Privacy Policy
- Introduction
- Plain-English Summary
- App Store Privacy Label (Apple Disclosure)
- App Tracking Transparency (ATT)
- Information We Collect
- How We Use Your Information
- Legal Basis for Processing (GDPR)
- Third-Party SDKs & Service Providers
- Data Retention
- Your Rights
- Data Deletion
- Children's Privacy
- International Data Transfers
- Security
- Changes to This Policy
- Contact Us
1. Introduction
This Privacy Policy describes how the Bible Widget App: Daily Verse iOS application ("the App", "we", "us", "our") collects, uses, and shares information when you use the App. The App is published by TRY2APP LTD, the data controller for the purposes of this Policy.
The App was built to work with as little personal data as possible. You do not need to create an account. We never ask for your name, email, phone number, or photo library access — the App only uses stock background photos from Pexels, never your own photos.
2. Plain-English Summary
In one paragraph: We don't know who you are. The App stores your chosen verses, background photos, and widget styling locally on your device only — none of that is uploaded to any server. We use Firebase Analytics to understand anonymized, aggregate feature usage (no user ID is ever set), RevenueCat to manage your subscription with an anonymous purchase identifier, and the Pexels API to fetch background photos. We do not access your Photo Library or Camera, we do not use advertising identifiers, and we do not sell data.
3. App Store Privacy Label (Apple Disclosure)
Apple requires every app on the App Store to disclose its data collection practices in the "App Privacy" label shown on each app's App Store listing. The table below mirrors the exact disclosures we make to Apple.
Category A — Data Used to Track You
None.
The App does not link any data collected from this app with data from third-party apps or websites for advertising or tracking purposes. We do not use the Identifier for Advertisers (IDFA) and do not link the AdSupport framework.
Category B — Data Linked to You
The following data is linked to your anonymous App installation (not to your real identity):
- Purchases — Purchase History. Subscription status and product identifier of purchases made through Apple, synced via RevenueCat using an anonymous, RevenueCat-generated identifier. Used for App Functionality (to unlock Premium).
Category C — Data Not Linked to You
- Usage Data — Product Interaction. Aggregated, anonymized analytics events (e.g. which app screens are used, which subscription plan is viewed, how widgets are created) collected via Firebase Analytics. No Firebase User ID is ever set, so these events cannot be tied back to a specific person.
- Diagnostics. Aggregated crash and performance data used for App Functionality and Analytics.
What we do NOT collect
For full transparency, the following data categories Apple asks about are not collected by the App at all:
- Contact Info (email, name, phone number, physical address)
- Health & Fitness
- Financial Info (payment, credit, other financial info)
- Location (precise or coarse)
- Sensitive Info
- Contacts, Browsing History, Search History
- Photos or any Photo Library / Camera access
- Identifiers — Device ID (IDFA or similar advertising identifier)
- Identifiers — User ID (we never set a Firebase User ID or any equivalent)
4. App Tracking Transparency (ATT)
Apple's App Tracking Transparency framework requires apps to request user permission before tracking them across other apps and websites owned by different companies.
The App does not track you across other apps or websites. Because we do not engage in cross-app tracking, we do not present the ATT permission prompt, we do not access or use your IDFA, and we do not enable Google Analytics' ad-personalization signals — this is disabled by default in the App's configuration.
5. Information We Collect (Detailed)
Your Widgets (On-Device Only)
When you create a widget, the App stores the verse text, reference, chosen background photo, and styling (font, color, alignment) in a local App Group container on your device, shared only between the App and its Home Screen/Lock Screen widget extension. This data never leaves your device — we have no server that stores your widgets, your chosen verses, or your background photo selections.
Analytics Events (Firebase Analytics)
We use Firebase Analytics (Google) to understand anonymized, aggregate feature usage — for example, how many people complete onboarding, view the paywall, or create a widget. Events we log include: onboarding_started, onboarding_completed, paywall_viewed, subscription_selected, purchase_started, purchase_completed, purchase_failed, purchase_restored, widget_creation_started, widget_created, widget_type_selected, widget_size_selected, unsplash_photo_selected, and notification_enabled. These events may include non-identifying parameters such as which subscription period (weekly/yearly) or widget size/mode was selected. We never call Firebase's setUserID method, and we do not integrate Firebase Authentication, Storage, or Messaging.
Remote App Configuration (Firebase Firestore)
The App reads a single, app-wide configuration document to control which paywall presentation it uses (for example, whether the paywall appears right after onboarding or only when you try to create a second widget). This document contains only generic on/off flags — it does not contain your data, is not linked to you or your device in any way, and the App does not write anything to it. There is no user sign-in involved (we do not use Firebase Authentication).
Subscription and Purchase Data (RevenueCat)
When you purchase a Premium subscription, Apple processes the transaction entirely. We use RevenueCat to verify and sync your purchase status. The data we receive is limited to:
- An anonymous purchaser identifier generated by RevenueCat for your installation
- The product identifier you purchased (
biblewidget.premium.weeklyorbiblewidget.premium.yearly) - Purchase status (active, expired, refunded) and expiration date
We never see your Apple ID, credit card number, billing address, or any other payment information — that data stays with Apple.
Background Photos (Pexels API)
When you browse or search for a widget background, the App sends your search text (e.g. a category name like "peace" or a free-text query you type) to the Pexels API to fetch matching photos. Pexels may log this request on their side under their own privacy policy. We do not send any personal information alongside these requests. Once you pick a photo, it is downloaded and cached locally on your device — it is not re-uploaded anywhere.
