What we collect
- Account information, such as email address and authentication identifiers.
- Profile and study preferences, including language, display name, optional birth date and after-sunset choice used for a Hebrew-birthday calendar event, nusach, learning interests, reminder settings, city or coordinates, timezone, and Israel/Diaspora setting. Nusach and similar choices can reveal religious beliefs and receive additional protection.
- Learning data you create or generate, including reading progress, bookmarks, notes, saved books, saved lessons, daily study plans, completed and saved learning items, and offline-chapter metadata.
- AI request and response records needed to provide explanations, saved lessons, token accounting, abuse prevention, and support.
- Push notification tokens if you enable notifications.
- Billing status, plan tier, payment-provider customer and subscription identifiers, and related billing events. We do not receive full card numbers.
- Product-use metadata such as page path, feature and action names, interface language, device class, referring host, campaign tags, and a pseudonymous device identifier derived from a random token stored in the browser. This analytics channel does not accept note text, full search queries, AI prompts or answers, email addresses, or names.
- Performance and security data such as Web Vitals, browser family, request IP used for short-lived rate limiting, security logs, and error context.
- If an eligible user chooses a rewarded ad, Google Ad Manager or AdMob can process an ad request, cookies or device identifiers where permitted, consent signals, and a pseudonymous account identifier used to verify the token reward.
Limits on collection
- Madreiga does not request access to your contacts, photos, microphone, or device calendar.
- Precise coordinates are used only if you provide them or allow location access for location-based zmanim. You can instead choose a city.
- Madreiga does not receive or store full payment-card numbers. Card processing is handled by the payment provider or app store.
- Madreiga does not sell personal information. Advertising and analytics providers process data under their own terms and the consent choices that apply to their services.
How we use the information
- To sign you in, sync study progress, and restore saved books, bookmarks, lessons, settings, and study plans.
- To calculate calendar and zmanim features for the location and preferences you select.
- To generate and save AI-assisted explanations when you request them.
- To deliver reminders and notifications that you enable.
- To measure product use and performance, troubleshoot bugs, prevent abuse, answer support requests, and protect the service.
- To process purchases and subscriptions, and—only when an eligible user chooses it—to request a rewarded ad and credit the earned AI token.
AI requests
When you request an AI feature, Madreiga sends the selected source text, your question or requested mode, language, the conversation content needed to answer, and—where it is relevant to the religious-text explanation—the nusach setting you selected. Token accounting is handled separately; the provider request does not include your name, email address, account ID, location, birth date, or payment information. Do not put private, sensitive, medical, financial, or legally privileged information in a prompt.
Email, push, and marketing
- Account verification, password reset, billing, security, and service messages are transactional communications needed for the account or purchase.
- Push reminders are sent only after you enable a reminder and grant browser or operating-system permission. You can disable the reminder and revoke the device permission at any time.
- The audited application does not currently run a promotional-email list or install a marketing-email provider. If that changes, promotional messages will require a separate opt-in where law requires it and will include an unsubscribe method.
Purposes and legal bases
- Contract and steps you request: account access, saved learning, AI requests, notifications you enable, purchases, and support.
- Legitimate interests, where those interests are not overridden: service security, fraud prevention, troubleshooting, and limited operational records.
- Consent: optional analytics, rewarded-ad technology, and device notifications where consent or permission is required. You can withdraw consent without affecting earlier lawful processing.
- Legal obligation: payment, tax, accounting, lawful requests, and records that law requires us or the payment provider to keep.
- Religious preference data is used only to provide the learning, calendar, and personalization choices you request. It is never used for advertising or unrelated profiling. The applicable special-category basis requires legal review for the operating entity and each market.
Where data is stored and protected
Account and study data is stored in managed Postgres on Supabase. Personal tables use Row Level Security and application authorization policies; shared-study or published content can be visible to other people when the feature is designed for sharing. Network traffic uses encrypted HTTPS connections.
Service providers
- Supabase for database hosting, authentication, account deletion, and Edge Functions.
- Vercel for web hosting, deployment, Web Analytics and Speed Insights when enabled, and scheduled jobs.
- Dodo Payments for current web checkout and account-portal access, a legacy payment provider for some older accounts, or an app-store provider for subscriptions, invoices, payment status, and tax handling.
- AI infrastructure providers such as Groq, Anthropic, or OpenAI for requested explanations and generated learning content, depending on the active service configuration.
- Apple Push Notification service, Firebase Cloud Messaging, and web push infrastructure for optional notifications.
- Google Ad Manager for optional rewarded ads on the web and Google AdMob for optional rewarded ads in native apps, when those services are configured.
- Upstash Redis for short-lived rate limiting and abuse prevention when configured.
- Resend for messages submitted through the support/contact form and for operational infrastructure alerts when configured. Slack may receive limited operational alert details when configured; account content should not be included in those alerts.
International transfers
Providers may process data in Israel, the EEA, the UK, the United States, or other locations shown in their service terms. Where transfer rules apply, the relevant controller or processor must use an available legal mechanism such as an adequacy decision or approved contractual clauses. The configured Supabase project region and signed provider terms must be confirmed by the operator; contact privacy@madreiga.com for the current details.
Retention
- Account and study records are generally kept while the account is active, unless a shorter product limit applies or you delete the record.
- Madreiga's raw product-analytics events are scheduled for deletion after 180 days, Web Vitals after 90 days, and AI usage and cost records after 365 days.
- Providers keep data under their own retention rules. Security, payment, tax, backup, and dispute records may be kept longer when needed for those purposes or required by law.
Your choices and rights
- Access and portability: request a copy of account and study data associated with your account.
- Correction: update profile and preference fields in Settings, or contact support for fields that are locked to prevent misuse.
- Deletion: delete your account in Settings or request deletion by email.
- Notifications: you can disable reminders in the app and revoke notification permission in the browser or operating system.
- Cookies and tracking: use Cookie settings at any time to change or withdraw optional analytics and advertising consent.
- Depending on where you live, you may also have rights to object, restrict processing, withdraw consent, appeal a decision, or complain to the Israeli Privacy Protection Authority, your EEA/UK supervisory authority, or a US state regulator. These rights can be subject to legal exceptions.
Children
Accounts are intended for people age 16 or older. We do not knowingly create accounts for children under 16 and do not request identity documents or use the optional Hebrew-birthday date as proof of age. A younger person may use public, non-account reading features with a parent or guardian, but may not create an account or buy a plan. Contact privacy@madreiga.com if you believe a child created an account.
Delete your account
Open Settings in the app and choose Delete account. If you cannot sign in, email privacy@madreiga.com from the address on the account. The active account is removed; limited security, payment, legal, backup, and product-analytics records that are not tied to the account may remain for the periods described above.
Contact
Privacy questions: privacy@madreiga.com
This policy may be updated as the service changes. Material changes will be posted here and, when appropriate, announced in the app.