Timehop
GDPR evidence
Timehop helps you celebrate the best moments of the past with your
Timehop and GDPR
CertReports found no public GDPR evidence for Timehop as of unknown date. This does not mean the vendor is non-compliant. It means CertReports found no public evidence at the last check.
Evidence
- Kind
- listing
- Issued or listed
- 28 Mar 2023
- Expires or valid through
- 23 Mar 2027
- Scope
- We use users personal information to deliver our product, which is a social media memories mobile application. We let users see their old Facebook, Instagram, Google Photos, Flickr, and Tumblr posts. Using user’s personal information is necessary to deliver this information to the users. We also use certain information for customer support and advertising, as outlined in our privacy policy.
| Source | Captured | Quote | Links |
|---|---|---|---|
Data Privacy Framework list Official registry · HTTP 200 | 17 Sep 2026 | Timehop, LLC: Active: EU-US Certification | Live pagesha256 11cab13b9a |
- Kind
- listing
- Scope
- Timehop uses users personal information to deliver its product, which is a social media memories app. We let users see their old Facebook, Instagram, Twitter, Google Photos, Flickr, and Tumblr posts. Using user’s personal information is necessary to deliver this information to the users. Timehop also uses certain information for customer support and advertising, as outlined in our privacy policy.
| Source | Captured | Quote | Links |
|---|---|---|---|
Data Privacy Framework list Official registry · HTTP 200 | 17 Sep 2026 | Timehop, Inc.: Inactive | Live pagesha256 a54d1a3802 |
What GDPR means, and what it does not
"GDPR compliant" is a claim, not a certification. The verifiable facts are a public DPA, SCC usage, an EU representative, data residency options and a Data Privacy Framework listing.
Read the GDPR guide and browse all vendors with evidenceQuestions buyers ask
Is Timehop GDPR compliant?
There is no GDPR certification in general use. The verifiable facts are a public data processing agreement, standard contractual clauses, an EU representative and a Data Privacy Framework listing. See the legal artefacts and the DPF row on this page, each with its capture date.
How does CertReports verify this?
Every state carries a capture date, a source and a snapshot link. Registry rows come from the official registry data; vendor statements come from the vendor’s own page or trust centre; nothing is inferred. Vendors can dispute any row and corrections ship within two business days.
Alternatives with GDPR evidence
Similar vendors (shared product tags) whose GDPR row is verified or vendor-stated, ranked by similarity.
No same-category vendor has GDPR evidence in the index yet.