The short version
- There is no MySavior account. Your designs, favorites, settings and the first name you give the app are stored on your iPhone.
- The app uses Mixpanel for analytics. During the welcome questions it sends your answers to Mixpanel (including your first name, your faith and mood answers and any goals you type) and records a replay of those screens.
- RevenueCat manages subscriptions bought through Apple. RevenueCat and the Meta (Facebook) and TikTok SDKs report installs, trials and subscriptions so we can measure our ads.
- The app never shows Apple’s tracking permission prompt, so iOS does not give it your device’s advertising identifier.
- Unsplash receives what you type in the app’s photo search; Wikipedia and Wikimedia receive requests for saint biographies and photos.
- We do not sell your personal information for money. To see or delete your data, write to contact@mysavior.app.
Who we are
MySavior (“we”, “us”) publishes the MySavior app for iPhone, listed on the App Store as “Bible Widgets: MySavior”. We are responsible for the personal data described in this policy (the “controller” under the GDPR). You can reach us at contact@mysavior.app.
This policy covers the app, version 1.3.1, and this website. The website does not use advertising scripts or tracking cookies; its host, Cloudflare, processes visitors’ IP addresses to serve and protect the site, and we may use Cloudflare’s cookie-free visitor statistics.
What stays on your iPhone
MySavior has no sign-up, no login, no iCloud sync and no server of its own for app data. The app keeps the following in its storage on your iPhone, and in a storage area it shares with its own widgets so they can show your choices:
- the first name you choose to be called;
- your settings: topics, themes, fonts, widget designs, countdown and Lock Screen widget options, notification times, app icon and sound;
- the texts you like (your favorites) and your daily streak;
- saint biographies and photos once they have loaded, so they work offline;
- technical markers, such as which welcome steps have already been reported.
Unless it is sent to one of the services below, we cannot see this data. It is deleted when you delete the app. If you back up your iPhone to iCloud or a computer, iOS may include it in that backup, which Apple, not MySavior, handles.
The welcome questions
The first time you open MySavior, a welcome flow asks a series of questions. Answering is optional: most questions have a Skip button. Apart from your first name, theme, app icon, reminder time and starter widget, which the app uses to set itself up, your answers do not change what the app shows you. They are sent to Mixpanel (below) to help us understand who uses MySavior and improve the app. The answers sent are:
- how you heard about MySavior;
- your age range (the choices start at 13 to 17);
- the first name you want to be called;
- your gender and relationship status;
- how familiar you are with the Bible, your faith practice and how close you feel to God;
- whether you prefer a broad Christian mix, Catholic or Protestant content;
- how often you want to check in with God, your streak goal and what would help you build the habit;
- the app icon, theme, font, text color and starter widget you choose, your reminder time and whether you allowed notifications;
- your relationship practices, how you feel today and why, what you are struggling with (for example anxiety and fear, addiction or temptation, stress or burnout, finances, loneliness and heartbreak) and what you are grateful for;
- the goals you type in your own words, and what you want to improve.
Some of these answers can reveal your religious beliefs, and some touch on your health and wellbeing. Laws such as the GDPR treat this as sensitive data. Skip any question you prefer not to answer, and do not type anything in the goals box that you would not want to share.
Services that receive data
These companies process data for us under their own terms and privacy policies. The app talks to them over encrypted (HTTPS) connections.
Mixpanel: analytics
- Company
- Mixpanel, Inc. (United States)
- What it receives
- A random ID that the Mixpanel SDK creates on your iPhone; your welcome answers (above); events: each welcome step you complete, when a subscription screen is shown and where it was opened from, the first time the main screen appears, your reply to the “Are you enjoying the app so far?” prompt, and when a special-offer screen is shown. The SDK adds technical details to each event, such as device model, iOS version, app version, screen size and connection type, and Mixpanel estimates an approximate location (city, region and country) from your IP address.
- Why
- To understand how people go through the welcome flow and use the app, and to improve both.
