Neighbili only works if you trust us with some sensitive information — where you live, what you look like, and who you talk to. Here's exactly what we do with it.
What we collect
- Account: name, email, password (hashed), sign-in provider.
- Profile: display name, bio, profession, interests, what you offer / need, area label.
- Selfie: a photo you take during onboarding, used to confirm you're a real person.
- Home location: precise coordinates you set on the map (used only to compute distance to posts).
- Activity: posts you create, messages you send, neighbours you connect with, things you click on.
What other neighbours can see
- Your display name, bio, profession, interests, summary, area label, avatar and verification badges.
- An approximate location rounded to ~100 metres — never your exact home coordinates.
- Posts you make and messages you send to chats they're a member of.
- They cannot see your selfie, your exact coordinates, your email, or your phone number.
What Neighbili (the company) can see
Our admins can access everything above plus your selfie and precise location, but only to: verify you're real, investigate reports of abuse, prevent fraud, and provide support. We log when an admin accesses sensitive data.
Who we share data with
- Infrastructure providers: our hosting and database (Lovable Cloud / Supabase), email sender, mapping (Google Maps). They process data on our behalf under contract.
- Law enforcement: only when legally compelled.
- We never sell your data, and we don't run third-party advertising.
How long we keep it
While your account is active, plus 30 days after you delete it (for fraud and abuse review). Selfies are deleted within 7 days of account deletion. Backups roll off within 90 days.
Your rights
You can: view and edit your profile, download your data, delete your account, and request the deletion of specific items. Email privacy@neighbili.com for help. EU/UK residents have additional rights under GDPR including the right to lodge a complaint with your supervisory authority.
Security
Data is encrypted in transit (HTTPS) and at rest. Sensitive columns (home coordinates, selfie URL) are restricted at the database level so even a misbehaving client can't read them. Passwords are checked against the Have I Been Pwned database to block reused leaked passwords.
Children
Neighbili is not for anyone under 16. If we learn an account belongs to someone underage, we delete it.
Changes
If we materially change how we use your data, we'll tell you in-app before the change applies.
Contact
Email privacy@neighbili.com.