Privacy Policy

Last Updated: August 31, 2026

Scope and Introduction

Pyd is owned and operated by Pyd Inc. ("Pyd", "we" or "us"). This Privacy Policy explains how Pyd collects, uses, discloses, stores, and protects personal information when you use the Services. By using the Services, you agree to the collection and use of information as described in this Privacy Policy.


Information We Collect

  • Account Information: Name, email address, phone number, username, Pyd Handle, password or authentication information, profile photo, title, bio, linked accounts, communication preferences, and account settings.
  • Identity, KYC, Tax, and Payout Information: Information needed to verify identity, enable payouts, comply with tax rules, prevent fraud, and satisfy Stripe Connect and payment processor requirements. This may include address, date of birth, government identification, tax identification number, bank account details, beneficial ownership information, business information, payout preferences, tax forms, and sanctions-screening data. Some of this information is collected directly by Stripe Connect and Stripe Tax as part of Pyd's payment and tax infrastructure, and is subject to Stripe's privacy policy which can be found at https://stripe.com/privacy in addition to this Privacy Policy.
  • Payment and Transaction Information: Payment method details, funding amounts, Reserved Funds, charges, refunds, credits, invoices, receipts, payout statements, tax calculations, chargebacks, disputes, transaction history, billing records, and platform-fee records.
  • Communication Data: Messages, paid reply requests, offer content, call and video session metadata, timestamps, duration, connection status, acceptance/decline records, no-show records, and support communications. Pyd may process communication content where necessary to deliver the Services, enforce policies, investigate disputes, prevent abuse, or comply with law.
  • Call, Video, and Technical Telemetry: Device information, app version, browser, operating system, IP address, network quality, packet loss, connection events, call start/end times, app foreground/background status, crash logs, diagnostics, and other technical records used to operate the Services and determine billing fairness.
  • Contact Sync and Invite Information: If you choose to sync contacts or invite people, Pyd may collect names, phone numbers, email addresses, contact identifiers, invite status, referral status, whether a contact is already on Pyd, and related metadata. Pyd uses contact information to help you find contacts, invite people, prevent duplicate invitations, track referrals, and improve network features. Pyd will not send invitations to contacts unless you approve the sending action.
  • Social Platform Data: If you use @HelloPyd or connect social accounts, Pyd may collect social handles, profile links, public posts, public comments, public mentions, OAuth identifiers, account-verification status, request history, and other information permitted by the relevant platform and your settings.
  • AI Agent Interaction Data: Pyd may collect messages, prompts, responses, instructions, onboarding answers, support requests, and other interactions with Pyd's AI Agents to provide, improve, monitor, and secure the Services.

Google Calendar Data

If you choose to connect your Google Calendar, Pyd accesses your Google Calendar data through Google's APIs with your consent, granted on Google's authorization screen. You can use the Services without connecting a calendar.
  • What Pyd accesses: Your free/busy and event information, used to determine your availability, and the ability to create and update calendar events for sessions booked through the Services.
  • How Pyd uses it: Solely to provide user-facing scheduling features — showing availability when offers are negotiated, preventing double-booking, and adding booked sessions to your calendar. Pyd does not use Google Calendar data for advertising, does not sell it, and does not transfer it to third parties except as necessary to provide these features, comply with applicable law, or as part of a merger or acquisition with prior notice to you.
  • Storage: Pyd stores the OAuth tokens needed to access your calendar and minimal scheduling data (such as event identifiers for sessions Pyd creates). Calendar contents are read on demand and are not copied into Pyd's databases.
  • Revoking access: You can disconnect your calendar at any time in your Pyd settings, which deletes Pyd's stored tokens, or revoke Pyd's access in your Google Account at https://myaccount.google.com/permissions.
Pyd's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Google user data is not used to develop, improve, or train generalized or non-personalized artificial intelligence or machine-learning models, and is not shared with any third party for such purposes.