- Their policy
- mixpanel.com/legal/privacy-policy
Mixpanel Session Replay: the welcome flow
- What it records
- The screens of the welcome flow and your taps and swipes on them, from the moment the flow opens until it ends. Text you type into input fields is masked by the recording tool; other content on screen is captured, which can include the first name you entered when a later screen displays it.
- When
- Only during the welcome flow. Recording stops when the flow ends and does not cover the rest of the app.
- Why
- To see where the welcome flow is confusing or breaks, and fix it.
RevenueCat: subscriptions
- Company
- RevenueCat, Inc. (United States)
- What it receives
- A random app user ID (shown as “Support ID” at the bottom of the Account screen); your App Store transactions and subscription status, as Apple reports them; device identifiers that RevenueCat collects for ad attribution: the identifier iOS gives to apps from the same developer (IDFV) and your IP address; the Apple Search Ads attribution token; the random ID created by the Meta SDK; and whether you have claimed a special offer.
- Why
- To manage subscriptions and restores, show the right subscription screen, and measure which ads lead to trials and subscriptions. With the Meta ID, RevenueCat can pass trial and subscription events on to Meta.
- Their policy
- revenuecat.com/privacy
Meta (Facebook SDK): ad measurement
- Company
- Meta Platforms, Inc. (Meta Platforms Ireland Ltd. in the EU)
- What it receives
- App events: installs and app openings, which the SDK logs automatically (it may also log App Store purchases automatically), plus trial starts and subscriptions with their value and currency, which the app sends; a random ID the SDK creates; device and app information such as model, iOS version, language and time zone; and your IP address. The app does not use Facebook Login and does not send your name or your welcome answers to Meta.
- Why
- To measure and improve our ad campaigns on Facebook and Instagram.
- Their policy
- facebook.com/privacy/policy
TikTok Business SDK: ad measurement
- Company
- TikTok (TikTok Pte. Ltd. and its affiliates)
- What it receives
- App events that the SDK logs automatically, such as installs, app launches and whether you come back on later days, and may include App Store purchases; trial starts and subscriptions, which the app sends; the identifier iOS gives to apps from the same developer (IDFV); other device and app information; and your IP address. The app does not send your name or your welcome answers to TikTok.
- Why
- To measure our ad campaigns on TikTok.
- Their policy
- tiktok.com/legal/privacy-policy
Apple
- What it handles
- Apple processes every purchase and subscription; we never see your payment details. The app asks iOS for an Apple Search Ads attribution token and passes it to RevenueCat, which uses it to learn from Apple whether the install came from an Apple Search Ads ad. Apple’s SKAdNetwork reports ad results to ad networks without device identifiers. Ratings prompts and notifications are shown by iOS.
- Their policy
- apple.com/legal/privacy
Unsplash: photo search
- What it receives
- The words you type in the app’s photo search, requests for the photos it shows, and a notice when you pick a photo (Unsplash requires this so photographers get credit); like any web request, your IP address.
- Why
- To let you search Unsplash and use a photo as a background.
- Their policy
- unsplash.com/privacy
Wikipedia, Wikidata and Wikimedia Commons: saints
- What it receives
- Requests for a saint’s article summary, dates and photo, which show which saint is being looked up, and, like any web request, your IP address. The app identifies itself as MySavior when it asks Wikipedia and Wikidata for articles and data, and it sends no personal details. The Saint of the Day widget makes the same kind of requests on its own to show the day’s saint and photo.
- Why
- To show saint biographies and photos.
- Their policy
- Wikimedia Foundation privacy policy
Email and sharing
When you write to us, we receive your email address and your message. The email that the app prepares from Account › Suggestion or Bug includes the name you gave the app and the app version; you can edit it before sending. When you share an image or text to Instagram, WhatsApp, TikTok or another app, it goes to that app under its own policy, and some shared text includes a link to MySavior on the App Store.
Permissions
- Notifications. If you allow them, the app schedules notifications on your iPhone: texts from the app, as many a day and between the times you choose; a reminder the day before a trial ends; and, if you have not subscribed, reminders about a special offer two and five days after you first open the app. They are scheduled on the device; MySavior does not use a push server. Turn them off in Settings › Notifications › MySavior.
