At a glance
- MosqueMe explains the data it collects for accounts, mosque features, safety, support, analytics, and optional sensitive features.
- Account deletion uses a 30-day recovery window before hard-delete processing starts.
- Hayd and Nifas, AI moderation, voice recordings, location, export limits, and third-party providers are described in the policy.
- Sensitive areas (health, location, AI moderation, and third-party provider categories and examples) are identified clearly; everything else is grouped by data category rather than by the specific in-app feature that collects it.
MosqueMe Privacy Policy
Last Updated: 23 June 2026 Document Version: 1.1
This Privacy Policy explains how MosqueMe collects, uses, shares, stores, protects, retains, exports, and deletes personal data when you use the MosqueMe mobile application, MosqueMe websites, help and legal pages, donation pages, payment checkout flows, admin tools, and related features.
MosqueMe is provided by Ahmad Kawsar. In this policy, "MosqueMe", "we", "us", and "our" refer to that controller. You can contact us about privacy matters at privacy@mosqueme.com and about general support at support@mosqueme.com.
This policy is intended to support:
- UK GDPR and the Data Protection Act 2018
- EU GDPR where applicable
- Apple App Store review and App Privacy disclosure requirements
- Google Play privacy policy and Data safety disclosure requirements
MosqueMe is not currently actively offered in the European Economic Area (EEA). If we later actively offer MosqueMe in the EEA, we will review any additional EU/EEA representative, age-consent, sensitive-data, store-disclosure, and local-law requirements before that launch and update this policy where needed.
Please read this policy together with any in-app consent prompts, donation-page notices, feature notices, and the store privacy disclosures for the version of the app you use.
1. Scope
This policy applies to the MosqueMe mobile app, MosqueMe websites, donation pages such as donate.mosqueme.com, help and legal pages, admin tools, and the tools, storage, notifications, moderation, analytics, support, and account features we use to run them.
It covers data we collect:
- when you create, use, secure, deactivate, export, or delete an account
- when you use mosque, worship, community, or admin features in the App
- when you use a MosqueMe donation page, Pay Now flow, pledge flow, Gift Aid flow, Stripe checkout, wallet payment option, receipt flow, or donation-support workflow where available
- when you upload files, images, documents, or audio
- when you contact support, report a problem, or send feedback
- when the App or website stores limited data locally on your device or browser
2. Personal Data We Collect
Depending on the features you use, we may collect the following categories of personal data.
Some features are named explicitly below where the law requires it (Sections 2.5, 2.9, 5, and 6). Others are grouped by data category rather than by the specific feature that collects them.
2.1 Account, Identity, and Authentication Data
- your MosqueMe account number, role, account status, and mosque linkage state
- display name, phone number, email address, and selected mosque or mosque history
- optional date of birth if you choose to add it in your profile or where a feature asks for age or eligibility information; date of birth is not required for general account creation
- sign-in details when you use Apple Sign In, Google Sign In, Microsoft Sign In, phone authentication, or other supported sign-in flows
- sign-in session, remembered device, and login history records used for sign-in and security
- records of your acceptance of terms, privacy, and related compliance notices
Phone number is collected when you create or complete a signed-in verified mosque membership account. We verify the number by SMS and use it to authenticate and secure the account, activate your selected mosque membership, support trusted-device and step-up verification, support account recovery, reduce duplicate or abusive accounts, maintain phone-number security mappings, and support mosque member or service workflows where a reachable contact is needed. Phone number is not required for Guest Mode access to public mosque timetable information.
Gender is not required for account creation, mosque selection, phone verification, general mosque membership setup, or core app access. If you skip gender during signup, no gender value is submitted or stored during signup. Gender is requested or confirmed only if you later choose an optional gender-specific feature or mosque-managed workflow where gender is relevant.
2.2 Profile, Mosque, and Community Data
- profile details you choose to add, such as optional date of birth, profile preferences, and mosque preferences
- mosque membership details, mosque selection, mosque-linked activity, mosque-admin or member role information, and optional confirmed gender only where you choose a gender-specific feature or mosque-managed workflow where gender is relevant
- confirmed gender used only when voluntarily provided or confirmed for gender-specific app features or mosque-managed workflows, such as gender-sensitive mosque services, Hayd and Nifas eligibility, same-gender partner matching, and non-advertising Ummah or community campaign eligibility
- mosque feed posts, community notices, fundraiser posts, service information, and related mosque content created or managed by authorised Mosque Admins
- service requests, fundraiser pledge records, event registrations, support messages, feedback, bug reports, reports, and moderation content you choose to send
- account-support, safety-review, technical-support, and admin-review records handled by authorised MosqueMe central admins through web-based admin tools
2.3 Worship, Reading, Learning, and Engagement Data
- worship-activity records and related preferences, such as prayer check-ins, reminders, counters, and shared or partner-based activity records, together with any privacy preferences linked to those activities
- reading and learning progress, saved state, bookmarks, and completion history across religious-reading features
- prayer calculation and mosque timetable preferences
- event-engagement records linked to your account, such as lesson or audience engagement signals
- community feed engagement records, such as post view, share, reaction, registration, and fundraiser contribution intent counts, plus limited viewer, sharer, reactor, registrant, or contribution-intent identifiers shown to authorised Mosque Admins where the feature provides admin-only engagement details
- voice-recording preferences, local recordings, and derived learning or quality summary metrics
In the current version of MosqueMe, a limited learning summary derived from voice-recording analysis may be saved to your account after you use supported voice-learning features. It can include progress stage, accepted learning counts, overall accuracy results, and similar high-level indicators. This summary is designed not to include your raw voice recordings or your full detailed voice-learning history.
Because MosqueMe is a faith-based app, some data you choose to provide or generate may reveal religious belief, religious practice, mosque affiliation, or worship activity.
