Security & Infrastructure
An overview of GoCrush cryptographic safeguards, database isolation, biometric security, and whitehat disclosure guidelines.
In compliance with the IT Rules 2021, any legal notice, complaint, or privacy inquiry should be addressed to:
1. Security Philosophy
Security is the cornerstone of trust in online dating. GoCrush applies defense-in-depth principles across every architectural layer, ensuring user communications remain confidential and private.
2. Encryption & Data Isolation
All data transferred between the mobile client and backend is encrypted using TLS 1.3 with Perfect Forward Secrecy.
Databases and media buckets are encrypted at rest with hardware security modules (HSM) and automated key rotation.
3. 3D Facial Geometry Protection
When members perform liveness selfie verification:
- Biometric facial coordinate vectors are calculated in an ephemeral secure enclave.
- Once liveness and match confidence is verified, raw biometric templates are cryptographically sealed.
- Verification records are deleted immediately upon account deletion under our Nuclear Wipe guarantee.
4. Cloud Infrastructure Security
Our infrastructure is hosted on enterprise Google Cloud & Firebase data centers with SOC 2 Type II, ISO 27001, and PCI-DSS Level 1 compliance. Strict Firestore security rules strictly isolate private messages, preventing cross-user data leakage.
5. Responsible Disclosure & Whitehats
We welcome reports from independent security researchers. If you discover a vulnerability in our web client or API:
Please email gocrush83@gmail.com with a detailed Proof of Concept. We acknowledge reports within 24 hours and do not pursue legal action against researchers acting in good faith.