PrayPass Privacy Policy
Effective date: [Set on final publication]
Operator: [Legal operator name pending confirmation] ("PrayPass," "we," "our," or "us")
Privacy contact: support@praypass.app
PrayPass is a prayer-focused mobile application that helps users organize prayer petitions, generate prayers, and use Apple's Screen Time controls to pause before opening selected apps. This Privacy Policy explains the information processed when you use the current iOS app, why it is processed, and your choices.
1. Information stored on your device
The app stores the prayer petitions you enter, petition IDs and creation dates, a limited history of generated prayers (up to three per petition), your prayer streak and rotation information, and app preferences such as sound and haptics. This information is stored in local app storage on your device. The current app does not create a PrayPass user account or upload these records to a PrayPass petitions database.
If you grant Screen Time authorization, Apple's Family Controls APIs let you choose apps or categories to protect. The selection and related protection settings—including prayer frequency, grace periods, and shield state—are stored locally through an iOS App Group. The current app does not transmit your selected app list to a PrayPass backend. The shield's handoff notification does not include petition text.
Device backups and Apple's own operating-system services may handle local information according to your device settings and Apple's policies.
2. AI prayer generation and petition polishing
When you use prayer generation, PrayPass sends your current petition text and up to three recent prayers associated with that petition to a Supabase Edge Function. When you use petition polishing, it sends the petition text you provide. The Edge Function forwards the relevant information to OpenAI's API to produce a response, which returns to the app.
Prayer petitions can be personal or sensitive. Do not include information you are uncomfortable having processed by these services. These AI features require transmission of the relevant text off your device; merely storing a petition locally does not, by itself, create a cloud petition database in the audited version.
The current application and Edge Function source do not implement a separate server-side petitions database. Supabase and OpenAI may, however, process and retain operational, security, or abuse-monitoring records under their policies and applicable service configurations. Their platform-level logging and the exact retention settings of our hosted accounts must be confirmed before this draft is published. See the providers' policies: Supabase Privacy Policy and OpenAI Privacy Policy.
3. Subscription and payment information
If you view, buy, renew, or restore a Premium subscription, Apple's App Store handles the purchase and payment process. RevenueCat helps us retrieve offerings and verify purchase and subscription status. RevenueCat assigns an anonymous app user identifier because the current app has no end-user accounts. Apple and RevenueCat process information such as transaction history, subscription status, purchases, and restores in accordance with their policies. PrayPass does not send your petition text, generated prayers, or Screen Time selection to RevenueCat in the current app.
We do not receive your full payment-card details from Apple. See Apple's Privacy Policy and RevenueCat's Privacy Policy.
4. Why information is processed
We process the information described here to save your preferences and prayer information on your device; provide prayer generation and petition polishing when those features are used; carry out Screen Time protection you authorize; deliver and restore subscriptions; troubleshoot errors, protect our services, and comply with applicable law. The app code reviewed for this draft contains no separate advertising, general analytics, or third-party crash-reporting SDK. This does not exclude Apple's system reporting or operational information processed by our service providers.
Where applicable law requires a particular legal basis, processing may be necessary to provide the features you request, fulfill a subscription or applicable legal obligation, protect our services, or be based on consent where required. Your ability to use AI features, Screen Time permissions, and other controls may vary with your device and the feature involved.
5. Sharing and international processing
We share information with service providers only as needed for the functions described above: Supabase and OpenAI for requested AI features, and Apple and RevenueCat for subscription transactions and entitlement verification. The Apple operating system handles Family Controls and Screen Time permissions. These providers may process information in countries other than the one where you live under their respective policies and any applicable safeguards.
6. Retention and your choices
Your petitions, recent generated prayers, streaks, rotation records, and app preferences remain on your device until you remove the relevant data or the app's local storage. Deleting the app may remove local app data but does not necessarily erase copies retained in device backups, service-provider logs, or Apple's and RevenueCat's purchase records. Because PrayPass currently has no user account or central petitions database, we cannot retrieve or erase all local content remotely.
You can avoid sending new text for AI processing by not using features that require AI. You can manage or revoke Screen Time authorization through the available iOS controls. Subscriptions are managed through your Apple Account and can be canceled using Apple's subscription settings. For privacy inquiries or requests involving data under our control, email support@praypass.app. We may need enough information to verify and respond to a request, and some records may need to be retained by Apple or other providers under their own rules.
7. Security
PrayPass uses device storage and established third-party services to provide its functionality. No application or transmission method can be guaranteed to be completely secure. You should avoid submitting confidential details that you do not want processed by an AI provider.
8. Children and local legal requirements
[FINALIZE BEFORE PUBLICATION: confirm PrayPass's intended age audience, App Store age rating, whether it has any age-specific design or consent controls, and any additional disclosures required for your selected launch countries.]
9. Changes to this policy
We may update this Privacy Policy to reflect changes to PrayPass, our vendors, or applicable requirements. We will revise the effective date and provide any additional notice required by law.
10. Contact
[Legal operator name pending confirmation]
Email: support@praypass.app
Website (if available): praypass.pages.dev