2.4 Mosque Services and Fundraiser Interaction Data
- fundraiser interaction records, such as registrations, pledge or contribution preference selections, mosque-confirmed offline status fields, and related participation records
- service request, booking, and service-draft details, such as contact details, optional confirmed gender where relevant for mosque service handling, preferred dates, messages, linked mosque information, and mosque-handled fee or status information where relevant
- Pay Now and donation-page records where enabled, such as campaign ID, mosque ID, donation amount, selected fees or tips, donor display choices, public-message choices, payment status, receipt status, Stripe session or payment reference, refund or dispute status, and related audit records
Where Pay Now is not enabled, fundraiser and service amounts shown in the app are provided for information, notice, request, pledge-status, and mosque workflow purposes only. Where Pay Now donations are enabled, payments are processed by Stripe or another payment provider shown at checkout. MosqueMe may store donation records and payment references, but MosqueMe does not store full card numbers or card security codes. If a mosque independently includes bank-transfer details for its own external arrangements, those details are provided by the relevant mosque admin for reference only and are intended to be the mosque's registered charity or official mosque bank account details, not MosqueMe's bank details. Mosque admins are responsible for ensuring that any bank details shown for mosque services belong to the mosque, its registered charity, or its official mosque bank account. Mosque admins may record or confirm external fundraiser pledge or contribution information or mosque service status information, such as selected amount, amount the mosque marks as received, paid/unpaid status, or similar mosque-handled records.
2.5 Sensitive or Special Category Data
Some features may involve data that is sensitive under UK GDPR or EU GDPR, including:
- faith-linked use of the app that can reveal religious belief, worship activity, or mosque affiliation
- Hayd and Nifas feature data, such as consent records, feature-specific age or eligibility confirmation, episode and status history, and related reminders and privacy settings
- free-text information you choose to submit that may reveal health information, religious practice, or other sensitive matters
We treat Hayd and Nifas data as highly sensitive. Access is limited to the people and app areas that need it, and it is also controlled by feature privacy settings. Where required, we rely on your explicit consent before using this type of data. See Section 5 for additional Hayd and Nifas-specific safeguards and disclosures.
2.6 Images, Audio, Documents, and Other Uploads
- images you attach through supported upload or post-management flows where your role allows that feature
- PDFs and other files uploaded through supported service, learning, or admin workflows
- audio you record or save through supported in-app features; My Adhaan recordings are stored locally on your device and are not uploaded to MosqueMe servers in the current app version
Where supported, images are selected from your device library or system picker.
When in-app speech-recognition verification is used, speech recognition may be processed on-device or by Apple, Google, or other device speech services depending on your platform, settings, and service availability.
We do not generate biometric identifiers from voice recordings for the purpose of uniquely identifying you.
2.7 Device and App Data
- device identifiers provided by your operating system, including Android's device identifier and Apple's app-vendor identifier, used for account security, session management, fraud prevention, and support
- device model, manufacturer, brand, operating system, app version, language, time zone, and connectivity type
- notification or iPhone Live Activity status and related tokens when notifications are enabled or registered
- device details used for account security, session management, and support
We do not use these identifiers for cross-app advertising or ad tracking.
2.8 Usage, Analytics, Diagnostics, and Support Data
- app events and feature interaction events needed to operate, secure, and improve the service
- analytics and performance signals used inside MosqueMe where enabled in the app build
- crash data, error logs, and performance diagnostics
- moderation and safety-operation metadata, such as field category, automated decision result, reason code, provider used where applicable, confidence where available, whether a case was flagged for human review, review outcomes where recorded, and related timestamps
- support and bug-report details, including message content and troubleshooting details such as screen name, app version, device type, network status, error summaries, and similar details needed to investigate the issue
2.9 Location Data
- precise or approximate location if you grant location access and use features that need it, such as direction-finding, location-based prayer calculations, and Mosque Finder nearby mosque search
- location data may also be cached locally on your device for feature continuity
- optional postcode or postal-code text that you enter in mosque selection, which may be sent to a postcode lookup provider to estimate nearby mosques
If you use Mosque Finder and grant location access, the app may use your current latitude and longitude to request nearby registered mosques from MosqueMe's backend, sort results by distance, and show approximate distance from you. We do not use Mosque Finder location to automatically change your saved mosque. You choose whether to save a mosque.
If you turn on Mosque Finder Location suggestions and your device has already granted location access while using the app, MosqueMe may check your location while the app is open or returning to the foreground so it can suggest Mosque Finder when you appear to be far from your saved mosque. This check is designed to run without blocking the home screen. We do not require background location for normal use of the app.
If you enter a postcode or postal code in mosque selection, MosqueMe uses it only to sort nearby mosque results. We do not save that postcode or postal code to your profile. The app may keep the lookup result in temporary app memory during your current session so repeated lookups are faster.
2.10 On-Device and Local Storage Data
The app stores some information locally on your device, including:
- device or session identifiers
- sign-in state and encrypted app session data
- app preferences such as language, theme, tracker visibility, and onboarding flags
- limited caches for feature speed and continuity, such as recent location coordinates, Mosque Finder results or suggestion preferences, reading state, or offline-ready content
- device-only local Postage post-history snapshots for fast loading, offline continuity, and history on that device, where supported
You can use MosqueMe in Guest Mode without creating an account. In Guest Mode, your guest session, selected mosque, and guest preferences are stored on your device. You can use Mosque Finder to choose a mosque; if you use location or postcode search, MosqueMe uses that information to show nearby registered mosques. The app still fetches public mosque and prayer timetable data needed to show prayer times, and may keep limited local caches on your device for app performance and continuity.
On Apple devices, some sign-in state and technical account identifiers may also be stored in a shared MosqueMe storage area used by MosqueMe widgets, extensions, or similar app features on the same device.
Local Postage history is scoped to your user account and mosque, capped, and may be kept for up to 360 days. It does not store payment card details, payment methods, private admin notes, full registrant lists, full contributor lists, full viewer/reactor/sharer lists, raw user ID lists, or image bytes. Signing out or switching accounts does not expose one user's local Postage history to another user.
Credentials sit in secure storage; preferences and caches sit in regular app storage. Removing the app, clearing app storage, signing out, or deleting your account may remove some or all local copies, depending on how your device handles app data.
