Privacy Policy
Effective Date: June 01, 2026Last Updated: June 01, 2026
Introduction
This Privacy Policy describes how Soc Network, Inc. ("Soc," "we," "us," or "our") collects, uses, discloses, and protects personal information about members and other users of our platform, mobile applications, and related services (collectively, the "Service"). It also describes the rights you have regarding your personal information and how to exercise them.
This Privacy Policy is part of, and should be read together with, our Terms of Service, the Soc Constitution, and our other published policies. Where this Privacy Policy and the Constitution address the same subject, they are intended to be consistent. The legal framework is set out here; the underlying principles and commitments are set out in the Constitution.
Some platforms write their privacy policies to maximize what they may collect and do with member data. We have written ours to describe what we actually collect and actually do. The categories described in this document are exhaustive, not illustrative. If we are not doing something with your data here, we are not doing it.
If you have questions about this Privacy Policy, you may contact us at privacy@soc.info or at the address provided in Section 16.
1. Summary of Key Practices
This summary is intended for member convenience and does not replace the detailed sections that follow. The detailed sections govern in any conflict.
What we collect: Identity verification data (collected once at onboarding); basic account information; the content you post; and limited operational usage data needed to run the Service.
What we don't collect: We do not collect location data beyond what is required for legal and tax compliance, contacts from your phone, your activity outside Soc, behavioral data sold by data brokers, biometric data beyond the face match used for verification, or any data whose primary purpose is profiling you for advertisers. We have no advertisers.
How we use it: To operate the Service, maintain community standards, comply with legal obligations, and improve the product. Nothing else.
What we don't do with it: We do not sell personal information. We do not share personal information for cross-context behavioral advertising. We do not use your content to train artificial intelligence or machine learning models, our own or any third party's. We do not share personal information with data brokers, advertising networks, or analytics companies.
Your rights: You have the right to access, correct, delete, and obtain a copy of your personal information, regardless of where you live. Members in California and certain other states have additional rights described below.
Where we operate: Soc operates from the United States. Your data is stored and processed in the United States.
2. Personal Information We Collect
We collect personal information in four categories. We do not collect any category not described below.
2.1 Identity Information
This is the information we collect to verify that each Soc account belongs to a single, real, living human individual.
We collect:
- Your legal name as it appears on your government-issued identification;
- The image, document type, and identifying information from a government-issued ID document you provide (driver's license, passport, or equivalent);
- Your date of birth;
- A current photograph of your face for biometric matching against your ID document; and
- The result of the verification process (verified / not verified) and the date completed.
We collect this information once at onboarding, and we may re-collect it periodically or when behavioral signals suggest the account may have changed hands or been compromised, in accordance with the Terms of Service.
The biometric face match is conducted by our identity verification provider for the limited purpose of confirming that the person presenting the ID is the person depicted on it. After this verification is complete, the face image is retained only to the extent necessary to support re-verification and fraud prevention. We do not use face images for any other purpose, do not share them with third parties (other than the verification provider acting on our behalf), and do not use them as the basis for any general-purpose biometric profiling.
2.2 Account Information
This is the basic infrastructure of having a Soc profile. We collect:
- Your chosen display name (which must match your verified identity, subject to reasonable accommodations described in the Constitution);
- Your profile photo;
- Your bio or profile description, if any;
- Your email address;
- Your phone number;
- Your payment method information (collected by our payment processor — see Section 6); and
- Your account preferences and settings.
2.3 Content You Post
This is what makes Soc a community. We collect and store:
- The text, images, video, audio, and links you post on Soc;
- Your comments, replies, and reactions to other members' content;
- Your direct messages to other members;
- The audience choices you made for each piece of content;
- Drafts of content you have started but not yet posted, where you have used Soc features that save drafts; and
- Edits and revisions to content, where applicable.
Your content is stored so that the audiences you have chosen can see it and so that you have continued access to your own posting history.
