HerLoom

Privacy Policy

Last updated: 4 October 2025

We wrote this policy to be clear and helpful. It explains what we collect, how we use your information, who we share it with, and your choices.

1. Who we are

HerLoom provides a personal wellbeing experience and private space for reflection. In most cases, HerLoom is the controller of your personal information. Questions? Email privacy@herloom.se.

2. Information we collect

Information you give us

  • Account details (email, username, password hash).
  • Profile information you add (for example preferences or reflections).
  • Purchase information you submit (e.g., redemption codes or receipts) and messages you send to support.

Information we get when you use HerLoom

  • App usage (feature use, session timestamps, simple diagnostic events).
  • Device and connection info (device type, OS version, language, approximate region, app version).
  • Log and security data (sign-in attempts, token events, fraud/abuse signals).

Information from others

  • App stores and payment providers (purchase receipts, entitlement status).
  • Service providers (e.g., email delivery, analytics limited to service quality and security).

3. How we use information

  • Provide and personalize the service (create and maintain your account, keep features working).
  • Safety, integrity, and moderation (detect, prevent, and respond to fraud or abuse).
  • Customer support (respond to messages, troubleshoot issues).
  • Purchases and memberships (validate receipts, manage entitlements, handle refunds where applicable).
  • Research and product improvement (understand what works and where to improve — using aggregated or de-identified data where possible).
  • Legal compliance (satisfy court orders, legal obligations, or enforce our terms).

5. How we share information

  • Service providers that help us operate the app (cloud hosting, email delivery, analytics limited to service quality, payment and app-store providers). They act under contract and must protect your information.
  • Legal and safety when required by law or to protect rights, safety, and integrity of users, HerLoom, or others.
  • Business transfers in the context of a merger, acquisition, or asset sale, subject to this policy or your consent.

We do not sell your personal information.

6. International transfers

We aim to store and process data in the EU where feasible. If your information is transferred outside your region, we use appropriate safeguards such as Standard Contractual Clauses and require recipients to protect your data.

7. Your rights & choices

  • Access, correct, or delete your information.
  • Object to or restrict certain processing.
  • Receive a copy of your data (portability).
  • Withdraw consent where we rely on it.

You can request deletion any time at herloom.se/data or email privacy@herloom.se. We respond as required by law.

8. Cookies & similar technologies

We use essential cookies and similar technologies to keep the site secure and functioning. Where optional cookies are used, you can manage your choices in your device or browser settings.

9. Retention

We keep your information only as long as needed to provide the service and meet legal requirements. If you close your account, we remove personal information within 24 hours of your confirmed request, except where we must keep limited records for legal or security reasons.

10. Children

HerLoom is not intended for children under 16. If you believe a child has provided personal information, contact us so we can delete it.

11. Security

We use industry-standard technical and organizational measures to protect your information. No system can be 100% secure, but we continuously work to keep your data safe and to promptly address issues.

12. Changes to this policy

We update this policy when our practices change. If changes are significant, we’ll notify you in-app or by other appropriate means.

14. Region-specific information

EU/EEA & UK

You have the rights listed above under GDPR/UK GDPR. You can lodge a complaint with your local Data Protection Authority. We rely on Standard Contractual Clauses for certain transfers.

California (CCPA/CPRA)

We do not sell your personal information. You have the right to know, delete, and correct certain information, and to not be discriminated against for exercising your rights. To submit a request, contact us at privacy@herloom.se.