1. Introduction
Welcome to Rehbar ("we", "our", "us"). Rehbar is an Islamic companion app that provides Quran reading, Hadith collections, prayer times, Qibla finder, Duas, and an AI-powered Mufti assistant. This Privacy Policy explains how we collect, use, and protect your information when you use our mobile application (the "App"), available on Android and iOS.
By using Rehbar, you agree to the practices described in this Privacy Policy. If you do not agree, please discontinue use of the App.
2. Information We Collect
Rehbar is designed with privacy in mind. We do not require you to create an account, and we do not collect any personally identifiable information such as your name, email address, phone number, or physical address.
2.1 Automatically Generated Identifiers
When you first open the App, the following identifiers are generated and stored locally on your device:
- User ID — A randomly generated unique identifier (UUID) used to associate your requests with our backend services.
- Device ID — Your device's vendor identifier (iOS) or Android ID, used alongside the User ID for backend communication.
These identifiers are not linked to your personal identity and cannot be used to identify you as an individual.
2.2 Location Data
With your explicit permission, the App collects your device's geographic coordinates (latitude and longitude) for the following purposes:
- Calculating accurate prayer times for your location
- Determining the Qibla direction
- Displaying your neighbourhood, city, and country (via reverse geocoding through OpenStreetMap's Nominatim service)
Location data is stored locally on your device only and is sent to our backend server solely for prayer time calculation. The App may periodically refresh your location in the background to keep prayer times accurate.
2.3 User-Generated Content
When you interact with the AI Mufti feature, the text of your questions and conversation history is sent to our backend server for processing. If you use voice input, your speech is processed by your device's native speech recognition service (which may transmit audio to Apple or Google servers depending on your OS and settings), and the resulting text is transmitted to our backend.
2.4 Search Queries
When you use the Quran or Hadith search features, your search queries are sent to our backend to return relevant results.
2.5 App Usage Data
The following usage data is stored entirely on your device and is never transmitted to our servers:
- Quran reading position, bookmarks, and reading sessions
- Hadith reading progress
- Prayer goals and notification preferences
- Language and theme preferences
- Mufti chat history
- App coins, inventory, and premium status
2.6 Country/Region Code
The App reads your device's locale settings to determine your region code. This is used to provide localised content and is stored locally on your device.
3. How We Use Your Information
We use the limited information we collect exclusively to provide and improve the App's core functionality:
| Data | Purpose |
|---|---|
| User ID / Device ID | Authenticate API requests and prevent abuse |
| Location (lat/lon) | Calculate prayer times and Qibla direction |
| Chat messages | Provide AI-powered Islamic Q&A responses |
| Search queries | Return relevant Quran and Hadith search results |
| Region code | Localise content and prayer calculation methods |
| App Interaction & Crash Logs | Monitor app stability and measure audience engagement (via Firebase) |
We do not sell, rent, or share your personal data with any third party for marketing or advertising purposes.
4. Data Storage & Retention
Rehbar follows a local-first approach. The vast majority of your data — including your reading progress, bookmarks, preferences, and chat history — is stored exclusively on your device using local storage mechanisms (AsyncStorage). We do not maintain user accounts or user profiles on our servers.
4.1 On-Device Storage
All app preferences, reading progress, bookmarks, and conversation history are persisted locally on your device. Uninstalling the App will permanently delete this data.
4.2 Server-Side
Our backend servers (hosted on Amazon Web Services, Mumbai, India) process API requests for prayer times, AI chat, and search queries. Server logs are automatically rotated and deleted every 7 days. We do not maintain a persistent database of user data on our servers.
5. Third-Party Services
The App uses the following third-party services, each with their own privacy policies:
5.1 Google AdMob
We use Google AdMob to display advertisements within the App. AdMob may collect device identifiers, advertising IDs, and usage data to serve and personalise ads. For more information, see the Google Privacy Policy.
5.2 Firebase (Google)
We use Firebase for the following services:
- Firebase App Check — Protects our backend APIs from abuse by verifying that requests originate from our genuine App. This uses Play Integrity (Android) and App Attest/DeviceCheck (iOS).
- Firebase Remote Config — Allows us to update App settings and feature flags without requiring an app update.
- Firebase Analytics — Collects anonymous product interaction data and device identifiers to help us understand audience size and feature usage.
