What they may do · DPDP §6(4)
What Bumble (Bumble Inc) does with your data
Bumble discloses targeted ads and custom-audience lists, ad measurement across third-party networks including the Facebook pixel, facial-recognition scans for photo and ID verification, sharing with many named service providers, and keeping core account data six years after deletion.
-
Shares your data with partners
Passed to group companies, advertisers or analytics firms you never chose.
What this costs you. Your number and habits travel to companies you have never heard of and never agreed to. This is the step where the spam calls start.
Show me where they say that
Bumble (Bumble Inc)’s own policy says “We will only share your personal information with Service Providers when necessary to perform these functions and provide such services.”
Our summary names a long list of recipients including Veriff (identity/biometric checks), Twilio and Prove (authentication, with Prove sharing onward to wireless carriers and mobile network operators), Zendesk and Sierra (support), Cinder (moderation), Typeform and Kantar (research), Google Cloud (hosting) and OpenAI (AI message prompts), plus Marketing Service Providers, Advertising Partners and Facebook as joint controller.
-
Builds an advertising profile of you
They watch what you view, tap and buy, and use it to decide which ads you see.
What this costs you. Your attention gets priced. What you hesitate over becomes a bid — and a profile built to predict you is a profile built to persuade you.
Show me where they say that
Bumble (Bumble Inc)’s own policy says “sending you specific Bumble advertising content by including you on a list of people we think are most likely to be interested in a particular advertisement (also known as a “custom audience”)”
Our summary describes placing the user on interest-based 'custom audience' lists for advertising, and building 'lookalike audience' segments from behavioural factors it lists explicitly (photo uploads, purchases, photo verification, prompt responses, moderation history, swipe speed). A separate row covers sharing 'targeted third-party advertisements on the App' using gender, age, IP address and coarse location, gated on consent.
-
Follows you onto other websites and apps
Their tracking carries on after you leave, through pixels and SDKs embedded elsewhere.
What this costs you. You get recognised on sites that have nothing to do with them. Closing the app does not close the file.
Show me where they say that
Bumble (Bumble Inc)’s own policy says “To share Bumble advertisements on third-party networks and measure their effectiveness, and receive data on interactions you had with our ads.”
Our summary states Bumble advertises on third-party networks and receives data on the user's interactions with those ads, using device ID, IP address and estimated location. The sharing table adds that Marketing Service Providers 'market and advertise our App and services on third-party websites and applications', and names the Facebook pixel as a source of information shared with Facebook as joint controller.
-
Keeps your records long-term
Held on after you stop using the service.
What this costs you. Years after you delete the app, the record is still sitting there — and every year it sits there is another year it can leak.
Show me where they say that
Bumble (Bumble Inc)’s own policy says “Geocoordinates, email, external IDs, phone number, gender, city, birthday, and name are retained for six years from account deletion/erasure”
Our summary sets retention periods that run for years past account deletion — core identifiers and geocoordinates for six years, support correspondence for six years, feedback details for six years — and states Bumble 'may keep details of certain blocked members for up to 15 years, depending on the seriousness of harm', with serious fraud-blocking records also kept fifteen years.
-
Processes your face or other biometrics
Face matching, liveness checks or similar.
What this costs you. You can change a leaked password in a minute. You cannot change your face. A biometric breach is permanent in a way nothing else is.
Show me where they say that
Bumble (Bumble Inc)’s own policy says “If you choose to verify your profile photo, we will scan each photo that you submit. This scan can include the use of facial recognition technology to compare the submitted photo(s) to your profile photo, which helps us make sure you are who you say you are.”
Our summary has a section headed 'Profile Verification and ID Verification Information (including biometric information)' describing facial-recognition scans for photo verification and, via third-party partner Veriff, a selfie-to-ID comparison that 'involves the collection of biometric data'. Photo-verification scans are kept up to 3 years after last interaction; a manual-review opt-out from facial recognition is offered.
What the policy does not mention
These are uses Bumble (Bumble Inc)’s policy is silent on. Silence is not a promise — it means the document does not say, and we do not infer either way.
- Trains AI models on your content
Bumble is one app. How many are on your phone?
Most people carry twenty to forty. Add yours and see the total in one screen — how many share your data, profile you for ads, or follow you across the web. Then take it back from all of them at once.
Manage my data with Saaph.in →Free to check · no account needed · built in India for the DPDP Act
Questions
What does Bumble (Bumble Inc) do with my personal data?
According to Bumble (Bumble Inc)'s own privacy policy, read on 2026-08-14, it discloses 5 of the six uses we track: shares your data with partners, builds an advertising profile of you, follows you onto other websites and apps, keeps your records long-term, processes your face or other biometrics.
Can I withdraw my consent from Bumble (Bumble Inc)?
Section 6(4) of India's Digital Personal Data Protection Act 2023 gives you the right to withdraw consent for processing you agreed to. The Act's substantive provisions commence in stages up to May 2027, so a request made now asks for voluntary compliance and puts the date on record. Processing a company carries out under a legal obligation — such as KYC records the RBI requires — cannot be withdrawn.
Does Bumble (Bumble Inc) track me for advertising?
Yes — Bumble (Bumble Inc)'s published policy discloses this. The exact sentence it is based on is quoted on this page, with the date we read it and a link to the source.
Every use above is one Bumble (Bumble Inc) declared in its own published privacy policy, which we
read on 2026-08-14. Quotes are verbatim; the summary beside each one is ours
and is labelled as ours. Nothing here is inferred.
Saaph.in is a DPDP consent and request management platform operated by Ronin Works
Private Limited. It is a communication facilitator, not your legal or authorised
representative. The DPDP Act 2023 commences in stages up to May 2027, so a request
made today asks for voluntary compliance and records the date you asked.
Our privacy policy