2.11 Donation, Payment, and Gift Aid Data
Where MosqueMe donation pages, Pay Now, Stripe checkout, Apple Pay, Google Pay, or similar payment options are available, we may collect and process donation-related data such as:
- recipient mosque, charity, or charitable organisation name, mosque ID, campaign ID, campaign title, campaign link, campaign type, and campaign status;
- donation amount, currency, MosqueMe Platform Fee, Optional MosqueMe Tip, Payment Processing Fee or estimate, total amount, payment status, payout status, refund status, chargeback status, and dispute status;
- donor name, email address used for receipts or payment confirmation, optional phone number, public anonymity choice, mosque-admin name-sharing choice, public donor-list choice, and donor-message choice;
- message of support or dua where you choose to write one, and whether you choose to share it with the mosque admin or show it publicly after moderation;
- Stripe checkout session ID, payment intent ID, receipt URL, payment reference, connected account ID, and limited payment-provider metadata needed to match the payment to the campaign;
- device, browser, IP, security, anti-fraud, webhook, logging, and audit information connected with the donation flow;
- records of acceptance of donation terms, refund guidance, privacy notices, and any donation-page consent or declaration shown at checkout; and
- refund, payment-support, suspected fraud, chargeback, dispute, complaint, regulatory, legal, or audit records connected with a donation.
If you choose Gift Aid, we may collect additional Gift Aid declaration data for the receiving mosque, charity, or charitable organisation, including full name, home address, postcode, declaration text, recipient name, donation reference, donation date, donation amount, and related audit records. We collect home address and postcode for Gift Aid only where Gift Aid is selected or required for a valid Gift Aid record. We do not use Gift Aid address details for marketing.
Donation records connected with a mosque or religious charity may reveal or suggest religious belief, mosque affiliation, or religious giving. We treat this as sensitive and, where it is special-category data under UK GDPR or EU GDPR, we process it only where we have both an Article 6 lawful basis and an Article 9 condition. We do not use donation history, Gift Aid declarations, mosque affiliation, or religious-giving information for advertising, profiling, ranking, or unrelated marketing.
3. How We Collect Data
We collect personal data:
- directly from you when you register, sign in, choose a mosque, confirm mosque membership details, submit forms, upload content, enable features, request services, send feedback, or contact support
- directly from you when you use a donation page, enter donation details, choose Gift Aid, add a message, choose public anonymity settings, accept donation terms, or request payment confirmation
- automatically from the app, your device, and the services used to run MosqueMe while you use it
- from device features and permissions that you choose to grant, such as microphone, speech recognition, notifications, location, and photo-library or similar image-picker access for supported upload flows
- from sign-in providers, payment providers, wallet providers, postcode-checking services, and other services used to run the app or donation website
- from mosque admins, support staff, moderation workflows, or other users where the feature design requires it
4. Why We Use Data and Our Legal Bases
Depending on the feature and the situation, we rely on one or more legal reasons to use your data under Article 6 of the UK GDPR or EU GDPR, including providing the service you asked for, our legitimate interests, legal obligations, and your consent where required.
4.1 To Perform Our Contract With You or Take Steps You Request
We use data to:
- create and manage your account and sessions
- authenticate sign-in and keep you logged in
- verify phone numbers for signed-in mosque membership accounts, activate selected mosque memberships, support account security and recovery, support trusted-device and step-up verification, and reduce duplicate or abusive accounts
- provide mosque-linked features, worship tools, reading progress, direction-finding, learning, notifications, community features, service-related features, uploads, and support features
- use optional confirmed gender only when voluntarily provided or confirmed for optional gender-specific workflows, including gender-sensitive mosque services, member support or request handling where gender is relevant, Hayd and Nifas eligibility, same-gender partner matching, and non-advertising Ummah or community campaign eligibility
- sort nearby mosque results when you choose to enter a postcode or postal code in mosque selection or use Mosque Finder with location access
- generate or rewrite admin-requested draft content in admin-only AI writing tools
- process timetable files uploaded by mosque admins so prayer times can be extracted, reviewed, corrected, and published
- save a limited learning summary to your account after you use supported voice-learning activity in the app
- let you export your data or deactivate or delete your account
- run donation pages and Pay Now workflows you choose to use, create checkout sessions, show donation summaries, record donation status, send or support receipts, and connect donations to the correct mosque, campaign, and Payment Provider record
4.2 For Legitimate Interests
We may also use data where needed to run, protect, and improve MosqueMe, such as:
- keeping the app secure
- preventing abuse, spam, fraud, and unauthorised access
- logging and auditing sensitive or admin actions
- diagnosing crashes and service failures
- improving reliability, moderation, usability, and performance
- defending legal claims and enforcing our terms and community rules
- maintaining donation-platform records, reconciling payment references, investigating payment-system issues raised through the receiving mosque or authorised Mosque Admin, supporting chargeback or dispute handling, and protecting donors, recipients, and MosqueMe from fraud or misuse
When we rely on legitimate interests, we try to balance our needs against your rights and expectations.
4.3 With Your Consent
We rely on consent where required, including for:
- optional permissions such as location, microphone, speech recognition, notifications, and photo-library or similar image-picker access for supported admin or post-management image-upload flows
- Hayd and Nifas feature activation and other explicit sensitive-data workflows
- any optional feature that clearly asks you to opt in before we process the data, for example voice recording or activation of a sensitive-data feature
- optional public display of your donor name or support message, optional sharing of your name with the mosque admin for thanks or follow-up where that sharing is not otherwise needed for payment, receipt, Gift Aid, audit, fraud prevention, legal compliance, or payment support
- explicit consent for donation-related special-category data where this is required and no other Article 9 condition is appropriate
You can withdraw consent at any time for permission-based features through your device settings, and for certain feature-based uses of data through in-app settings.
4.4 To Comply With Legal Obligations or Handle Legal Claims
We may process and retain data where necessary to:
- comply with applicable law, lawful requests, or regulatory obligations
- keep records required for legal, audit, or security reasons
- keep donation, accounting, Gift Aid, fraud-prevention, sanctions, tax, chargeback, dispute, or payment-provider records where required
- respond to lawful takedown, disclosure, or preservation requests
- establish, exercise, or defend legal claims
4.5 Special Category Data
Because MosqueMe is a faith-based app and includes mosque-linked donations and optional health-related features, some uses of data may involve information that the law treats as very sensitive personal data under UK GDPR or EU GDPR.