Local Notifications
If you enable the optional daily verse reminder, it is scheduled entirely on your device using Apple's local notification framework. No data about this preference is sent to any server we operate.
Diagnostic & Performance Data
To keep the App stable we may receive aggregated crash logs and performance metrics through Firebase Analytics/Crashlytics-style diagnostics. This data is not linked to your identity.
6. How We Use Your Information
We use the limited information we collect for the following purposes only:
- To display the widgets, verses, and background photos you've chosen
- To validate and sync your subscription status through Apple's StoreKit and RevenueCat
- To fetch background photos you request from Pexels
- To understand, in aggregate and anonymized form, how the App's features are used, so we can improve them
- To determine which paywall presentation the App should use, via a non-personal remote configuration flag
- To prevent fraud, abuse, and violations of our Terms of Service
- To comply with legal obligations
We do not sell your personal information, we do not share it with advertisers, and we do not run any advertising in the App.
7. Legal Basis for Processing (GDPR)
If you are in the European Union, United Kingdom, or another jurisdiction with comparable law, we process data under the following legal bases:
- Performance of a contract (Art. 6(1)(b) GDPR) — processing necessary to provide the App and fulfill purchases.
- Legitimate interests (Art. 6(1)(f) GDPR) — anonymized analytics, App stability, fraud prevention, and security.
- Legal obligation (Art. 6(1)(c) GDPR) — retention of purchase records for tax and accounting.
8. Third-Party SDKs & Service Providers
The App includes the SDKs listed below, each publishing a privacy manifest (PrivacyInfo.xcprivacy) as required by Apple.
Firebase Analytics (Google)
Purpose: anonymized, aggregate product analytics. Operator: Google LLC. No Firebase User ID is set; Authentication, Storage, and Messaging are not integrated.
Firebase Firestore (Google)
Purpose: reading a single, non-personal app configuration document (paywall on/off flags) so we can adjust the App's paywall presentation without an App Store update. Operator: Google LLC. No user data is written to or read from Firestore, and there is no sign-in involved.
Privacy policy: https://firebase.google.com/support/privacy
Privacy policy: https://firebase.google.com/support/privacy · Google Privacy Policy
RevenueCat
Purpose: subscription purchase validation, linking your Apple transaction to an anonymous purchaser identifier. Data: anonymous ID, Apple transaction identifier, subscription state.
Privacy policy: https://www.revenuecat.com/privacy
Pexels
Purpose: sourcing background photos for widgets. Data: your search query text when you browse or search for photos.
Privacy policy: https://www.pexels.com/privacy-policy/
Apple
Purpose: App Store distribution, StoreKit billing, local notifications, and system services. Apple processes all payments directly; we never see your payment instrument.
Privacy policy: https://www.apple.com/legal/privacy/
9. Data Retention
- Your widgets, verses, and background photos: Stored only in the App Group container on your device. Removed automatically if you uninstall the App.
- Anonymous analytics events: Retained by Firebase per Google's standard Analytics retention settings, in aggregated/anonymized form.
- Subscription and purchase records: Retained by RevenueCat for the duration of your subscription plus the period required by tax and accounting law.
10. Your Rights
European Union and United Kingdom (GDPR / UK GDPR)
- Right to access, rectify, or erase personal data we hold about you
- Right to restrict or object to processing
- Right to data portability
- Right to lodge a complaint with a supervisory authority
California, USA (CCPA / CPRA)
- Right to know, delete, and correct personal information
- Right to opt out of sale or sharing (we do not sell or share)
- Right to non-discrimination for exercising your privacy rights
How to Exercise Your Rights
Because most App data lives only on your device and our server-side records are tied to anonymous identifiers, contact us at [email protected] with the subject line "Privacy Request — Bible Widget App", and we will assist you within the timeframe required by applicable law.
11. Data Deletion
Because your verses, photos, and widget styling are stored only on your device, uninstalling the App deletes that data immediately. To also remove the anonymous subscription/analytics records associated with your installation from our third-party providers, email [email protected] with the subject "Bible Widget App — Delete my data". We confirm receipt within 2 business days and complete deletion within 30 days.
12. Children's Privacy
The App is not intended for children under 13 years of age (or the minimum digital consent age in your jurisdiction). We do not knowingly collect personal information from children. If you are a parent or guardian and believe a child has provided personal information to us, contact us at [email protected].
13. International Data Transfers
Our third-party service providers (Google Firebase, RevenueCat, Pexels) operate from data centers in the United States and elsewhere. By using the App, you consent to the transfer of the limited, anonymized information described above to these regions for processing, under appropriate safeguards including Standard Contractual Clauses where applicable.
14. Security
We rely on industry-standard measures provided by our infrastructure partners, including TLS encryption for all data in transit and access controls on third-party dashboards. No system is perfectly secure. If you become aware of a security incident, contact us at [email protected].
15. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes we will update the "Last updated" date above and, where appropriate, notify users via an in-app message. Continued use of the App after changes are posted constitutes acceptance of the updated policy.
16. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or your data, contact us at:
Email: [email protected]
Subject: Bible Widget App — Privacy Inquiry
Data controller: TRY2APP LTD
We typically respond within 7 business days.