2.4 Usage Information
This is the operational data we need to run the Service. We collect:
- The device type, operating system, and Soc app version you use;
- Your IP address (used to deliver content, prevent abuse, and provide reasonable security; not used to build a location profile beyond what's necessary for these purposes and for legal/tax compliance);
- The dates and times you are active on Soc;
- Basic interaction patterns within Soc (which members you are connected to, which content you have engaged with);
- Moderation decisions made on your content, including the rule applied, the disposition (approved, held, removed), and any appeal outcome;
- Reports you have made and reports made about your content;
- Crash logs, error reports, and similar diagnostic information; and
- Records of communications between you and our member support or trust & safety teams.
2.5 What We Do Not Collect
For the avoidance of doubt, we do not collect:
- Precise geolocation data, except as needed for legal and tax compliance and for security purposes (e.g., detecting account compromise);
- Your phone's contact list;
- Your browsing activity outside Soc;
- Behavioral data purchased from data brokers, ad networks, or other third parties;
- Biometric data beyond the face match used for verification;
- Health, genetic, or biometric data not directly tied to identity verification;
- Information from cookies or tracking pixels placed on third-party websites;
- Data from cross-app advertising identifiers; or
- Any data category whose primary purpose is to profile you for advertising. We have no advertisers, and we do not build advertising profiles of our members.
3. How We Use Personal Information
We use personal information for exactly the following purposes:
3.1 Operating the Service
This includes running the platform, delivering your content to the audiences you have selected, displaying other members' content to you, processing payments for membership dues, maintaining your account, providing member support, sending service-related communications (account notifications, security alerts, billing communications, policy updates), authenticating your access, preventing fraud and abuse, and maintaining the basic infrastructure of the Service.
3.2 Maintaining Community Standards
This includes reviewing your content against our Community Standards (whether by AI systems, human reviewers, or both), investigating reports about your content or about content you have reported, evaluating patterns of behavior across your account history, processing appeals, and confirming that accounts continue to be operated by their verified members. The detailed operation of our moderation system is described in our AI Moderation Operational Guidelines.
3.3 Legal and Compliance Purposes
This includes complying with applicable law (including tax, financial, and data protection law), responding to lawful legal process, defending Soc's legal rights, complying with subpoenas, court orders, and other legal demands in accordance with our published Law Enforcement Response Guide, and meeting our regulatory obligations.
3.4 Improving the Service
This includes understanding how features are used, identifying problems, debugging, conducting user research, and developing new features. Where we use personal information for product research, we work with aggregated and de-identified data wherever possible. If a research approach requires individually identifiable data, we will tell affected members in advance.
3.5 What We Do Not Do With Personal Information
For the avoidance of doubt, we do not use personal information to:
- Train artificial intelligence or machine learning models, our own or any third party's. The Anthropic models that perform content moderation review your content at the moment of posting; that content is not retained by Anthropic for training purposes.
- Display advertising to you. We have no advertisers.
- Build advertising profiles, marketing segments, or behavioral models of you for use by us or any third party.
- Sell, license, or otherwise commercialize your information.
- Share your information with data brokers, ad networks, or analytics providers whose business is aggregating information about people.
- Make automated decisions that produce legal effects on you or similarly significantly affect you, except (a) to enforce our Community Standards, in which case human review is available through the appeals process described in the Constitution and Terms of Service; (b) to prevent fraud, abuse, or security incidents, in which case we apply human review when reasonably possible.
4. Legal Basis for Processing
For members located in jurisdictions that require us to identify a legal basis for processing personal information, we rely on the following bases:
- Performance of a contract: Most processing is necessary to provide the Service to you under the Terms of Service.
- Compliance with legal obligations: Some processing is required to comply with applicable laws, including tax law, anti-fraud requirements, and lawful legal process.
- Legitimate interests: A limited set of processing is conducted for our legitimate interests in operating, securing, and improving the Service, balanced against your privacy interests.
- Consent: Where we rely on consent (such as for certain optional features), we obtain it explicitly and you may withdraw it at any time.
5. How We Share Personal Information
A small number of third parties touch member data because Soc cannot function without them. We name them explicitly below. We do not share personal information with anyone not on this list, except (a) with your direction or consent, (b) where required by law, (c) to protect rights and safety as described in Section 5.4, or (d) in connection with a corporate transaction as described in Section 5.5.