- Firebase Crashlytics & Performance — Collects crash logs and performance metrics to help us quickly identify and fix bugs, ensuring app stability.
We do not use any Firebase user authentication services. For more information on how Google uses this data, see the Firebase Privacy Policy.
5.3 OpenStreetMap Nominatim
We use the Nominatim geocoding service to convert your GPS coordinates into a human-readable address (city, neighbourhood, country). Your coordinates are sent directly to Nominatim's servers. See the OpenStreetMap Foundation Privacy Policy.
5.4 Cloudflare CDN
The App loads the PDF.js library from Cloudflare's CDN for rendering PDF documents. Standard CDN access logs may apply. See the Cloudflare Privacy Policy.
6. Advertising
Rehbar displays advertisements via Google AdMob to support the free availability of the App. The types of ads displayed include banner ads, native ads, interstitial ads, rewarded ads, and app open ads.
Google AdMob and its partners may collect and use data such as your device's advertising identifier, IP address, and general interaction data to serve relevant advertisements. We have configured the App to request a maximum ad content rating of PG (parental guidance) to ensure ads are appropriate for all audiences.
You can opt out of personalised advertising by adjusting your device settings:
- Android: Settings → Google → Ads → Opt out of Ads Personalisation
- iOS: Settings → Privacy & Security → Tracking → disable "Allow Apps to Request to Track"
7. Device Permissions
Rehbar requests the following device permissions, each for a specific purpose:
| Permission | Purpose | Required? |
|---|---|---|
| Location | Prayer times and Qibla direction | Optional |
| Microphone | Voice input for AI Mufti | Optional |
| Speech Recognition | Converting speech to text for AI Mufti | Optional |
| Notifications | Prayer time reminders | Optional |
| Photo Library / Storage | Saving Quran and Hadith cards to your device | Optional |
| System Alert Window (Android) | Displaying full-screen prayer alarms | Optional |
| Internet | Core app functionality | Required |
All permissions except Internet access are optional. The App will function without them, though certain features (such as prayer times or saving images) will be unavailable.
8. Children's Privacy
Rehbar is designed to be suitable for users of all ages. We do not knowingly collect personal information from children under the age of 13 (or the applicable age of consent in your jurisdiction). Since the App does not require account creation and does not collect personally identifiable information, children can use the App safely.
Advertisements displayed via Google AdMob are configured to meet a maximum content rating of PG to ensure they remain age-appropriate. If you are a parent or guardian and believe your child has provided personal information through the App, please contact us and we will take steps to remove such information.
9. Your Rights Under GDPR
If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have certain rights under the General Data Protection Regulation (GDPR):
- Right of Access — You can request information about what data we process about you.
- Right to Rectification — You can request correction of inaccurate data.
- Right to Erasure — You can request deletion of your data. Since your data is stored locally on your device, uninstalling the App will delete it.
- Right to Restrict Processing — You can request that we limit how we use your data.
- Right to Data Portability — You can request a copy of your data in a portable format.
- Right to Object — You can object to our processing of your data.
- Right to Withdraw Consent — You can withdraw consent at any time by revoking app permissions in your device settings.
To exercise any of these rights, please contact us at the email address provided below. We will respond to your request within 30 days.
Legal Basis for Processing
We process the limited data described in this policy on the following legal bases:
- Consent — For location access, microphone access, and notifications (you grant permission explicitly).
- Legitimate Interest — For generating anonymous device identifiers and processing API requests necessary to provide the App's core services.
10. Data Security
We take reasonable measures to protect the data processed by the App. All communication between the App and our backend servers is transmitted over encrypted connections (HTTPS). Our backend infrastructure is hosted on Amazon Web Services (AWS) with industry-standard security practices.
Firebase App Check is used to verify that API requests originate from our genuine App, providing an additional layer of protection against abuse.
However, no method of electronic transmission or storage is 100% secure. While we strive to protect your information, we cannot guarantee its absolute security.
11. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or for legal, operational, or regulatory reasons. When we make changes, we will update the "Effective Date" at the top of this page.
We encourage you to review this Privacy Policy periodically. Your continued use of the App after any changes constitutes your acceptance of the updated policy.
12. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Developer: Mohd Huzaifa
Email: everydaydeen.official@gmail.com
App: Rehbar (com.rehbar.app)
Location: India