Privacy Policy

Last Updated: 18 September 2026

1. Overview

whodis.chat is built around anonymity: no accounts, no profiles, no chat history visible to other users. But running a safe, moderated chat service means we do process some data — and this policy tells you exactly what, why, and for how long, in plain language. If anything here surprises you, email us at [email protected].

2. Information We Collect

We collect and process the following:

3. What We Do Not Collect or Do

4. Video, Audio & Moderation Monitoring

Video and audio use encrypted WebRTC connections through Cloudflare TURN relays. Relay-only connections prevent your chat partner from learning your network IP address through the call. Our service and the relay provider still process connection IP addresses. If a relay connection cannot be established, the call fails rather than falling back to a direct connection. We never record or store these streams.

However, you should know: to enforce our Community Rules, our moderation team may view live video sessions, including audio, while they are in progress — for example when a session is flagged by our automated systems or reported by a user. In addition, periodic face thumbnails are captured from video sessions and retained for up to 90 days to support moderation decisions and ban enforcement. By using video chat, you acknowledge this monitoring.

5. Advertising & Consent

We show Google ads to keep the service free. The Google advertising tag only loads after you accept the consent banner shown on your first visit. If you decline, no advertising scripts are loaded and the banner won't reappear. You can clear your browser's site data to change your choice.

6. Plus Passes

whodis Plus is an optional one-off time pass. Payments are processed by Stripe, who act as an independent controller for the payment itself — card details never reach our servers. We store a pass record (the pass code, the amount and currency, the expiry, and the IP address and device fingerprint the pass was bought from) for 12 months, so that you can restore your pass on another device and so we can detect fraudulent purchases. Passes are non-refundable once you have started using them. Buying a pass does not create an account and does not change what we collect about your chats.

7. Data Retention

How long we keep things:

DataRetention
Text & GIF messages (with IP and fingerprint)Deleted after 30 days
Moderation face thumbnailsUp to 90 days
Ban records & linked device identifiersDuration of the ban, plus a limited period (up to 180 days) to prevent ban evasion
Connection logs (IP, timestamps)Up to 90 days, or longer where linked to an active ban
Video & audio streamsNever recorded or stored
Plus pass records (code, expiry, IP, fingerprint)12 months

8. Lawful Bases (UK & EU users)

Where UK/EU data protection law applies, we rely on:

9. Your Rights

You have the right to:

To exercise any of these rights, email us at [email protected]. Because we don't have accounts, we may need details such as the approximate time you used the service and your IP address to locate data relating to you.

10. Data Security

We implement reasonable technical and organizational measures to protect the data we process. Video and audio streams are encrypted in transit using WebRTC, and stored moderation data is access-restricted to our moderation team. However, no method of transmission over the internet is completely secure.

11. Changes to This Policy

We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated revision date. Your continued use of whodis.chat after changes are posted constitutes acceptance of the revised policy.

12. Contact

For questions or requests regarding this Privacy Policy, please contact us at [email protected].

Guest identity, connections and product measurement

A first-party, HTTP-only cookie identifies this browser with a random token. We store a hash of that token. Optional mutual connections use this identity, not a public profile. Clearing browser data removes your access to those connections. Inactive guest identities and associated connections are removed after 180 days; one-sided contact choices expire after one day.

Conversation references used by these features are kept for 30 days. Case records and internal decisions are retained for up to 90 days after their last update. First-party product milestones and feedback are retained for 90 days; daily visit markers for return-rate measurement are retained for 180 days. Metrics do not contain message contents. Existing moderation and ban-enforcement records have the retention described above.

Optional translation

When a translation provider is configured, choosing Translate displays the provider name and asks you to confirm before sending the selected message. The original message remains visible. The translation service receives the selected text and target language; our product metrics record that translation was used, without copying its text. The provider’s own processing and retention terms also apply.

Configured content screening

Operators may enable Sightengine to analyse selected in-session video thumbnails and text messages in its supported languages. When enabled, this provider receives those samples to identify potential rule violations. It does not receive your guest cookie. Automated scores can create moderator cases and, in enforcement mode, hold messages or end flagged conversations. Human review remains necessary; this is sampled content screening, not continuous video analysis or age verification. Provider outages and unsupported languages are reported as unavailable, not as successful checks.