5.1 Service Providers
The following service providers process member data on our behalf, under contracts that limit them to processing data only as needed to provide their services to Soc:
- Anthropic — provides the AI models that perform content moderation. Anthropic reviews public content at the moment of posting for compliance with our Community Standards and does not retain that content for training purposes.
- [Payment Processor] — processes membership dues and stores payment method information under PCI-compliant standards. Soc does not store full payment card numbers.
- [Identity Verification Provider] — performs the document and biometric checks required to verify member identity at onboarding and during periodic re-verification.
- [Cloud Infrastructure Provider] — provides the underlying hosting and storage infrastructure for the Service.
- [Email and Communications Provider] — delivers transactional emails (account verification, security alerts, billing notifications, policy updates) on Soc's behalf.
We will update this list when we change service providers. Material changes will be communicated to members in accordance with the Constitution's modification procedures.
5.2 With Other Members
Content you post is shared with the audience you selected for that content. Other members may see your display name, profile photo, bio, and content within the limits of the audience choices you made. Other members are bound by the Terms of Service and Community Standards not to copy, screenshot, transcribe, or otherwise share your content beyond the audience you selected.
5.3 Legal and Government Requests
We share personal information in response to lawful legal process, in accordance with the Constitution, our Law Enforcement Response Guide, and applicable law. In summary:
- We require valid legal process for non-public member data;
- We notify affected members of requests when not legally prohibited from doing so;
- We challenge requests we believe are unlawful;
- We do not voluntarily comply with foreign government requests outside recognized international legal frameworks; and
- We publish transparency reports summarizing the requests we receive.
5.4 Protecting Rights and Safety
We may share personal information when we believe in good faith that disclosure is reasonably necessary to: (a) prevent imminent physical harm or death; (b) prevent significant financial fraud or abuse; (c) protect the safety of members or the public; (d) enforce our Terms of Service or Community Standards; or (e) defend Soc's legal rights.
5.5 Corporate Transactions
If Soc is acquired, merged, reorganized, or sells substantially all of its assets, member data may be transferred as part of that transaction. Any such transfer is conditioned on the acquirer agreeing in writing to be bound by this Privacy Policy and the commitments in the Soc Constitution, or on members being notified in advance and given a reasonable opportunity to delete their accounts before the transfer takes effect.
5.6 What We Do Not Do
For the avoidance of doubt:
- We do not sell personal information. We do not sell, rent, lease, or otherwise transfer personal information to any third party for monetary or other valuable consideration. This includes within the meaning of the California Consumer Privacy Act and similar state laws.
- We do not share personal information for cross-context behavioral advertising. We do not have advertisers, and we do not engage in cross-context behavioral advertising as defined under California law or any analogous practice.
- We do not engage in targeted advertising. We do not target advertising to members based on personal information obtained from members' activities across non-affiliated websites or applications.
- We do not profile members for decisions producing legal or similarly significant effects, except in connection with enforcing our Community Standards, where human review is available, and in connection with fraud and security, where human review is applied where reasonably possible.
6. Payment Information
Membership dues and any related payments are processed by our third-party payment processor, currently Stripe. When you provide payment information, it is collected and processed by the payment processor under their privacy policy and security standards, which are PCI-DSS compliant.
Soc does not store full payment card numbers. We receive and store only:
- The type of payment method (e.g., card brand);
- The last four digits of the card or account;
- The expiration date for cards;
- The billing name and ZIP/postal code; and
- A token or reference identifier provided by the payment processor.
We use this information to identify your payment method, process recurring dues, and assist with billing inquiries.
7. Cookies and Similar Technologies
Soc uses a limited number of cookies and similar technologies (such as local storage and device identifiers) that are necessary for the Service to function, including:
- Authentication cookies — to keep you logged in and verify your session;
- Security cookies — to detect and prevent fraud, abuse, and security threats;
- Functional cookies — to remember your preferences and settings;
- Diagnostic cookies — to detect crashes, errors, and performance issues.
We do not use advertising cookies, third-party tracking cookies, or cookies that share information with advertising networks or data brokers. We do not have advertisers.
You may disable cookies through your browser or device settings, but doing so may affect your ability to use the Service.