We will only process this type of sensitive data where the law allows us to do so. For Hayd and Nifas and other clearly sensitive optional features, our main special-category condition is your explicit consent under Article 9(2)(a) of the UK GDPR or EU GDPR. For faith-linked use of MosqueMe and donations to religious organisations, we treat that use as highly sensitive and only use this data where the law allows us to do so, such as explicit consent where required, legal claims where necessary, or narrow legal, fraud-prevention, safeguarding, or compliance grounds where UK law permits and safeguards are in place.
We do not rely on Article 9(2)(g) for routine Hayd and Nifas tracking. Where sensitive data reaches us incidentally through free-text submissions routed to safety moderation, we may rely on Article 9(2)(g) of the UK GDPR read with the relevant substantial-public-interest condition in Schedule 1 of the UK Data Protection Act 2018 only where this is necessary and proportionate for a narrow safety, safeguarding, abuse-prevention, unlawful-content, or legal-compliance purpose.
5. Hayd and Nifas Feature Data
The Hayd and Nifas feature is optional. In the current version of MosqueMe, it is protected by eligibility checks, access controls, explicit in-app consent checks, and feature-specific deletion controls. It is available only to users who meet the feature eligibility requirements shown in the app and who provide explicit, informed consent before activation.
General account creation does not require date of birth or gender for this feature. If you have already added a date of birth, or if the feature asks for a feature-specific age confirmation, MosqueMe uses that information only to check Hayd and Nifas eligibility. If a saved date of birth shows that you are under the minimum age shown in the app, the feature remains unavailable.
This feature may process data such as:
- opt-in and consent records for the feature
- feature-specific age or eligibility confirmation
- feature preferences, reminders, and privacy settings
- episode and status history, related record-keeping entries, and excused-status records
For the private Hayd and Nifas tracking data described in this section:
- we do not sell it
- we do not use it for advertising or cross-app tracking
- we do not use it to train our own AI models
- as of 11 June 2026, the current version of MosqueMe does not include HealthKit or Health Connect integration for this feature, and this tracking data is not synced to Apple Health or Android Health Connect
We will not voluntarily disclose private Hayd and Nifas tracking data to law-enforcement authorities, government bodies, or private parties unless we are legally required to do so. Where legally allowed, we will review, narrow, challenge, or resist overbroad requests for this sensitive data.
For users aged 13 to 17 who meet the feature eligibility requirements, this feature is designed to follow the principles of the UK Age Appropriate Design Code: feature data is used only to run the feature, is not used for profiling or personalised advertising, and consent information is presented in clear, age-appropriate language before activation.
If this feature is available on your account, you can delete your Hayd and Nifas data in the app by going to Settings -> Account actions -> Delete Hayd & Nifas data. In the current version of MosqueMe, that delete flow is designed to remove feature episodes, top-level feature records, consent and opt-in records for the feature, and related summary flags linked to that feature.
6. AI, Moderation, and Automated Assistance
MosqueMe uses automated checks and, where needed, outside moderation or AI providers to help protect users, mosques, and the wider community from spam, abuse, unsafe content, fraud, policy breaches, or ambiguous content.
Text that may be checked for safety is the specific text submitted in a feature — for example, free-text you submit in account, support, mosque-admin, and community-message fields (such as post bodies or support messages).
We do not intentionally send separate account records, account IDs, email addresses, phone numbers, full profile records, mosque membership records, or database documents to outside AI moderation. However, if you type personal data into the submitted text itself, that submitted text may contain personal data.
For outside AI moderation, we reduce the text sent where possible and redact obvious email addresses, phone numbers, and web links before sending it. This helps reduce risk, but it is not perfect. We cannot guarantee that every personal or sensitive detail typed into a free-text field will be removed before moderation.
Some admin-only drafting or rewriting features may send admin prompts, instructions, and current draft title/body text to external AI providers to generate or revise mosque post drafts. The generated draft is returned to the admin for review before publishing. Admins should avoid entering unnecessary personal or sensitive information into AI drafting prompts.
Some admin-only timetable or Hijri calendar upload features may send uploaded images or PDF files to services that help read the text from those files so the content can be reviewed and corrected by an admin.
Where outside AI or moderation providers are used, we use available privacy, security, and data-minimisation controls appropriate to the feature and provider. We do not use submitted text, uploaded timetable or Hijri files, personal data, or audio to train general-purpose AI models for other users.
Our automated checks use a combination of keyword, pattern, and, where enabled, third-party classifier signals. They do not make final account-termination decisions without human review, and you can request human review of automated-assisted outcomes as described in Section 12.2.
Important points:
- we use AI and automated assistance for safety, moderation, admin drafting, and upload text-reading purposes only as described in this policy
- we do not use your raw submitted text, personal data, or audio to train general-purpose AI models or shared AI models for other users
- supported in-app voice-recording features may analyse your saved audio and waveform patterns on your device to build a personal self-learning profile for your own use of that feature; where a summary is synced to your account, it is limited to high-level counters and status, not raw voice recordings, waveform files, or the full learning history
- we may keep narrow operational metadata about moderation checks and review handling, such as field category, decision result, reason code, provider used where applicable, confidence where available, whether a case was flagged for human review, review outcomes where recorded, and timestamps
- outside providers may process submitted text, admin draft text, uploaded timetable or Hijri content, or speech/audio-related data only for the limited feature, safety, support, or text-reading purpose described in this policy
- provider retention and safeguards may vary by provider and feature, and we apply contractual, technical, and data-minimisation safeguards where available
- you should avoid entering unnecessary sensitive personal data into free-text fields wherever possible
- moderation or AI outputs may be reviewed by human admins or support staff where needed for safety, debugging, or feature operation
- if you believe an automated or automated-assisted moderation, content, or account-related decision affecting you was wrong, you can contact support@mosqueme.com to request human review where applicable
7. App Permissions and Device Access
Depending on the features you use, MosqueMe may ask for permission to access:
- microphone, for recording audio through supported in-app features
- speech recognition, for supported voice-verification or transcript workflows, which may be processed by your device or by Apple, Google, or other device speech services depending on your device and settings
- photos, files, or media-library access, for uploads you choose to make
- location while using the app, including precise location where a feature needs it, for direction-finding, location-based prayer calculations, and Mosque Finder nearby mosque search or suggestions
- notifications, to send alerts, reminders, service updates, and mosque or community notifications you enable
We do not currently require Contacts or Calendar access for normal app functionality. We also do not require background location for normal use.
