprint" of anyone. This is face detection — "is a face visible?" — never face recognition, and we don't use the two words interchangeably anywhere in the app or here.
3. Report evidence
When a report is filed, the reporting user's device uploads a handful of still images (roughly the last 10 seconds of the video they received, as a few small JPEGs) along with the report. This is the minimum evidence our moderation team needs to review nudity, harassment, or child-safety reports responsibly, rather than guessing. That evidence:
- is used only to review the report it came with, never for anything else;
- is retained for a maximum of 30 days, after which it is automatically deleted;
- is never sold, shared with advertisers, or used to profile anyone.
4. Advertising
The app shows ads through Google AdMob to stay free to use. AdMob may collect and use device and advertising identifiers, and general usage data, to show and measure ads, under Google's own privacy policy. Where required by local law (for example, in the EU/UK), we ask for your consent to personalised ads before any such ad is requested. You can control ad personalisation for your device at any time in your device's system settings (Google Settings → Ads).
5. Who we share data with
We don't sell your data. A small number of service providers process data on our behalf, strictly to run the app:
- Google (AdMob) — to show ads (§4).
- Cloudflare — stores report evidence images (§3) in object storage; Cloudflare cannot see report evidence except as our processor.
- Hetzner — our hosting provider in the EU, running the servers that hold your account data and route calls.
We may also disclose information where required by law, or to protect the safety of our users — see our Child Safety Policy for how that applies to child-safety reports specifically.
6. How long we keep your data
Your account data is kept for as long as your account is active. If you delete your account (see Delete your account), your personal data is erased within 30 days. A pseudonymised record of any moderation action against your account (for example, a ban) may be kept longer, so a banned user can't simply create a new account to evade a ban — that record can't be used to identify you and is not personal data in the ordinary sense.
7. Security
Traffic between your phone and our servers is encrypted (HTTPS/TLS). Passwords are hashed with Argon2id, never stored or logged in plain text. Video and audio between two people in a call travel peer-to-peer wherever possible, encrypted end-to-end by WebRTC itself; when a direct connection isn't possible, an encrypted relay we operate briefly carries the call without decrypting or storing it.
8. Children
Random Video Call is not directed at, and must not be used by, anyone under 18. We don't knowingly collect data from anyone under 18; if we learn an account belongs to someone under 18, it is permanently removed. See our Child Safety Policy.
9. Your rights
You can request a copy of your account data, or ask us to delete your account and the personal data attached to it, at any time — see Delete your account for how, whether or not you still have the app installed.
10. Changes to this policy
If how we handle data changes in a way that matters to you, we'll update this page and, if the change is significant, ask for your consent again in the app before it takes effect.
11. Contact us
Questions about this policy, or about your data: support@randomvideocall.in.