8. Data Retention
| Data Category | Retention Period |
|---|---|
| Identity verification data (ID images, face match results) | Active membership + 90 days after termination |
| Account information (display name, email, phone) | Active membership + 30 days after termination |
| Content you have posted | Until you delete it, or 30 days after account termination, whichever is earlier (subject to limited exceptions described in Terms of Service Section 6.2) |
| Direct messages | Until the earlier party deletes them, or 30 days after either party's account terminates |
| Usage information (device, IP, activity) | 90 days, except for moderation-related records (see below) |
| Moderation records (decisions, reports, appeals) | 2 years from the date of the decision |
| Payment records | 7 years (required by tax and accounting law) |
| Customer support communications | 3 years from the date of the communication |
| Legal hold materials | Duration of the legal hold |
| Anonymized or aggregated data | Indefinite (no longer constitutes personal information) |
Retention periods may be longer where required by law (for example, tax records) or where the data is subject to a legal hold.
The 30-day window for content deletion after account termination provides a brief grace period during which a member can recover an account if they change their mind or if the termination resulted from account compromise. After the 30-day window, content is permanently deleted in accordance with Section 9.
9. Data Deletion
9.1 Your Right to Delete
You may delete your account, and the personal information associated with it, at any time through the in-app account settings, without contacting Soc. Account deletion is a single action — there is no retention escalation, no win-back campaign, no requirement to call to cancel.
9.2 What Gets Deleted
Upon account deletion:
- Your account is immediately deactivated and no longer accessible to other members;
- A 30-day grace period begins during which you may restore your account;
- After the grace period, the following are permanently deleted from active systems: your identity verification data (subject to the brief retention described in Section 8 for fraud prevention), your account information, your content (subject to the limited exceptions described in Terms of Service Section 6.2), and your usage information (other than aggregate, de-identified records);
- Backup copies are deleted in the next regular backup rotation cycle, typically within 90 days; and
- Records that we are legally required to retain (such as payment and tax records) are retained for the periods required by law and then deleted.
9.3 What May Persist
After account deletion, the following may continue to exist:
- Anonymized or aggregated data that no longer identifies you;
- Content of yours that has been quoted or referenced by other members in their own non-deleted posts (subject to the audience and consent rules of the Constitution);
- Records required for legal compliance (tax records, response to legal process, etc.);
- Records of any moderation decisions made about your account, retained per the schedule in Section 8 for the integrity of our moderation system; and
- Information about you that other members may have stored or transmitted independently of the Service.
9.4 Re-Joining After Deletion
If you delete your account and later wish to rejoin Soc, you will need a new invitation, will need to complete onboarding again, and will be enrolled at the membership tier and pricing then-current. As described in the Terms of Service, your original tier is not preserved across deletion and rejoining.
10. Security
We protect personal information using a combination of administrative, technical, and physical safeguards designed to be appropriate to the sensitivity of the information and the risks involved.
These safeguards include:
- Encryption of data in transit and at rest;
- Access controls limiting employee access to personal information on a need-to-know basis;
- Authentication and access logging for systems containing member data;
- Regular security testing, including vulnerability scanning and penetration testing;
- Incident detection and response procedures;
- Vendor security review for service providers handling member data; and
- Employee training on privacy and security practices.
No security measures are perfect, and we do not promise that the Service or our systems are immune from compromise. What we commit to is operating at the standard the trust represents, being honest with members when something does go wrong, and notifying affected members in accordance with applicable law and our published commitments.
If you believe your account has been compromised or that you have identified a security vulnerability in the Service, please contact us at privacy@soc.info.
11. Data Breach Notification
In the event of a security incident affecting member personal information, we commit to:
- Notify affected members without unreasonable delay, and in no event later than required by applicable law;
- Provide notice that includes, at minimum: what happened, when it happened, what types of information were affected, what we are doing in response, what affected members can do to protect themselves, and how affected members can contact us with questions;
- Notify regulators in accordance with applicable law;
- Conduct a post-incident review and apply lessons learned to our security practices; and
- Where appropriate, publish a public notice describing the incident and response.
We will not minimize, delay disclosure beyond what is legally permissible, or hide material facts about an incident.
12. Your Rights
The following rights are available to all members, regardless of where you live, through your account settings or by contacting privacy@soc.info.