If you refuse a permission, the app will still work in general, but the feature that depends on that permission may not work properly.
8. Advertising and Tracking
MosqueMe does not currently use third-party ad networks or personalised advertising.
As of 11 June 2026:
- we do not use third-party ad networks for cross-app behavioural advertising in the current version of MosqueMe
- we do not sell personal data
- we do not use advertising IDs or cross-app tracking identifiers for advertising measurement
- we do not use optional confirmed gender, date of birth, Hayd and Nifas data, mosque membership, or worship activity for advertising
9. Who Can Access and Receive Data
We may make personal data accessible only where necessary and only as described in this policy.
9.1 Companies We Use to Help Run MosqueMe
We use service providers that help us run the app, such as companies that help with:
- authentication and account services
- hosting, databases, storage, and related support services
- push notifications and messaging delivery
- security and abuse protection
- payment processing, Stripe Connect, wallet payments, receipts, payment-status updates, and payment-provider dispute handling
- crash reporting, analytics, and performance monitoring
- speech recognition or device services used by app features
- postcode or postal-code lookup services used to estimate nearby mosques or validate a Gift Aid postcode when you choose to enter a postcode or postal code
- backend services used to return registered mosques near your current location when you use Mosque Finder
- services that help read timetable or Hijri calendar text for extraction and review
- outside moderation and AI services described in Section 6
Where these providers have access to personal data for services we use, we require them to protect that data to the same or an equivalent standard described in this policy.
Depending on the feature you use and your device, these providers may include:
- Google Firebase / Google Cloud, for sign-in, databases, storage, cloud functions, Mosque Finder registered mosque lookup, notifications, analytics, crash reporting, performance monitoring, remote configuration, and abuse protection
- Google Cloud Vision, for admin-only timetable or Hijri calendar image and PDF text extraction
- Apple, for Apple Sign In, Apple Push Notification service, and certain Apple device services used by app features on Apple devices
- Google, for Google Sign In and certain Google or Android device services used by app features on supported devices
- Microsoft, for Microsoft Sign In when you choose that option
- Stripe, for payment processing, Stripe Checkout, Stripe Connect, Apple Pay or Google Pay where offered through Stripe, payment authentication, receipts, refunds, disputes, chargebacks, fraud checks, payout routing, and connected-account handling
- Postcodes.io, for optional UK postcode lookup in mosque selection and optional Gift Aid postcode validation where Gift Aid is selected
- OpenStreetMap Nominatim, for optional Australia and Canada postal-code lookup in mosque selection
- OpenAI, for text moderation
- Groq, Cerebras, and OpenRouter, for admin-only AI writing tools and some moderation-related AI review flows
Not every provider is used for every user or every feature.
When you use sign-in or device features provided by Apple, Google, or Microsoft, those companies may also handle some data under their own privacy notices.
9.2 Mosque Admins
Depending on the feature and your chosen settings, mosque admins may access data needed to run mosque-linked community, timetable, service, member, fundraiser, donation, Gift Aid, refund, dispute, receipt, or support workflows where the feature is designed to surface that information.
Where the app surfaces optional confirmed gender to authorised Mosque Admins, it is intended only for mosque-managed workflows where gender is relevant, such as gender-specific spaces, gender-sensitive services, member support, and request responses. Mosque Admins do not receive your private Hayd and Nifas tracking records.
Mosque Admins must use admin-visible personal data only for legitimate mosque, community, service, support, safety, or App purposes. They must not use admin-visible member data, optional confirmed gender, contact details, service request details, or engagement information for unrelated marketing, advertising, profiling, sale, or non-mosque purposes through MosqueMe.
Mosque Admins must not disclose, leak, publish, or share member personal data outside the App except where they have a lawful basis and any required permission. If a Mosque Admin handles member data outside MosqueMe, the relevant mosque or admin is responsible for that external handling and for complying with applicable law.
Where a Mosque Admin creates or manages mosque feed posts, notices, donation pages, fundraisers, or similar mosque content, the app may show that admin limited engagement and donation information, such as aggregate view, share, reaction, registration, fundraiser contribution intent, paid donation, Gift Aid, receipt, refund, or dispute counts and limited viewer, sharer, reactor, registrant, donor, or contribution-intent identifiers where the feature provides admin-only reporting. These details are intended to help the mosque understand whether its notices reached members, administer donations, keep required records, and support donor issues. They are not displayed publicly to regular users except where a donor chooses public name or message display.
9.3 Central Admins, Technical Staff, and Support Staff
Authorised MosqueMe central admins, support staff, or technical staff may access limited account, support, safety, security, and technical information through web-based admin tools where needed for moderation, abuse review, support, account handling, app security, or to diagnose specific service incidents you have reported.
Some central-admin features show limited personal progress summaries. In the current summary, raw audio and full detailed voice-learning history are not shown there.
9.4 Other Users and Mosque Community Context
In the current version of MosqueMe, other users do not receive a general public profile for you.
The main user-to-user visibility is through partner or shared ibadah features. If you invite, accept, or use a partner task, the other participant may see your display name or user number, invite status, and relevant shared task progress or comparison information for that shared task. Some progress details may be hidden where the feature provides privacy controls.
Where same-gender partner matching is used, MosqueMe may use optional confirmed gender to make or restrict partner matches. Other users do not receive your full account profile or private Hayd and Nifas tracking data through partner matching.
You can also choose a private "do not match again" preference for partner-based tasks. If you do, MosqueMe stores a no-match record for that user pair so the app can avoid matching you with that user again in future partner-based tasks until you remove the preference in your partner/shared-activity settings.
If you are a Mosque Admin and publish mosque feed posts, notices, or similar content, that published content may be visible to mosque members or the public according to the feature and post settings. Mosque fundraiser public views are designed to show campaign totals, counts, or limited non-identifying pledge/contributor entries rather than your private phone number, email address, or full account profile by default.
