Privacy Policy
1. Controller
Applied Psychometrics UG (in formation) (haftungsbeschraenkt)
Hasenheide 62
10967 Berlin
Germany
Managing Director: Marcus Barner
Email: hello@loveiq.org
("LoveIQ", "we", "us")
2. Scope of this Privacy Policy
This Privacy Policy applies to the LoveIQ platform, including our website, mobile applications, surveys, psychometric tools, reports, subscription services and any related digital services ("Platform"). We process personal data in compliance with the General Data Protection Regulation (GDPR), the German Federal Data Protection Act (BDSG), and all applicable EU data-protection laws.
3. Categories of Personal Data
We process the following categories of personal data:
3.1 Account and Identity Data
- Email address
- Login credentials
- User ID
3.2 Psychometric and Survey Data
- Answers to psychometric questionnaires
- Personality, attachment, relationship and sexuality-related self-descriptions
- Emotional, behavioral and relational self-assessments
These data qualify as special categories of personal data under Art. 9 GDPR.
3.3 Usage and Technical Data
- IP address
- Device and browser information
- Time and date of access
- Interaction logs
3.4 Payment Data
We do not store full payment data. Payments are processed by external payment providers (e.g. Stripe). We receive transaction references, payment status and subscription IDs.
4. Purposes of Processing
We process personal data for the following purposes:
- Creating and managing user accounts
- Delivering psychometric reports and insights
- Personalizing content and user experience
- Operating subscriptions and paid content
- Fraud prevention and platform security
- Customer support
- Legal and accounting compliance
- Scientific and statistical improvement of our platform (using pseudonymized or anonymized data)
5. Legal Bases for Processing (Art. 6 & 9 GDPR)
We rely on the following legal bases:
- Account and service delivery: Art. 6(1)(b) GDPR (contract)
- Technical operation and security: Art. 6(1)(f) GDPR (legitimate interest)
- Marketing communications: Art. 6(1)(a) GDPR (consent)
- Processing of sensitive psychometric, sexual and relationship data: Art. 9(2)(a) GDPR (explicit consent)
- Legal compliance: Art. 6(1)(c) GDPR
You may withdraw consent at any time with effect for the future.
6. Automated Processing and AI
We use automated systems, including artificial intelligence, to analyze your inputs and generate psychometric reports. This processing:
- Does not produce legal effects
- Does not replace professional diagnosis
- Is used exclusively to deliver the requested services
We do not use your data to train public or third-party AI models.
7. Recipients of Data
Your data may be processed by:
- Cloud hosting providers
- AI processing providers
- Payment processors
- Customer support tools
- Analytics and security providers
All recipients are bound by data-processing agreements in accordance with Art. 28 GDPR.
8. International Data Transfers
Some service providers may process data outside the EU/EEA. Where this occurs, we ensure protection through:
- EU Standard Contractual Clauses
- Additional technical and organizational safeguards
9. Storage Period
We store your data:
- For the duration of your account
- Up to 30 days after deletion of your account
- Longer if required by tax or commercial law
Pseudonymized statistical data may be stored longer.
10. Your Rights
You have the right to:
- Access your data (Art. 15 GDPR)
- Rectification (Art. 16 GDPR)
- Erasure (Art. 17 GDPR)
- Restriction (Art. 18 GDPR)
- Data portability (Art. 20 GDPR)
- Object to processing (Art. 21 GDPR)
- Withdraw consent at any time
Requests can be sent to: hello@loveiq.org
11. Right to Lodge a Complaint
You may lodge a complaint with any EU supervisory authority, in particular: Berlin Commissioner for Data Protection and Freedom of Information https://www.datenschutz-berlin.de
12. Data Protection Impact Assessment (Art. 35 GDPR)
Because LoveIQ processes sensitive psychological, sexual and relational data using automated analysis, we have conducted a Data Protection Impact Assessment (DPIA).
The DPIA includes:
- Risk assessment
- Data minimization
- Encryption
- Access controls
- Pseudonymization
- User consent management
13. Security Measures
We apply technical and organizational security measures including:
- Encryption in transit and at rest
- Role-based access controls
- Logging and monitoring
- Regular security reviews
14. Changes
We may update this Privacy Policy from time to time. Users will be informed of material changes.