12.1 Universal Rights
- Right to Access: You may request a copy of the personal information we hold about you.
- Right to Correct: You may correct inaccurate personal information about you. Some corrections (such as to your verified legal name) require updated documentation.
- Right to Delete: You may delete your account and associated personal information, as described in Section 9.
- Right to Export (Portability): You may request an export of your content and account information in a commonly used, machine-readable format.
- Right to Withdraw Consent: Where we rely on your consent for a particular processing activity, you may withdraw that consent at any time.
12.2 How to Exercise Your Rights
You may exercise these rights by:
- Using the relevant feature in your account settings (where available);
- Emailing privacy@soc.info.
We will respond to verified requests within 30 days (or 45 days where extended, with notice). To protect your privacy, we may require reasonable verification of your identity before processing requests, particularly for sensitive requests like data deletion or export.
12.3 Authorized Agents
You may designate an authorized agent to exercise your privacy rights on your behalf. We require the agent to provide proof of authorization (typically a signed permission or power of attorney), and we may require you to verify your own identity directly.
12.4 No Discrimination
We will not discriminate against you for exercising your privacy rights. We will not deny service, charge different prices, or provide a different level of service based on your exercise of these rights.
13. State-Specific Privacy Rights
In addition to the rights in Section 12, members in certain U.S. states have additional rights under state privacy laws. The substance of most state privacy rights is the same, but each state has specific procedural requirements.
13.1 California Residents
If you are a resident of California, the California Consumer Privacy Act ("CCPA") as amended by the California Privacy Rights Act ("CPRA") provides you with specific rights regarding your personal information.
Categories of Personal Information Collected
In the past 12 months, we have collected the following categories of personal information about California members, as defined under the CCPA:
| CCPA Category | Examples for Soc | Collected? |
|---|---|---|
| Identifiers | Name, email, phone, IP address | Yes |
| Personal information categories under Cal. Civ. Code §1798.80(e) | Government ID, payment information | Yes |
| Protected classification characteristics | Age, date of birth | Yes (date of birth, for age verification) |
| Commercial information | Membership tier, billing history | Yes |
| Biometric information | Face image used for ID verification | Yes (for identity verification only) |
| Internet/network activity information | Activity within Soc | Yes (within Soc only) |
| Geolocation data | Approximate location from IP | Limited (for legal compliance and security only) |
| Sensory data | Photos, video, audio you post | Yes (content you post) |
| Professional/employment information | None | No |
| Education information | None | No |
| Inferences drawn from personal information | None | No |
| Sensitive personal information | Government ID, biometric data | Yes (for identity verification) |
Sources of Personal Information
We collect personal information from: (a) you directly, (b) your interactions with the Service, (c) our identity verification provider, and (d) our payment processor.
Business Purposes for Collection
We collect personal information for the business purposes described in Section 3 above.
Disclosure of Personal Information
In the past 12 months, we have disclosed the categories of personal information identified above to the service providers identified in Section 5.1, for the business purposes described in Section 3.
Sale and Sharing
We do not sell or share personal information as those terms are defined under the CCPA. We have not sold or shared personal information in the past 12 months, and we do not anticipate doing so. Members under 16, and the parents or guardians of members under 13, do not need to opt out of sales because no sales occur.
Use of Sensitive Personal Information
We use sensitive personal information (specifically, government ID and biometric data collected during identity verification) only for the limited purposes described in Section 2.1: confirming identity at onboarding and re-verification. We do not use sensitive personal information for purposes that would require us to offer a "Limit Use of Sensitive Personal Information" option, but you may still request that we limit such use through the procedures in Section 12.2.
California Rights
California residents have the following rights:
- Right to Know what personal information we collect, use, disclose, and (if applicable) sell or share;
- Right to Delete personal information we have collected from you, subject to legal exceptions;
- Right to Correct inaccurate personal information;
- Right to Opt-Out of Sale or Sharing of personal information (not applicable; we do not sell or share);
- Right to Limit Use of Sensitive Personal Information to the purposes specifically permitted under the CCPA;
- Right to Non-Discrimination for exercising your rights;
- Right to Data Portability (a copy of your information in a portable format).