9.5 Legal, Safety, and Business Reasons
We may also disclose data:
- to comply with law, regulation, court order, or lawful request
- to investigate fraud, abuse, or security issues
- to protect users, mosques, admins, the public, or our rights
- in connection with a merger, acquisition, restructuring, financing, or sale of all or part of the business, subject to applicable law
10. International Transfers
MosqueMe may use service providers that process data in the UK, the EEA, the United States, or other countries where they or their infrastructure operate.
Where required by applicable law, we use protections for international transfers, such as:
- adequacy regulations or adequacy decisions
- standard contractual clauses, the UK International Data Transfer Agreement, or equivalent transfer mechanisms
- legal agreements and security measures with providers
International transfers may arise through hosting, notifications, crash reporting, speech services, payment providers, wallet providers, postcode lookup services, moderation services, or AI providers. You can contact us if you want more information about the protections we rely on.
Current provider and transfer examples include:
| Provider | Main data or feature involved | Transfer / safeguard summary |
|---|---|---|
| Google Firebase / Google Cloud | Account sign-in, database records, file storage, cloud functions, Mosque Finder registered mosque lookup, notifications, app integrity, analytics, crash reporting, performance monitoring, and remote configuration | Data may be processed in the UK, EEA, United States, or other Google infrastructure locations. We rely on provider data-processing terms, contractual safeguards, and applicable transfer mechanisms such as SCCs, the UK IDTA, or equivalent measures where required. |
| Google Cloud Vision | Admin-only timetable or Hijri calendar image/PDF text extraction | Uploaded admin files and extracted text may be processed by Google Cloud services for text-reading and review workflows, subject to Google Cloud contractual and transfer safeguards. |
| Apple | Apple Sign In, Apple Push Notification service, Live Activity delivery, and Apple speech services on Apple devices | Apple may process sign-in data, push or Live Activity tokens, device-service data, and speech-recognition data where Apple services are used, under Apple's own terms and privacy notices. |
| Google / Android device services | Google Sign In and Android speech-recognition or device services | Google may process sign-in data and speech-recognition data where Google or Android services are used, under Google's own terms and privacy notices. |
| Microsoft | Microsoft Sign In where selected by the user | Microsoft may process sign-in identity data under Microsoft's own terms and privacy notices. |
| Stripe | Payment processing, Stripe Checkout, Stripe Connect, wallet payment support, receipts, payment authentication, fraud checks, disputes, refunds, chargebacks, and connected-account handling | Stripe may process donor name, email, payment amount, payment reference, payment method information, device or fraud signals, connected-account information, and related payment records under Stripe's own terms and privacy notice. MosqueMe does not store full card numbers or card security codes. |
| Postcodes.io | Optional UK postcode lookup in mosque selection and optional Gift Aid postcode validation | If you enter a UK postcode in mosque selection or Gift Aid postcode validation, the postcode may be sent to Postcodes.io so the app or donation page can confirm the postcode or estimate nearby mosques. We do not intentionally send your full account profile, full Gift Aid address, donation amount, or card details with that lookup. |
| OpenStreetMap Nominatim | Optional Australia and Canada postal-code lookup in mosque selection | If you enter an Australia or Canada postal code in mosque selection, the postal code is sent to OpenStreetMap Nominatim so the app can estimate nearby mosques. We do not intentionally send your account profile with that lookup and we do not save the postal code to your MosqueMe profile. |
| OpenAI | Text moderation checks | Submitted text and moderation-related data may be processed for safety checking under OpenAI service terms and applicable provider safeguards. |
| Groq | Admin-only AI drafting or rewriting and some moderation-related AI review flows | Submitted admin text, prompts, and generated draft outputs may be processed under Groq service terms and applicable provider safeguards. |
| Cerebras | Admin-only AI drafting or rewriting and some moderation-related AI review flows | Submitted admin text, prompts, and generated draft outputs may be processed under Cerebras service terms and applicable provider safeguards. |
| OpenRouter | Admin-only AI drafting or rewriting and limited moderation-related AI review flows where enabled | Submitted admin text, prompts, generated draft outputs, and relevant moderation text may be processed under OpenRouter service terms and applicable provider safeguards. |
11. Data Retention, Deletion, and Export
We keep personal data only for as long as reasonably necessary for the purposes described in this policy. Retention can vary by data type.
