Privacy Policy

Last updated: February 9, 2026

At TabTab LLC, we believe your personal data belongs to you. This Privacy Policy explains what information Ritual Lock collects, how we use it, and your rights regarding your data.

1. Information We Collect

Screen Time Data

Ritual Lock uses Apple's Screen Time API to function. This allows us to:

  • Display shields on apps you select for blocking
  • Track when you complete rituals to unlock apps
  • Monitor unlock duration and re-apply shields when time expires

Important: We do not have access to what you do inside blocked apps. We only know that an app was selected for blocking and when it was unlocked.

Device Information

We collect a unique device identifier to:

  • Enable cloud sync of your settings and statistics
  • Rate-limit API requests to prevent abuse
  • Provide customer support when needed

Sign in with Apple (Optional)

If you choose to sign in with Apple, we receive:

  • A unique Apple user identifier
  • Your email address (or Apple's private relay email if you choose to hide it)
  • Your display name (optional)

Sign in with Apple is optional and primarily used to sync your data across devices and recover your account.

Usage Statistics

We collect aggregated usage data including:

  • Number of rituals completed
  • Types of rituals used
  • Unlock session durations
  • Streak information

User Preferences

We store your app settings including:

  • Default ritual mode selection
  • Unlock duration preferences
  • Faith tradition (if using Prayer mode)
  • Enabled ritual modes

2. Information We Do NOT Collect

We prioritize your privacy and deliberately do not collect:

  • Content of your prayers, reflections, or gratitude entries (stored locally only)
  • Activity within blocked apps
  • Location data
  • Contacts or personal files
  • Browsing history
  • Health data (beyond what you explicitly share for Earned Unlock tasks)

3. How We Use Your Information

We use collected information to:

  • Provide and maintain the App's core functionality
  • Sync your settings and statistics across devices
  • Generate personalized AI content for rituals
  • Improve our services and develop new features
  • Provide customer support
  • Prevent fraud and abuse

4. Data Storage and Security

Local Storage

Sensitive personal content (prayers, reflections, gratitude entries) is stored only on your device using iOS secure storage mechanisms. This data never leaves your device.

Cloud Storage

Settings and statistics may be synced to our secure cloud servers (hosted on Vercel with Neon PostgreSQL database). All data in transit is encrypted using TLS 1.3, and data at rest is encrypted using industry-standard encryption.

5. Third-Party Services

We use the following third-party services:

RevenueCat

For subscription management. RevenueCat processes purchase data according to their privacy policy. We receive subscription status but not payment details.

OpenAI

For generating personalized ritual content. Requests are made through our secure backend proxy. We do not send personally identifiable information to OpenAI.

Vercel & Neon

For API hosting and database services. Both are SOC 2 compliant and follow industry-standard security practices.

6. Data Retention

We retain your data for as long as your account is active or as needed to provide you services. You can request deletion of your data at any time through our contact page. Upon deletion:

  • All cloud-stored data will be permanently deleted within 30 days
  • Local device data will remain until you uninstall the App
  • Some anonymized, aggregated data may be retained for analytics

7. Your Rights

Depending on your jurisdiction, you may have the right to:

  • Access: Request a copy of your personal data
  • Correction: Request correction of inaccurate data
  • Deletion: Request deletion of your data
  • Portability: Request your data in a portable format
  • Opt-out: Opt out of certain data processing activities

To exercise these rights, contact us.

8. Children's Privacy

Ritual Lock is not intended for children under 13. We do not knowingly collect personal information from children under 13. If you believe we have collected such information, please contact us immediately.

9. International Data Transfers

Your data may be processed in the United States where our servers are located. By using the App, you consent to such transfer. We ensure appropriate safeguards are in place for international data transfers.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes through the App or via email. Your continued use of the App after changes constitutes acceptance of the updated policy.

11. Contact Us

If you have questions about this Privacy Policy or your data, please contact us:

TabTab LLC

Contact Us

12. California Privacy Rights

California residents have additional rights under the California Consumer Privacy Act (CCPA):

  • Right to know what personal information is collected and how it's used
  • Right to delete personal information
  • Right to opt-out of the sale of personal information
  • Right to non-discrimination for exercising privacy rights

We do not sell your personal information.