Privacy Policy
MannaQuest is a daily Bible devotional app for iPhone and iPad: read a verse, reflect, pray, complete one small real-world quest, and grow a peaceful Garden. This policy explains exactly what stays on your device, what leaves it, and under which condition.
No account
MannaQuest has no sign-up, no login, and no user account. We do not ask you for a name, an email address, or a phone number. The app and the services described below do use pseudonymous identifiers that can distinguish one app installation or RevenueCat customer from another, but those identifiers are not connected by us to your name or contact details.
What stays on your device
The app's durable copy of everything you create is stored locally on your device using Apple's on-device storage (SwiftData): your journal and reflection entries, prayer notes, conversations with the Lantern Guide, quest completions, streaks, Garden progress, realm progress, and settings. The specific text you choose to send to the Lantern Guide is processed transiently off-device as described below.
We do not sync this content, we do not copy it to a server, and we keep no backup of it. Because there is no account and no server-side copy, deleting the app removes that content from your device and we cannot restore it. If you export a journal entry, the exported file goes wherever you send it through the iOS or iPadOS share sheet and is then under your control.
When devotional content leaves your device: the Lantern Guide (AI)
The Lantern Guide is an optional AI feature that can explain a verse, suggest a short prayer, help you pick a small next step, simplify a quest, or reflect on a journal entry you choose to share. It is the only part of MannaQuest that sends user-authored devotional content to a server of ours. Purchase validation, privacy-filtered analytics, and Apple Ads attribution use separate network services as described below, but they never receive prayer, journal, prompt, or Guide-response text.
When you send a Lantern Guide request, the text you typed in that conversation is sent over HTTPS to our backend endpoint (a Supabase Edge Function), which sends the devotional context needed to answer to Google Gemini and returns the result to your device. The request can include the identifier of the verse or quest you are on and your app language. Every request also carries a random, opaque installation identifier generated by the app, and the backend receives the network address that normally accompanies an HTTPS request. When the app has a Pro entitlement, it also sends RevenueCat's pseudonymous app user identifier so the backend can verify the pro entitlement directly with RevenueCat. Only a successful server-side RevenueCat result is treated as Pro; Free requests do not send that RevenueCat identifier, and the app does not send a self-declared subscription tier.
What the application backend does not store: the content of your messages, the AI's answers, or any journal text. It creates separate, scope-specific salted one-way hashes from the installation identifier, the network address, or the server-verified RevenueCat identifier, as applicable. It stores those opaque hashes with counters, timestamps, and reservation status solely to enforce the Free allowance and technical abuse-prevention circuits. The raw installation identifier, raw RevenueCat identifier, and raw network address are not written to the application database.
Consumed or released request reservations are retained for up to 7 days; an incomplete reserved request is retained for up to 2 days; and aggregate hashed usage buckets are retained for up to 30 days. A daily purge removes records past those limits. Supabase, Google Gemini, RevenueCat, Apple, and other infrastructure providers may process technical logs under their own policies and retention practices; the application-level retention above does not claim to delete a provider's independent security or operational logs.
MannaQuest does not currently claim Apple App Attest as a protection for this flow. App Attest is a possible future hardening measure, not a control represented as active in this release.
Your journal is never sent automatically. A journal entry reaches the Lantern Guide only when you explicitly choose to include that specific text in that specific request. By default, journal text never leaves your device.
Before you can use the Lantern Guide for the first time, MannaQuest shows a disclosure and asks for your consent. The Lantern Guide is a devotional helper, not an authority: it does not speak for God, does not replace a pastor, and is not therapy, medical or legal advice, or an emergency service. In a crisis, contact a qualified professional or your local emergency service.
Notifications
If you allow notifications, MannaQuest schedules local reminders on your device for your daily quest. The reminder text is produced on the device; no notification content passes through a server of ours.
Purchases
MannaQuest Pro is an auto-renewable subscription sold through Apple In-App Purchase. Payment, renewal, cancellation, and refunds are handled by Apple. We use RevenueCat to check and unlock your subscription entitlement; RevenueCat receives Apple's purchase and transaction information plus an anonymous app user identifier it generates. We do not send RevenueCat your name, email address, phone number, or any other contact detail.
Product analytics
MannaQuest sends privacy-filtered product events to PostHog — for example onboarding completion, first quest completion, paywall views, trial starts, purchase results, free-limit hits, and feature-gate hits — along with a release_channel property that separates real App Store usage from internal builds. Events are tied to the anonymous app user identifier only.
Analytics events carry no content. MannaQuest never sends prayer text, journal text, Lantern Guide prompts or answers, personal names, or contact information to analytics. That restriction is enforced in the app by an allow-list, not only by policy.
Ad attribution
If you install MannaQuest after tapping an Apple Search Ads ad, the app forwards Apple's AdServices attribution token so the install can be credited to the campaign, and it reports Apple's privacy-preserving SKAdNetwork conversion values (a single integer, carrying no user data). MannaQuest does not use IDFA, does not show the App Tracking Transparency prompt, does not embed advertising SDKs that track you across apps, and does not sell personal data.
Scripture and content
Bible text ships inside the app from public-domain or freely licensed translations: Bíblia Livre (BLIVRE, Creative Commons Attribution 3.0 Brazil) for Portuguese, the World English Bible (public domain) for English, and Reina-Valera 1909 (public domain) for Spanish. Reading Scripture in the app requires no network call.
Contact
For privacy questions, email support@delx.ai.