Privacy Policy
Last updated: 27 October 2025
DoorLah ("we", "us" or "our") is committed to protecting the privacy of users of the DoorLah mobile app and this website. This Privacy Policy explains what personal and non-personal information we collect, why we collect it, how we use and share it, and the choices you have regarding your information.
1. Scope
This policy applies to personal data collected through the DoorLah mobile application and any related websites or services we operate.
2. Information We Collect
- Account and Profile Information: Name, email address, phone number, profile picture, community/estate selection, username and other profile fields you provide when you register.
- Authentication & Account Data: Credentials and tokens used for authentication, session data, and identifiers. (We recommend using secure authentication providers.)
- Messages & Community Content: Messages, posts, images and other content you send in community chats or direct messages. Note: messages are stored to provide chat functionality and may be cached locally for performance.
- Marketplace & Shop Data: Listings, item descriptions, pricing, photos, and shop information you create when using marketplace or shop features.
- Payment & Transaction Data: If you make purchases via the app, we may collect billing and transaction information. DoorLah itself does not store raw payment card numbers — we rely on third-party payment processors where applicable. Always review the payment provider’s privacy terms.
- Device & Usage Data: Device model, OS version, app version, unique device identifiers, IP address, crash logs and diagnostic data, and analytics about how you use the app.
- Location Information: Approximate location or precise location if you grant permission and features require it (for example, to show nearby shops or services). Location access is optional and gated by user permission on the device.
- Photos & Media: Images or files you upload (for example, shop images or marketplace item photos). These may be stored on our storage provider.
- Local Data & Caching: Data stored locally on your device using SQLite (sqflite), shared preferences, or files (for caching and offline support). This includes cached copies of communities, listings, messages, and user profile data as described in our README caching strategy.
- Cookies & Local Storage (Web): If you access DoorLah through a web interface, we may use cookies or local storage for session management and preferences.
3. How We Use Your Information
- To provide and maintain the app’s core features (chat, marketplace, shops, services).
- To enable account management, authentication, and profile functionality.
- To process transactions, bookings and communicate with you about your orders or listings.
- To improve our services through analytics, debugging, and performance monitoring.
- To send important notices, updates, security alerts and marketing (with your consent where required).
- To enforce our Terms of Service and protect the rights, property or safety of DoorLah, our users or others.
4. Legal Basis for Processing (where applicable)
Where relevant (for example, users in the EU), we rely on the following legal bases:
- Performance of a contract — to provide the services you requested (e.g., account, messaging, bookings).
- Legal compliance — to comply with applicable laws and respond to lawful requests.
- Legitimate interests — for fraud prevention, network and information security, product improvement and analytics (balanced against user rights).
- Consent — for optional marketing communications, location services and other features where we ask your permission.
5. Information Sharing and Disclosure
We do not sell, trade, or rent your personal information to third parties. We may share your information in the following circumstances:
- Service Providers: With trusted third-party service providers who help us operate our app (e.g., Supabase for database, payment processors). These providers are contractually obligated to protect your data.
- Legal Requirements: When required by law, court order, or government request.
- Safety & Security: To protect the safety, rights, or property of DoorLah, our users, or the public.
- Business Transfers: In connection with a merger, acquisition, or sale of assets.
- With Your Consent: When you explicitly agree to sharing.
We provide only the minimum information necessary for these third-party services to perform their functions. Each third-party has its own privacy policy; please review those before using related features.
6. Local Caching & Offline Storage
DoorLah uses local caching to improve performance and provide offline access. As described in our README, cached data improves load times and reduces API requests. Typical cache TTLs include:
- Communities: 24 hours
- Service Providers: 1 hour
- Marketplace Items: 30 minutes
- Messages: 5 minutes
- Shops: 1 hour
- Bookings: 30 minutes
- User Profile: 2 hours
Cached data is stored using SQLite (sqflite), shared preferences, and file storage on the device. You can clear local data by uninstalling the app or via any cache management features exposed in the app settings.
7. Data Retention
We retain your personal information for as long as necessary to provide our services and fulfill the purposes outlined in this policy, unless a longer retention period is required by law. For example:
- Account data is retained while your account is active and for a reasonable period after deactivation.
- Messages and community content may be retained for operational purposes but can be deleted upon request.
- Analytics and usage data is typically aggregated and retained for up to 2 years.
8. Your Rights and Choices
You have several rights regarding your personal data:
- Access: Request a copy of the personal data we hold about you.
- Correction: Request correction of inaccurate or incomplete data.
- Deletion: Request deletion of your personal data (subject to legal exceptions).
- Portability: Request your data in a portable format.
- Objection: Object to processing based on legitimate interests.
- Restriction: Request restriction of processing in certain circumstances.
To exercise these rights, contact us at doorlah.singapore@gmail.com.
9. Data Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. This includes:
- Encryption of data in transit and at rest.
- Secure authentication and access controls.
- Regular security assessments and updates.
- Employee training on data protection.
However, no method of transmission over the internet or electronic storage is 100% secure, so we cannot guarantee absolute security.
10. Children's Privacy
DoorLah is not intended for children under 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected such information, we will take steps to delete it promptly.
11. International Data Transfers
Your data may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for such transfers, including:
- Using services with adequate data protection certifications.
- Implementing standard contractual clauses.
- Ensuring compliance with applicable data protection laws.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by:
- Posting the updated policy on our website.
- Sending you an email notification (if applicable).
- Showing an in-app notification.
Your continued use of DoorLah after changes take effect constitutes acceptance of the updated policy.
13. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us:
- Email: doorlah.singapore@gmail.com
- Address: Singapore
For information about our safety standards and how to report abuse or concerns (including child safety issues), please see our Safety Standards page.
To request permanent deletion of your DoorLah account and personal data, visit our Account Deletion page for instructions and the verification steps we require.