Privacy Policy
Our Commitment to Your Privacy
Conversa is built on a simple promise: We Secure The Sacred. Your prayers are deeply personal — between you and God — and we treat them that way. We will never sell your prayer data, share it with advertisers, or use it to train AI models. This Privacy Policy explains clearly what we collect, why we collect it, and how we protect it.
Conversa LLC ("Conversa," "we," "us," or "our") is a Massachusetts limited liability company. This Privacy Policy governs your use of the Conversa mobile application (the "App") and our website at getconversa.app (the "Site"). Conversa is currently available to users in the United States only; international availability is planned for a future release.
1. Information We Collect
1.1 Account Information
When you create an account, we collect:
- Your email address
- Your password (stored in hashed form using industry-standard algorithms — we never see it in plaintext)
1.2 Prayer Content and Derived Data
When you record a prayer, here is exactly what happens:
- Voice recording: Your voice is recorded locally on your device and transmitted securely over TLS to OpenAI's API for transcription using OpenAI Whisper. Audio files are never stored on Conversa servers. The only exception is a temporary local hold on your device if a transcription error occurs; once you confirm or cancel, the audio is permanently deleted from your device.
- Prayer body text (encrypted at rest): The resulting text transcription — your prayer as written — is stored in our database and encrypted at rest using Supabase Vault, a managed server-side key vault. This encryption is fully in place, including backfill of all prayers created before it was introduced.
- Derived content (AI-generated, stored separately): AI-generated titles, summary bullets, and category tags associated with your prayers are stored separately from your encrypted prayer body. These are the AI's interpretation of your prayer, not your prayer text itself. We treat them as sensitive and disclose them as a distinct category. Encryption of these derived surfaces is on our roadmap and is not yet in place.
- Embeddings and structural metadata: To support search and the Ask Conversa feature, we store derived embeddings of your prayer content alongside limited structural metadata (creation dates, categories, sentiment classifications). These are not your original prayer text, but they can reflect meaning. We treat them as sensitive. We ran an adversarial extraction probe before launch to measure how recoverable original content would be from embeddings alone.
1.3 Usage Analytics
We collect anonymized usage data to understand how people use the App and improve it. This includes:
- Which features you use and when
- How frequently you open the App
- General interaction patterns (e.g., whether you complete onboarding)
This data does not include the content of your prayers and is never linked to your prayer transcriptions.
1.4 Payment Information
If you subscribe to Conversa Premium through the App, your payment is processed by Apple through your App Store account. We never receive or store your payment card details. Apple provides us only with your subscription status and a transaction identifier so we can grant and maintain your Premium access.
If you subscribe through our website, payment is processed through Stripe. We do not store your credit card number, billing address, or any financial credentials. Stripe's privacy policy governs the handling of your payment information and can be found at stripe.com/privacy.
1.5 Device and Technical Information
We may collect basic technical information necessary to operate the App, including operating system version and crash or error logs. We do not collect precise location data, contacts, or other sensitive device information.
2. How We Use Your Information
We use the information we collect solely to operate and improve Conversa:
- To provide and maintain your account and prayer journal
- To generate AI-powered prayer summaries and insights
- To support Ask Conversa responses grounded in your prayer context
- To process your subscription payments
- To send you important service-related communications (e.g., receipts, account security notices)
- To send you optional emails about your prayer journey (you may opt out at any time)
- To diagnose technical issues and improve app performance
- To comply with legal obligations
We do NOT use your information to:
- Sell or rent your data to third parties
- Target you with advertising
- Build profiles for advertising networks
- Train AI models on your prayer content
3. How We Share Your Information
We do not sell your personal information. We share information only with the service providers necessary to operate Conversa, and only to the extent required:
- Apple — Processes subscriptions purchased within the App. Apple provides us with your subscription status and transaction identifiers so we can grant and maintain Premium access. No prayer content is sent to Apple. See Apple's privacy policy at apple.com/legal/privacy.
- Supabase — Database hosting, authentication, and server-side encryption infrastructure. Your account data, encrypted prayer body text, derived content, and embeddings are stored on Supabase servers. Supabase is SOC 2 compliant.
- OpenAI — Your voice recording (audio) and resulting prayer text are sent to OpenAI's API for transcription (Whisper) and for generating AI titles, summaries, categories, and Ask Conversa responses. API inputs and outputs are not used to train OpenAI models by default. However, OpenAI may retain API inputs and outputs for a limited period for abuse monitoring under their standard API policy. We have not currently enabled a zero-data-retention contract with OpenAI; this is on our evaluation list for v1.0. See OpenAI's privacy policy at openai.com/policies/privacy-policy.
- Anthropic — Your prayer content may be processed by Anthropic's Claude API to support AI-generated summaries, insights, and Ask Conversa responses. Anthropic does not use API data to train its models. See Anthropic's privacy policy at anthropic.com/privacy.
- Stripe — Payment processing for Conversa Premium subscriptions. No prayer content is sent to Stripe. Stripe is PCI-DSS compliant.
