Mustaghfir · Help & policies
Privacy Policy
Version 1.0 · Effective July 30, 2026. This policy explains how the Mustaghfir iOS app handles information.
Who operates Mustaghfir
Mustaghfir is operated by the developer identified on its Apple App Store product page. Privacy and support questions may be sent to Mustaghfir.support@gmail.com.
Private on-device activity
- Microphone audio is processed transiently using Apple’s on-device speech-recognition service. Mustaghfir does not upload or retain microphone recordings.
- Listening begins only when you choose Start voice and continues through silence and background use until you tap Pause, unless iOS interrupts or ends audio capture. The iOS microphone indicator remains visible while listening.
- Manual counts, individual local count records, reminder times, language, and appearance preferences remain on your iPhone.
- The core voice and manual counters can be used without creating an account.
Optional account and leaderboard data
- If you choose Apple or Google sign-in, Firebase Authentication processes the account identifier and any name or email the provider supplies.
- The community leaderboard stores your Firebase user ID, aggregate on-device voice total, a fixed “Community member” label, source marker, and server timestamp.
- Leaderboard members can read community rows. Your email, provider identifier, and provider-supplied name are not included in the public leaderboard row.
- Manual counts, raw audio, and individual voice events are never submitted to the community leaderboard.
Optional Halaqah data
- Halaqah stores group names, active invitation codes, internal account identifiers, member display names, daily on-device voice-count progress, completion state, and encouragement records.
- Members of a Halaqah can see one another’s display names and current daily progress. A signed-in person holding an active invitation code can join.
- The creator can permanently delete the Halaqah and all memberships. Other members can leave the Halaqah at any time.
- Encouragements identify the sender to the recipient and appear inside the Halaqah section. The zero-cost release does not send guaranteed background push notifications.
- Manual counts and microphone recordings are never shared with a Halaqah.
Optional referral attribution
- Creating or using a referral link stores an account-private mapping to a random referral node and one invitation code.
- The referral graph stores random node identifiers and ancestor paths used to calculate direct and downstream account joins. Graph edges do not contain names, emails, voice counts, or Firebase user IDs.
- Attribution occurs after sign-in, is first-touch, and cannot be replaced by a later link.
Why this information is used
Information is used only to provide optional account access, publish and rank the community score you request, protect the service from abuse, respond to support requests, and comply with applicable law. Mustaghfir does not sell personal information and does not use it for advertising or cross-app tracking.
Service providers and transfers
Apple provides Sign in with Apple, on-device Speech recognition, notifications, and App Attest. Google provides Google Sign-In, Firebase Authentication, App Check, and Cloud Firestore. These providers may process information in countries where they operate under their own privacy terms and contractual safeguards.
Retention and deletion
- Local data remains until you clear it in Mustaghfir or remove the app.
- Firebase account information and the community row remain while the account is active.
- Profile → Community services → Delete account and server data first requires Apple or Google reauthentication, then removes the leaderboard row, your referral link/private mapping/own graph edge, your Halaqah memberships and encouragements, Halaqah groups and invitations you own, and the Firebase account. Anonymous random node references already embedded in other users’ referral paths may remain.
- Provider security logs and backups follow Apple’s and Google’s applicable retention practices.
Your choices
You may use Mustaghfir without an account, decline microphone or notification permission, disable reminders, sign out, clear local history, or delete the account. Contact us to request access, correction, export, objection, or assistance when you cannot use the in-app controls.
Security, children, and policy changes
Mustaghfir uses Firebase Authentication, owner-only Firestore rules, App Check, Keychain, and iOS data protection. No system is completely secure. The service is not directed to children below the digital-consent age that applies in their country. Material policy changes will be reflected by an updated effective date.
Contact
Questions or privacy requests: Mustaghfir.support@gmail.com. Do not send passwords, voice recordings, Apple or Google security codes, or cryptographic keys.
