Privacy Policy

Your privacy is at the heart of everything we do. Learn how we protect your legacy.

Last updated: November 23, 2025

Our Commitment to Your Privacy

End-to-End Encryption

Your memories are encrypted and only you hold the keys

No Data Selling

We never sell or share your personal information

You're in Control

Access, export, or delete your data anytime

Secure Infrastructure

Industry-leading security practices and compliance

1. Information We Collect

Account Information

When you create a Hailoom account, we collect:

  • Email address and password (encrypted)
  • Name and optional profile information
  • Account preferences and settings

Vault Content

Content you create in your vaults, including:

  • Text entries, photos, and videos (all encrypted)
  • Metadata like creation dates and categories
  • Beneficiary designations and access settings

Usage Information

To improve our service, we automatically collect:

  • Device information and browser type
  • Log data including IP addresses and timestamps
  • Feature usage patterns (anonymized)

2. How We Use Your Information

We use your information exclusively to:

  • Provide our services: Enable vault creation, storage, and sharing features
  • Maintain security: Protect your account and detect unauthorized access
  • Improve the platform: Analyze usage patterns to enhance user experience
  • Communicate with you: Send important updates, security alerts, and responses to inquiries
  • Legal compliance: Meet regulatory requirements and respond to lawful requests

We will never:

  • Sell your personal information to third parties
  • Use your vault content for advertising or profiling
  • Share your data without your explicit consent

3. How We Protect Your Data

Encryption

All vault content is encrypted using industry-standard AES-256 encryption. Your encryption keys are derived from your account credentials and never stored on our servers.

Secure Infrastructure

  • HTTPS/TLS encryption for all data in transit
  • Regular security audits and penetration testing
  • SOC 2 Type II certified data centers
  • Multi-factor authentication (MFA) support

Access Controls

We maintain strict internal access controls. Only authorized personnel can access systems containing user data, and all access is logged and monitored.

4. Your Rights and Choices

You have complete control over your data:

  • Access: View all information we have about you
  • Export: Download your data in a portable format
  • Rectification: Correct inaccurate information
  • Deletion: Request complete account deletion (right to be forgotten)
  • Portability: Transfer your data to another service
  • Withdraw consent: Opt-out of non-essential communications

To exercise these rights, visit your account settings or contact us at privacy@hailoom.com.

5. Data Retention

We retain your information as long as:

  • Your account is active and you're using Hailoom
  • Required to provide our services (e.g., beneficiary access after account closure)
  • Necessary to comply with legal obligations
  • Needed to resolve disputes or enforce our agreements

When you delete your account, we permanently remove all your vault content and personal information within 30 days, except where retention is legally required.

6. Cookies and Tracking

We use cookies and similar technologies to:

  • Essential cookies: Required for authentication and security (cannot be disabled)
  • Functional cookies: Remember your preferences and settings
  • Analytics cookies: Understand how you use Hailoom (opt-in only)

You can control cookie preferences in your browser settings. Note that disabling essential cookies may limit platform functionality.

7. Contact Us

If you have questions about this Privacy Policy or our privacy practices:

Data Protection Officer

dpo@hailoom.com
Privacy Policy | Hailoom | Hailoom