How We Protect Your Data

Pyd applies the following mechanisms to protect personal information, including sensitive data and data obtained from Google APIs:
  • Encryption in transit: All data exchanged between your device and Pyd, and between Pyd and third-party services (including Google APIs), is encrypted using TLS (HTTPS).
  • Encryption at rest: Personal information, including Google OAuth tokens and scheduling data, is stored in databases that encrypt all data at rest using AES-256. Application secrets and API credentials are stored in a dedicated cloud secret manager, encrypted with managed keys.
  • Access controls: Google OAuth tokens and other sensitive data are accessible only to Pyd's backend services, are not shared with other users, and are not disclosed to third parties, except to service providers who process such data on Pyd's behalf under confidentiality and security obligations, or as required by law. Production infrastructure access is restricted to authorized personnel using least-privilege permissions.
  • Data minimization and retention: Pyd requests only the minimum Google scopes needed for scheduling, reads calendar availability on demand without copying calendar contents into its databases, and permanently deletes stored Google OAuth tokens when you disconnect your calendar or delete your account.
  • Incident response: In the event of a data breach affecting personal information, Pyd will notify affected users and applicable authorities as required by law, and can be reached at [email protected].
While Pyd maintains these safeguards, no method of transmission over the Internet or electronic storage is completely secure, and Pyd cannot guarantee absolute security.

International Transfers

Pyd may process, store, and transfer information in the United States, Israel, the European Economic Area, the United Kingdom, and other jurisdictions where Pyd, its affiliates, or its service providers operate. Where required, Pyd will use appropriate safeguards for international transfers.


California Privacy Rights

If you are a California resident, you may have rights under California privacy law, including rights to know, access, correct, delete, opt out of certain sales or sharing, limit certain uses of sensitive personal information, and not be discriminated against for exercising privacy rights. Pyd will provide required California notices and mechanisms where applicable.


European and UK Privacy Rights

If you are in the European Economic Area, United Kingdom, or Switzerland, Pyd will process personal information under applicable legal bases, which may include contract performance, consent, legitimate interests, legal obligation, and protection against fraud or abuse. You may have rights to access, correct, delete, restrict, object to processing, port data, withdraw consent, and complain to a supervisory authority.


Data Rights and Protection

Pyd has the utmost respect for our Members' privacy and information protection. In our mission to ethically and lawfully serve our Members we have the following policies in place:
  • Obtaining Consent: Members may give and rescind consent at any time by contacting our Data Protection Officer at [email protected].
  • Timely Breach Notification: In the event of a data breach, Pyd will notify associated data controllers and Members within 72 hours.
  • Right to Data Access: Members may request a free electronic copy of their data profile at any time.
  • Right to Be Forgotten: Members who discontinue their relationship with Pyd may request erasure of their personal data from our records, subject to Pyd's legal retention obligations.
  • Data Portability: Members may obtain their data in an electronic report and reuse that data in different environments.
  • Data Protection Officer: Pyd has appointed a Data Protection Officer who can be reached at [email protected].

Account Deletion

You can permanently delete your Pyd account at any time from Profile → Settings → Danger zone.
How deletion works:
  • Deletion is scheduled with a 30-day grace period. During this window you can log back in and cancel from your settings.
  • After 30 days, your personal data (name, photo, email, phone, social links, addresses, payment methods) is permanently anonymized.
  • Other users immediately see you as "Deleted user" in their history. We do not expose your identity to them once deletion is requested.
  • Financial and transactional records are retained for up to 7 years to comply with tax and financial regulations, but they are anonymized so they cannot be linked back to you by other users.
What blocks deletion: If you have an unwithdrawn balance, a payout in progress, or an active meeting with another user, deletion is paused until you withdraw your funds, the payout completes, or the meeting is resolved. We do this to make sure neither you nor the other party loses money.Stripe payment account: Your Stripe Connect account is disabled when deletion is scheduled. If you cancel deletion later, you will need to complete Stripe onboarding again before you can receive payouts.

By continuing to use Pyd, you acknowledge and agree to this Privacy Policy.