- Photos. When you save an image or a wallpaper, the app asks only for permission to add images to your photo library. It cannot read the pictures already there.
- Nothing else. The app does not ask for or use your precise location, contacts, camera or microphone.
Ad measurement and App Tracking Transparency
MySavior never shows Apple’s App Tracking Transparency prompt. It does not ask to track you across other companies’ apps and websites, and iOS does not give the app or its SDKs your device’s advertising identifier (IDFA). The Meta SDK’s setting for collecting that identifier is on, but iOS does not provide it without the prompt. Meta, TikTok and RevenueCat still receive the app events and device information described above, which they use to tell us which ads led to installs, trials and subscriptions.
Selling and sharing
We do not sell your personal information for money, and we do not share your welcome answers with advertising companies. Sending app events to Meta and TikTok to measure ads may count as “sharing” for cross-context behavioral advertising, or as a “sale” in the broad sense used by some US state laws such as California’s. You can opt out by writing to us (see your rights).
Legal bases (EEA, UK and Switzerland)
- Contract: providing the app and the features you use, saving your designs, loading saints and Unsplash photos, and managing subscriptions and restores.
- Legal obligation: keeping the records that accounting and tax rules require.
- Legitimate interests, or your consent where the law requires it: analytics, the replay of the welcome flow and ad measurement, so we can understand and improve the app and know which ads work; and answering your emails.
- Explicit consent: welcome answers that reveal your religious beliefs or touch on your health, which you give by choosing to answer those optional questions. You can withdraw it at any time by writing to us; this does not affect what happened before.
How long data is kept
- On your iPhone: until you delete the item or the app.
- Mixpanel (events, profiles and replays): as long as we need them to understand how the app is used, within the limits of our Mixpanel plan, or until you ask us to delete them.
- RevenueCat: as long as needed to manage your subscription and meet accounting and tax rules.
- Meta, TikTok, Apple, Unsplash and Wikimedia: under their own policies.
- Emails: as long as needed to help you, and for our records.
International transfers
Mixpanel, RevenueCat, Meta, TikTok and Unsplash process data in the United States and other countries; the app sends analytics to Mixpanel’s standard US servers. When data leaves the EEA, the UK or Switzerland, we rely on the safeguards these providers offer, such as the European Commission’s Standard Contractual Clauses or the EU-US Data Privacy Framework.
Your rights and choices
Wherever you live, you can ask us for a copy of your data, or to correct or delete it, by writing to contact@mysavior.app.
- EEA, UK and Switzerland: you have the right to access, correct and delete your data, to restrict or object to its use (including analytics and ad measurement), to data portability, and to withdraw consent. You can also complain to your data protection authority; in France, that is the CNIL.
- California and other US states: you have the right to know what we collect, to delete and correct it, to opt out of its sale or sharing and of targeted advertising, to limit the use of sensitive personal information, and not to be treated differently for using these rights.
We answer within the time the law allows (one month under the GDPR, 45 days under California law). There is no account, so to help us find your records, include the Support ID shown at the bottom of the Account screen, which identifies your RevenueCat record. The app does not display its Mixpanel ID, so also tell us the first name you entered and roughly when you installed the app, and we will look for matching records.
On your iPhone you can also: skip any welcome question; turn off notifications in Settings › Notifications › MySavior; change photo access in Settings › Privacy & Security › Photos; and delete the app to erase everything it stored.
Children
MySavior is not directed to children under 13, and we do not knowingly collect personal data from them; the age choices in the welcome flow start at 13 to 17. If you believe a child under 13 has sent us data through the app, write to us and we will delete it. In countries that set a higher age for consenting to online services, teenagers below that age should use the app with a parent’s permission.
Security
The app connects to the services above over HTTPS, and each of them protects the data it stores with its own security measures. No system is perfectly secure, which is one more reason the app sends only what this policy describes.
Changes to this policy
We will update this policy when the app changes how it handles data, and change the “Updated” date at the top of this page. Significant changes will be summarized here.
Contact
MySavior, contact@mysavior.app. For help with the app itself, see Support; the terms of use cover the rest.