Legal

Privacy Policy

Last updated 25 August 2026

Friday is a social calendar for the things you want to do, plan to do, and mean to do. This policy explains what personal data we collect, why we collect it, and the choices you have. It applies to the Friday app, friday.social, and related services.

1. Who we are

Friday (“Friday”, “we”, “us”) is a social calendar product operated from Singapore. For privacy questions, contact our Data Protection Officer at privacy@friday.social. General support is hello@friday.social.

This policy is designed to meet Singapore’s Personal Data Protection Act (PDPA) and the disclosure requirements of the Apple App Store and Google Play. Singapore law governs this policy.

2. Who Friday is for

Friday is for people aged 17 or older (18 or older where a store rating or local law requires it). We do not knowingly collect personal data from children. We do not actively verify age at sign-up. If we learn that an account belongs to someone under the minimum age, we will terminate the account and delete associated personal data.

3. Data we collect

Account and profile

When you create or use a Friday account, we collect:

Your content

Events, Sparks, polls, invitations, RSVPs, FYI shares, chat and comments, media you attach, stickers, and similar content you create or receive.

Location

Device and notifications

If you allow notifications, we collect a device push token (APNs on iOS, FCM on Android) so we can send event reminders and other alerts you have enabled. You can change this later in device notification settings for Friday.

Contacts and calendars you choose to connect

If you grant contacts access, we use it to help you invite people you already know. If you connect Apple Calendar or Google Calendar, we receive the calendar data needed to show and write the events you choose to sync. Google account email is used to label connected calendars and is not shown publicly.

Usage and diagnostics

We may collect limited technical and usage information (for example app version, crash diagnostics, and feature reliability) to operate and improve Friday. We do not currently use a third-party product analytics vendor. If that changes, we will update this policy.

4. How we use data

We do not sell, rent, or trade personal data. Friday is ad-free at launch. If we later show highly relevant advertising, we will update this policy before that happens.

5. Who we share data with

We share personal data with service providers who help us operate Friday, only as needed for that purpose:

We may also disclose data if required by law, to protect Friday or other people, or as part of a reorganisation of the business, with equivalent protections.

Chat and similar messages are encrypted in transit and at rest using RSA-2048 and AES-256-GCM. Our servers manage encryption keys and can access message content for service delivery and legal compliance. We do not claim end-to-end encryption.

6. Social visibility and controls

By default, a public profile shows your handle and profile photo. Other profile details follow the privacy level you choose. Phone number discoverability is on by default so people can find friends the way they do in other messaging apps. You can turn that off in settings.

Event and Spark visibility depends on how you share them — for example with invited people, friends, or a wider audience. You can block other accounts from launch. Reporting tools may expand after private beta; until then, email hello@friday.social about abuse.

7. How long we keep data

We keep personal data while your account is active. After you delete your account, we delete or anonymise personal data within 30 days, unless a longer period is required by law (for example to complete a dispute or security investigation). Backups may persist for a short additional period before they cycle out.

You can start account deletion from Settings in the Friday app, or by emailing privacy@friday.social. We do not currently offer a bulk data-export file.

8. Your rights

Under the PDPA and similar laws, you may:

To exercise these rights, use in-app settings where available or email privacy@friday.social. We may need to verify that the request comes from the account holder.

9. Security and international transfers

We use HTTPS/TLS in transit and provider-managed encryption at rest. No method of transmission or storage is perfectly secure. If a data breach is likely to cause significant harm, we will notify the Personal Data Protection Commission and affected users as required by Singapore law.

Our providers may process data in Singapore and other countries. We use them only to operate Friday and require appropriate contractual protections.

10. Changes

We may update this policy as Friday grows. The “Last updated” date will change, and we will provide additional notice if a change is material.

11. Contact

Data Protection Officer:
privacy@friday.social

Help and general questions:
hello@friday.social · Help Centre

Related pages: Terms of Use · Data Safety