| Data category | Retention period / handling |
|---|---|
| Account, profile, and sign-in records | Usually retained while your account is active. If you request account deletion, the account enters a 30-day grace period. All supported in-app account deletion routes use this same grace-period flow. During that period, the account can be restored by completing the supported in-app recovery checks before final deletion begins. After that grace period, eligible personal data is deleted or de-identified starting on the next scheduled deletion run, unless another row below applies. |
| Account deletion request state | Kept during the 30-day grace period so the account can be restored through the supported recovery checks before final deletion begins. |
| Reserved phone-number or account-security mappings | May be kept for up to 90 days after account deletion where needed for abuse prevention, account recovery controls, or SIM-recycling protection. |
| Optional postcode or postal-code lookup in mosque selection | We do not save postcode or postal-code text from mosque selection to your MosqueMe profile or backend account records. The app may keep the lookup result in temporary app memory during your current session, and the lookup provider may process the submitted postcode or postal code under its own service terms and privacy practices. |
| Gift Aid postcode validation | Where Gift Aid postcode validation is used, we may send the postcode only to Postcodes.io or another postcode-checking provider to confirm that the postcode appears valid. We do not intentionally send your full Gift Aid address, donation amount, card details, or full account profile with that postcode check. The validated postcode may be retained with the Gift Aid declaration record where Gift Aid is selected. |
| Mosque Finder location lookup and suggestions | When you use Mosque Finder with location access, your current latitude and longitude may be sent to MosqueMe's backend to return registered mosques near you and distance-sorted results. We do not save those coordinates to your MosqueMe profile. The app may keep short-lived nearby mosque results, local cache keys, the Mosque Finder Location setting, and recent dismiss-location details on your device for speed, continuity, and prompt cooldown. These local items may remain until the cache expires, you clear app storage, sign out where local cleanup applies, or uninstall the app. |
| Guest Mode local session, selected mosque, and guest preferences | Stored on your device for Guest Mode continuity and may remain until the guest session is cleared, app storage is cleared, or the app is uninstalled. Public mosque and prayer timetable data may also be cached locally for performance and continuity. |
| Hayd and Nifas feature records | Kept while the feature or account is active, unless you use feature-specific deletion controls. If account deletion is requested, eligible Hayd and Nifas records are included in the deletion or de-identification process after the 30-day account-deletion grace period, unless law requires otherwise. |
| My Adhaan audio and learning summaries | My Adhaan recordings are stored locally on your device and are not uploaded to MosqueMe servers in the current app version. Local recordings may remain on your device until you remove them, clear app data, sign out where local cleanup applies, or uninstall the app. Limited learning summary records saved to your account are kept until removed, replaced, or deleted through account or feature cleanup. |
| Speech-recognition transcripts and verification results | Device, Apple, Google, or other speech services may process audio or transcripts under their own terms where speech recognition is used. MosqueMe keeps any transcript, verification result, or troubleshooting record created by MosqueMe only as long as needed for feature processing, safety review, support, or the related My Adhaan, support, or moderation retention rows. |
| Mosque-admin community content and other community-facing records | Kept while needed for the feature, mosque records, other users' history, fraud prevention, audit, or legal reasons. Some records may remain in author-stripped or de-identified form after account deletion where the record affects other users, mosque workflows, or public/community history. |
| Fundraiser, service, and worship-activity workflow records | Kept while needed for the feature, mosque records, accounting, audit, or legal reasons, and handled the same way as other community-facing records where author-stripped retention applies. |
| Donation, payment, receipt, refund, dispute, chargeback, and platform-fee records | Kept while needed to operate the donation flow, reconcile payment records, provide or support receipts, administer platform fees and optional tips, support authorised recipient enquiries, handle disputes or chargebacks, prevent fraud or misuse, comply with payment-provider rules, and establish, exercise, or defend legal claims. These records may normally be kept for up to 6 years after the relevant donation, dispute, accounting period, or legal matter, and longer where law, regulator, Payment Provider rules, tax, audit, fraud, sanctions, chargeback, or legal-claim reasons require. |
| Gift Aid declaration and audit records | Where Gift Aid is selected, declaration records, donor full name, home address, postcode, donation reference, declaration wording, recipient name, donation date, donation amount, and audit records may be kept for the period needed by the receiving charity or charitable organisation to support Gift Aid claims, corrections, audits, disputes, refunds, chargebacks, and HMRC record requirements. The recipient remains responsible for its Gift Aid records and claims. |
| Postage post content, images, and local Postage history | Normal Postage posts are kept on the backend for the configured active period, currently 14 days by default. Registration posts may be kept up to 3 months, fundraiser posts may be kept up to 12 months, and pinned or unpinned posts follow their configured expiry or grace period. Postage post content, images, and local Postage history may become unavailable after their applicable retention period and are not guaranteed to be recoverable after deletion. The app may keep safe device-only local Postage history for up to 360 days for fast loading, offline continuity, and local history, but may remove it earlier if content is deleted, moderated, restricted, your mosque access changes, app storage is cleared, you sign out, or your account is deleted. Limited user activity records, admin engagement records, fundraiser contribution records, safety records, unavailable-content records, audit records, reporting records, support records, legal records, or accounting records may be kept separately from the full post body where needed. Minimal unavailable-content records for deleted or moderated posts may be retained up to 400 days so devices can remove unavailable content. Download My Data includes backend-retained account and activity data and does not include device-only local Postage history unless a future local-device export feature is added. You can clear local device-only Postage history from Settings where the control is available. |
| Support, feedback, report, moderation, and audit records | Kept while a request, investigation, review, or dispute is active, and normally up to 6 years where needed for legal claims, safety, audit, fraud prevention, or support continuity. Records may be removed or de-identified earlier where appropriate. |
| Notification tokens, device sessions, and Live Activity tokens | Kept until invalidated, replaced, signed out, expired, or no longer needed for delivery, security, or troubleshooting. |
| Analytics, crash, diagnostic, and performance data | Kept as configured with our service providers and only as long as needed for reliability, security, analytics, and troubleshooting. We aim to remove or de-identify this data when it is no longer needed. |
| Download-my-data export file | Generated when you request it and saved locally to your device. You control that local copy after download. We do not keep a separate hosted export file unless a feature specifically creates one. |
| Local device storage and app caches | May remain on your device until you sign out, clear app data, uninstall the app, or your device operating system removes it. |
| Backups and recovery copies | May remain for a limited recovery period after live-system deletion and are protected from normal use. They are overwritten or removed according to our provider backup and recovery cycles, unless legal or security reasons require longer retention. |
Deletion from live systems may not remove every copy immediately from backups or recovery systems, but those copies are protected and kept only for limited legal, security, or service-continuity reasons.
In some admin-deletion cases, mosque-authored operational content may remain visible while the author's identifying details are removed.
The current export feature gives you a downloadable file of your backend-retained app data and selected related records saved to your device. To keep exports reliable, large record sets and separate stored files, such as uploaded media, may be limited or represented by file references or file locations instead of being included directly inside the export file. The current backend export does not include device-only local Postage history stored on your phone.
12. Your Rights and Choices
Depending on your location and applicable law, you may have rights to:
- access your personal data
- correct inaccurate data
- receive a copy of certain data in a portable format
- request deletion
- withdraw consent
- object to or limit certain uses of your data
- request human review of certain important decisions made with automated assistance, where applicable under law
- manage visibility or privacy settings inside supported features
- manage device permissions
- complain to a data protection authority or privacy regulator
Some rights depend on the circumstances and the legal reason we are using your data.
We aim to respond to privacy rights requests without undue delay and within one month or 30 days, unless applicable law allows or requires a different timeframe. If a request is complex or law allows an extension, we will tell you where required.
If you are in the UK, you can complain to the Information Commissioner's Office (ICO): https://ico.org.uk/make-a-complaint/. If you are in the EEA, you may complain to your local data protection authority or privacy regulator.
