Privacy Policy
Bedless Fajr is an alarm clock for the Fajr prayer, published by Zakariya Telitel (France), operating as Telitouch. This policy explains what happens to your data. It is short, because the app handles very little of it, and it is precise, because that little matters.
The Short Version
- No account, no email, no tracking, no ads, no analytics.
- Your location is used to compute your prayer times. We do not store it.
- The photo you take to end the alarm is sent for verification. We do not store it. The verification provider keeps it for up to 30 days in abuse-monitoring logs, then deletes it, and does not train on it.
- Your streak, history and settings live on your phone only.
1. Who Is Responsible
Zakariya Telitel, individual developer, France. Contact: support@telitouch.app
2. What Is Processed, and Why
Location (when in use)
Fajr moves every day and depends on where you are. When you allow location access, the app reads your coordinates about once a day and sends them, with the date and your chosen calculation method, to a prayer-time service: the Aladhan API (Islamic Network, api.aladhan.com). No identifier is sent with them. Your coordinates are kept on your device so we do not ask again; we do not store them on our servers, and we never track your movements. Aladhan does not publish a privacy policy; like any web service, it may log the requests it receives, including your IP address. If you prefer, deny location access and choose your city from a list: only that city's fixed coordinates are then used.
Photo verification
To end the alarm you photograph a target object. The photo is sent over an encrypted connection to our server function (hosted on Google Cloud / Firebase, United States), which forwards it to an AI vision service, the OpenAI API, with a single question: does this photo show the target? The verdict comes back; the photo does not stay with us. We keep no copy and build no gallery. According to OpenAI's API data policy, data sent to the API is not used to train its models, and inputs may be retained for up to 30 days in abuse-monitoring logs before deletion. We do not ask OpenAI to store the request beyond that.
Anonymous identifier
The app signs in anonymously (Firebase Authentication): a random identifier is created on your device, with no name, email or Apple ID attached. Our server uses it for one thing, limiting abuse: each device may request a bounded number of photo verifications per day. For that, one record per identifier is kept on our server, containing the current date and a count. It is deleted automatically 30 days after its last update. Firebase also keeps the anonymous account itself (identifier, creation and last sign-in dates) until it is deleted. Deleting the app deletes the identifier from your device; nothing on our side can link it back to you.
Technical logs
Like any hosted service, our server function produces technical logs (IP address, time, response code) kept by Google Cloud for up to 30 days. They contain no photo and no location.
Subscriptions
Purchases are handled entirely by Apple through your Apple Account. We never see your payment details. To know whether your subscription is active, the app uses RevenueCat, a subscription-management service: it receives from Apple the transaction identifiers of your purchase, together with a random identifier for your device, and returns the subscription status. No name, email or payment detail is involved. Manage or cancel your subscription at any time in your Apple Account settings.
On your device only
Your streak, your record, your daily history, your chosen city, your calculation convention, your alarm days and your alarm sound never leave your phone. Deleting the app deletes them.
3. What We Do Not Do
We do not sell data. We do not share it with advertisers. We use no advertising or analytics SDK. We do not track you across apps or websites, and we do not request the "App Tracking Transparency" permission because there is nothing to track.
4. Who Processes Data for Us, and Where
- Google (Firebase Authentication, Cloud Functions, Firestore, Cloud Logging), United States (us-central1): hosting, anonymous sign-in, the abuse-limit record, technical logs.
- OpenAI (API), United States: photo verification.
- Islamic Network (Aladhan API): prayer-time calculation from coordinates.
- Apple: purchases and subscriptions.
- RevenueCat (United States): subscription status, from Apple's transaction identifiers and a random device identifier.
Transfers outside the European Union rely on the safeguards these providers offer, including standard contractual clauses; see their respective policies.
5. How Long Data Is Kept
- Photos: not kept by us; up to 30 days in OpenAI's abuse-monitoring logs.
- Location: not kept by us.
- Abuse-limit record: deleted 30 days after its last update.
- Technical logs: up to 30 days (Google Cloud).
- Subscription status (RevenueCat): for as long as the subscription exists, then under RevenueCat's own retention policy.
- Everything else: on your device, until you delete the app.
6. Your Rights
Under the GDPR you may request access to, correction or deletion of personal data we hold, and you may complain to your supervisory authority (in France, the CNIL). Because we hold nothing that identifies you, most requests are met by deleting the app. For anything else, write to support@telitouch.app; we answer within 30 days.
7. Children
Bedless Fajr is not directed at children under 13, and we knowingly process no personal data from them.
8. Changes
If a new feature changes what is processed (for example accounts, or usage analytics), this policy and its effective date are updated before the feature ships.