To exercise any of these rights, see Section 12.2. We will respond to verified requests within 45 days, or 90 days where extended, with notice.
"Shine the Light" Disclosure
California Civil Code § 1798.83 permits California residents to request information about disclosures of personal information to third parties for direct marketing purposes. We do not disclose personal information to third parties for direct marketing purposes.
13.2 Other State Privacy Laws
If you reside in a state with comprehensive privacy legislation in effect — including but not limited to Colorado, Connecticut, Delaware, Indiana, Iowa, Kentucky, Maryland, Minnesota, Montana, Nebraska, New Hampshire, New Jersey, Oregon, Rhode Island, Tennessee, Texas, Utah, or Virginia — you have rights substantially similar to those described in Section 13.1, including the rights to access, correct, delete, and obtain a portable copy of your personal information, and the right to opt out of sale, targeted advertising, and certain forms of profiling. Because we do not sell personal information, do not engage in targeted advertising, and do not engage in profiling for legal-effect decisions outside our Community Standards process, the opt-out rights largely do not apply to our practices. The other rights are available to you through the procedures described in Section 12.2.
If your state's law provides additional rights beyond those described, we will honor those rights in accordance with applicable law.
13.3 State Appeals
Some state privacy laws give you the right to appeal a denial of your rights request. If we deny your request, we will inform you of how to appeal. You also have the right to contact your state attorney general if you are not satisfied with our response.
14. Members Under 18
Soc is open to members 13 years of age or older. We take the protection of minors seriously, and the protections in this section are in addition to the protections in the Soc Constitution and elsewhere in this Privacy Policy.
14.1 Members Aged 13 to 17
If you are a member aged 13 to 17:
- You must have your parent's or legal guardian's permission to use Soc;
- We collect and process the same categories of personal information described in Section 2 (which is required for verified-identity membership), but apply additional protections to its use;
- Your content has additional audience restrictions described in the Constitution;
- We do not use your personal information for any form of profiling beyond what is necessary for content moderation, security, and identity verification;
- We will respond to deletion requests, made by you or by your parent or legal guardian, within the timelines described in Section 12; and
- If we learn that a member's age has been misrepresented, we will take appropriate action including potential account suspension or termination.
14.2 Children Under 13
Soc is not open to children under 13. We do not knowingly collect personal information from children under 13. If we learn that we have collected personal information from a child under 13, we will delete that information promptly. If you are a parent or guardian and believe that we have collected information from a child under 13, please contact us at privacy@soc.info.
14.3 Parental Rights
Parents and legal guardians of members under 18 may:
- Request access to or deletion of their child's information;
- Withdraw consent for their child's continued use of the Service;
- Contact us with questions about their child's account.
We will verify the identity of the parent or guardian and the relationship to the member before processing requests of this kind.
15. International Data Transfers
Soc operates from the United States, and the primary copy of member data is stored on servers located in the United States. As a result of using cloud infrastructure providers and certain service providers, limited processing may occur in other countries. Where international data transfers occur:
- We use appropriate contractual and technical safeguards to protect member data;
- We do not transfer personal information to jurisdictions where it would not receive substantially similar protections; and
- We do not currently target our Service to members outside the United States.
If you access the Service from outside the United States, you do so at your own risk and you consent to the transfer and processing of your personal information in the United States. Privacy laws in the United States may differ from the laws of your home jurisdiction.
16. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we do:
- The "Last Updated" date at the top of this policy will reflect the most recent change;
- For material changes, we will provide at least 30 days' advance notice through the in-app interface, by email, or both;
- For changes required by new legal requirements or to address security or safety issues, shorter notice periods may apply;
- We will not make changes that materially diminish the privacy commitments described in the Soc Constitution without following the modification procedures described there;
- Members will be able to access prior versions of this Privacy Policy and the date each version was in effect.
If you do not agree to a material change, you may delete your account before the change takes effect.
17. Contact Us
For questions about this Privacy Policy or about our privacy practices, you may contact us at:
Privacy email: privacy@soc.info
If you are not satisfied with our response to a privacy concern, you may also contact your state attorney general or, where applicable, your state privacy regulator.
Soc