Privacy Policy
Last updated: February 9, 2026
At TabTab LLC, we believe your personal data belongs to you. This Privacy Policy explains what information Ritual Lock collects, how we use it, and your rights regarding your data.
1. Information We Collect
Screen Time Data
Ritual Lock uses Apple's Screen Time API to function. This allows us to:
- Display shields on apps you select for blocking
- Track when you complete rituals to unlock apps
- Monitor unlock duration and re-apply shields when time expires
Important: We do not have access to what you do inside blocked apps. We only know that an app was selected for blocking and when it was unlocked.
Device Information
We collect a unique device identifier to:
- Enable cloud sync of your settings and statistics
- Rate-limit API requests to prevent abuse
- Provide customer support when needed
Sign in with Apple (Optional)
If you choose to sign in with Apple, we receive:
- A unique Apple user identifier
- Your email address (or Apple's private relay email if you choose to hide it)
- Your display name (optional)
Sign in with Apple is optional and primarily used to sync your data across devices and recover your account.
Usage Statistics
We collect aggregated usage data including:
- Number of rituals completed
- Types of rituals used
- Unlock session durations
- Streak information
User Preferences
We store your app settings including:
- Default ritual mode selection
- Unlock duration preferences
- Faith tradition (if using Prayer mode)
- Enabled ritual modes
2. Information We Do NOT Collect
We prioritize your privacy and deliberately do not collect:
- Content of your prayers, reflections, or gratitude entries (stored locally only)
- Activity within blocked apps
- Location data
- Contacts or personal files
- Browsing history
- Health data (beyond what you explicitly share for Earned Unlock tasks)
3. How We Use Your Information
We use collected information to:
- Provide and maintain the App's core functionality
- Sync your settings and statistics across devices
- Generate personalized AI content for rituals
- Improve our services and develop new features
- Provide customer support
- Prevent fraud and abuse
4. Data Storage and Security
Local Storage
Sensitive personal content (prayers, reflections, gratitude entries) is stored only on your device using iOS secure storage mechanisms. This data never leaves your device.
Cloud Storage
Settings and statistics may be synced to our secure cloud servers (hosted on Vercel with Neon PostgreSQL database). All data in transit is encrypted using TLS 1.3, and data at rest is encrypted using industry-standard encryption.
5. Third-Party Services
We use the following third-party services:
RevenueCat
For subscription management. RevenueCat processes purchase data according to their privacy policy. We receive subscription status but not payment details.
OpenAI
For generating personalized ritual content. Requests are made through our secure backend proxy. We do not send personally identifiable information to OpenAI.
Vercel & Neon
For API hosting and database services. Both are SOC 2 compliant and follow industry-standard security practices.
6. Data Retention
We retain your data for as long as your account is active or as needed to provide you services. You can request deletion of your data at any time through our contact page. Upon deletion:
- All cloud-stored data will be permanently deleted within 30 days
- Local device data will remain until you uninstall the App
- Some anonymized, aggregated data may be retained for analytics
7. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access: Request a copy of your personal data
- Correction: Request correction of inaccurate data
- Deletion: Request deletion of your data
- Portability: Request your data in a portable format
- Opt-out: Opt out of certain data processing activities
To exercise these rights, contact us.
8. Children's Privacy
Ritual Lock is not intended for children under 13. We do not knowingly collect personal information from children under 13. If you believe we have collected such information, please contact us immediately.
9. International Data Transfers
Your data may be processed in the United States where our servers are located. By using the App, you consent to such transfer. We ensure appropriate safeguards are in place for international data transfers.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes through the App or via email. Your continued use of the App after changes constitutes acceptance of the updated policy.
11. Contact Us
If you have questions about this Privacy Policy or your data, please contact us:
TabTab LLC
12. California Privacy Rights
California residents have additional rights under the California Consumer Privacy Act (CCPA):
- Right to know what personal information is collected and how it's used
- Right to delete personal information
- Right to opt-out of the sale of personal information
- Right to non-discrimination for exercising privacy rights
We do not sell your personal information.