Privacy policy
Last updated September 30, 2026
This policy explains what YidList (“YidList”) collects when you use the site, why, and what you can do about it. We don't sell personal information, and we don't use advertising pixels or third-party analytics.
What we collect
- Account details: email address, a hashed password, and the display name you give us.
- Listings you post: title, description, category, price, details such as bedrooms, the area and optional ZIP code, and photos. Photos are resized and stripped of hidden metadata (including GPS location) in your browser before upload.
- Private listing details: an optional street address and the contact name, email and phone you enter. The street address is never shown publicly; contact details are shown only as you choose (see below).
- Saved listings: the listings you save to your account. If you aren't signed in, saves are kept only in your browser's local storage.
- Reports and removal requests: what you tell us, plus your name and email for removal requests.
- Area preference: if you pick your area on the home page, we store that choice (a neighborhood, never coordinates) in a cookie.
- Location for “Near me”: only if you press “Near me” and allow it, your browser shares your position; we round it to about 1 km, use it for that one search, and don't store it.
- Technical data: your IP address and request details, used briefly to prevent spam and abuse (rate limiting) and kept in server logs by our hosting providers.
- Cookies: a sign-in session cookie and the area-preference cookie above. No advertising or tracking cookies.
How we use AI
When you submit a listing, its title and description are sent to Google's Gemini API to suggest a category, extract details such as bedroom counts, and flag possible spam, scams or missing information for our moderators. For listings summarized from other sites, the same tools help classify and structure the facts. AI output is only a suggestion: extracted values are checked against your own wording, and a person makes every approval and removal decision. We don't send your contact details, street address or photos to the AI model. Google processes this data under its API terms.
Who can see what
- Published listings (without street address or contact details) are public.
- Your contact details are shown only if you switch them on, only to signed-in visitors, one listing at a time, with limits to prevent bulk collection.
- Moderators can see listings under review, reports, and private listing details when needed to handle abuse.
Service providers
Supabase (database, authentication and photo storage), our web host, and Google (Gemini API, as described above). They process data on our behalf and not for their own advertising.
Listings from other sites
Where we summarize listings from other sites with permission, we keep factual details and a link to the original. We don't copy posters' phone numbers or emails from other sites, and we never import personal or household directory records. Anyone can ask us to remove such a listing at Request removal.
How long we keep data
Listings expire after 30 days unless renewed; closed and expired listings are kept for up to 12 months for moderation records and then deleted. Rate-limit records are deleted after a day. You can delete drafts and close listings at any time.
Your choices and rights
You can edit or close your listings from My listings. To access, correct or delete your account and data, email hello@yidlist.co and we'll respond within 30 days. Depending on where you live, you may have additional rights under state privacy laws; we honor them for all users.
Children
YidList is not intended for anyone under 18, and we don't knowingly collect their information.
Changes
We'll update the date above when this policy changes and email account holders about material changes.