- SendGrid — Transactional email delivery, including trial and account-related notifications. Trial-related emails do not include prayer content. If a Weekly Summary email feature is enabled in a future release, SendGrid will receive the rendered email fields for that email, which may include AI-generated prayer titles or summary bullets (not full prayer bodies).
- Mixpanel — Anonymized, non-prayer usage analytics processed solely to improve the App.
- Firebase (Google) — Crash and error reporting and push notification delivery. Firebase receives technical diagnostic data and, if you enable notifications, a device push token. No prayer content is sent to Firebase. See Google's privacy policy at policies.google.com/privacy.
We may also disclose information if required by law, court order, or to protect the rights and safety of Conversa, our users, or others.
4. Data Security
We take the security of your prayer data seriously. Below is an honest and precise account of our security posture.
4.1 Encryption at Rest
The body text of your prayers is encrypted at rest in our database using Supabase Vault, a managed server-side key vault. This encryption is fully in place across all prayers, including those created before it was introduced. AI-generated titles, summary bullets, and category tags are stored separately from the encrypted prayer body and are not yet encrypted at rest; encryption of these derived surfaces is on our roadmap.
4.2 Server-Side Decryption and Audit Logging
Our servers hold the encryption keys and can decrypt your prayer body text when needed to provide the product. Decryption paths are purpose-tagged and audit-logged: each decryption event records which user, which content, which feature triggered the decryption, and when. The decryption paths cover features you actively use: viewing your prayers, generating titles and summaries when you save a prayer, generating weekly summaries if enabled, and grounding Ask Conversa responses against your prayer history.
4.3 What We Are Not
Conversa is not end-to-end encrypted and is not zero-knowledge. We do not offer client-side encryption or client-held keys. Our servers can decrypt your prayer body content when needed for product features. We believe this honest framing is more trustworthy than overstating our security posture.
4.4 Embeddings
Derived embeddings used for search and Ask Conversa are stored in queryable form and are not encrypted at rest. They are not your original prayer text, but they can reflect the meaning of what you prayed. We treat them as sensitive and conducted an adversarial extraction probe before launch. This is a stated trade-off we accept in order to deliver search and AI retrieval functionality.
4.5 Operational Audit Metadata
Internal audit metadata — such as timestamps, purpose tags, feature names, and success or failure outcomes — remains queryable so we can investigate safety and reliability issues without reading your prayer content by default. This is operational metadata, not user content.
4.6 Transport Security
All data in transit between the iOS app, Conversa edge functions, and Supabase is encrypted using TLS 1.2 or higher.
4.7 Additional Safeguards
- Passwords are hashed using industry-standard algorithms — we never store plaintext passwords
- Audio recordings are never stored on Conversa servers
- Access to production systems is limited to authorized personnel
No method of transmission or storage is 100% secure. If we experience a security breach that affects your data, we will notify you as required by applicable law.
5. Data Retention
Encrypted prayer content is retained while your account is active.
You may delete your account at any time from within the App under Settings. Deleting your account permanently removes your account and all associated prayer data, including transcriptions, AI-generated titles and summaries, categories, and embeddings. All such data is removed from our systems within 30 days of deletion.
Individual prayers that you delete are removed from the database at the time of deletion.
You may also contact us at support@getconversa.app with any data deletion or privacy request.
6. Your Rights and Choices
6.1 Access and Correction
You may access and update your account information at any time within the App under Settings.
6.2 Account Deletion
You may delete your account at any time from within the App under Settings. Deletion permanently removes your account and all associated prayer data, and that data is removed from our systems within 30 days. If you prefer, you may also request deletion by contacting us at support@getconversa.app.
6.3 Communications Opt-Out
You may opt out of non-essential email communications at any time by clicking "Unsubscribe" in any email or by contacting us at support@getconversa.app. You will still receive essential service communications (e.g., receipts, security notices).
6.4 California Residents (CCPA)
If you are a California resident, you have the right to: (1) know what personal information we collect and how it is used; (2) request deletion of your personal information; (3) opt out of the sale of your personal information (we do not sell personal information); and (4) not be discriminated against for exercising these rights. To exercise your rights, contact us at support@getconversa.app. You may exercise your deletion right directly in the App under Settings, or by contacting us at the address above.
7. Children's Privacy
Conversa is not directed to children under the age of 13. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us at support@getconversa.app and we will promptly delete it.
8. Third-Party Links
The App may contain links to third-party websites or services. We are not responsible for the privacy practices of those third parties. We encourage you to review the privacy policies of any third-party services you access.
9. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. If we make material changes, we will notify you by email and by displaying a prominent notice in the App before the changes take effect. Your continued use of Conversa after changes become effective constitutes your acceptance of the updated policy.
10. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy, please contact us:
Conversa LLC
Email: support@getconversa.app
Website: getconversa.app
State of Formation: Massachusetts
We take privacy concerns seriously and will respond within 5 business days.