To delete your data or manage in-app privacy controls, see Section 11 (retention and deletion) and Section 12.3 (in-app privacy and account controls).
12.1 Right to Object
Where we rely on legitimate interests, which means our genuine need to run, protect, or improve MosqueMe, you may have the right to object in certain circumstances. You can exercise that right by contacting us at privacy@mosqueme.com or through the in-app support routes listed in this policy.
12.2 Automated Review Requests
Where automated tools help identify spam, unsafe content, abuse, policy issues, or similar risks, a human may review the matter.
If you believe an automated or automated-assisted decision affecting you was wrong, including any decision that produces legal effects or similarly significant effects for you, you can contact us at support@mosqueme.com or through the in-app support routes listed in this policy to request human review where applicable. You may also submit additional context or information for us to consider and may contest the outcome as part of that review. We may still maintain restrictions that are reasonably necessary for safety, fraud prevention, legal compliance, or the protection of other users while that review is carried out.
12.3 Privacy and Account Controls in the App
The app currently includes in-app controls such as:
Settings -> Privacy & Security -> Privacy settingsSettings -> Privacy & Security -> Privacy settings -> Mosque Finder LocationSettings -> Privacy & Security -> Login & devicesSettings -> Notifications -> Notification settingsSettings -> About & Legal -> Privacy PolicySettings -> Account actions -> Download my dataSettings -> Account actions -> Clear local Postage historySettings -> Account actions -> Deactivate account (temporary)Settings -> Account actions -> Delete account
For Hayd and Nifas users, feature-specific privacy and deletion controls are available in the app, including Settings -> Account actions -> Delete Hayd & Nifas data, as described in Section 5.
12.4 Identity Verification
Before we act on certain requests, we may need to verify your identity or confirm account ownership.
12.5 Limits on Rights
We may keep limited information where necessary to:
- comply with law
- complete security or fraud-prevention steps
- protect other users or mosques
- preserve evidence relevant to disputes, abuse, or legal claims
13. Security
We use reasonable security measures to protect data, including measures such as:
- encryption in transit
- encryption at rest where supported by our hosting, database, and storage providers
- role-based access controls
- checks on our systems for sensitive actions
- security and abuse-protection controls where enabled
- logging and audit controls for sensitive account or admin actions
- protected local storage for certain credentials and identifiers
No system is perfectly secure, and we cannot guarantee absolute security.
If we become aware of a personal data breach, we will investigate it, take reasonable steps to contain and mitigate it, and document it as required.
Where required by applicable law, we will notify the relevant data protection authority without undue delay and, where feasible, within 72 hours of becoming aware of a notifiable personal data breach. Where required by applicable law, we will also notify affected users.
14. Children's Privacy
MosqueMe is not directed to children under 13, and we do not knowingly collect personal data from children under 13 without the consent required by applicable law.
General account creation does not require date of birth. Some age-restricted features may ask for age or eligibility confirmation inside that feature and may remain unavailable if the user does not meet the feature eligibility requirements shown in the app.
Some parts of MosqueMe may be accessed by users aged 13 to 17. Where UK children's privacy rules, including the Age Appropriate Design Code, apply, we aim to use privacy-by-design safeguards, collect only data needed for the feature, avoid personalised advertising, and give privacy information in a clear and age-appropriate way.
MosqueMe is not currently actively offered in the European Economic Area (EEA). If we later actively offer MosqueMe in the EEA, we will review EEA child-consent, sensitive-data, representative, and store-disclosure requirements before that launch and update this policy where needed.
Hayd and Nifas is an optional sensitive feature. It asks for explicit in-app consent before activation and is available only to users who meet the feature eligibility requirements shown in the app. Users who do not meet those requirements must not enable it.
If we learn that personal data from a child has been collected in a way that requires action, we will take reasonable steps to delete it, restrict the feature, or obtain the required consent.
15. Additional Information for Mosque Admins
Mosque admins have additional responsibilities and visibility within the app.
Admin accounts may submit or access:
- mosque profile data
- prayer timetable and day-to-day mosque data
- mosque-admin community content and uploaded media
- fundraiser and mosque-service workflow data
- donation, receipt, Gift Aid, refund, dispute, and payment-support records where Pay Now or donation tools are enabled
- member-related submissions where the feature is designed to surface them to mosque admins
Admins must use this access only for legitimate mosque or app purposes and must handle personal data responsibly and lawfully.
Admins are expected to keep admin accounts secure, limit access to authorised mosque personnel, avoid unnecessary exports or screenshots of member or donor data, and handle optional confirmed gender, service requests, contact details, Gift Aid details, donation records, and other potentially sensitive information with extra care. If a Mosque Admin handles personal data outside MosqueMe, the relevant mosque or admin is responsible for that external handling and for complying with applicable law.
Certain admin or mosque working records may need to be retained even if an individual admin account is deleted, where the record forms part of an ongoing mosque workflow, audit trail, or other users' data history.
16. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in the app, providers, legal requirements, or privacy practices.
If we make material changes, we may notify you in the app and will update the "Last Updated" date above.
17. Contact Us
If you have questions, privacy requests, or complaints about data handling, you can contact us by:
- emailing privacy@mosqueme.com for privacy rights requests, data-protection questions, privacy complaints, export or deletion questions, or similar privacy matters
- emailing support@mosqueme.com for general app support
- using the in-app support flows at
Settings -> Support -> Help,Settings -> Support -> Report a problem, orSettings -> Support -> Feedback / Suggest a feature
We have not appointed a Data Protection Officer. Privacy enquiries should be sent to privacy@mosqueme.com.
As of the "Last Updated" date above, we have not appointed an EU or EEA representative because MosqueMe is not currently actively offered in the EEA. Before we actively offer MosqueMe in the EEA in circumstances where an EU or EEA representative is required, we will publish representative contact details in this policy and at the public privacy-policy URL used in the store listing.
18. Version History
| Version | Date | Summary |
|---|---|---|
| 1.1 | 23 June 2026 | Added donation website, Pay Now, Stripe, donor name/email, Gift Aid name and home address, postcode validation, platform-fee/tip, donor anonymity, mosque-admin donor access, donation retention, and special-category donation-data wording for planned MosqueMe donation flows. |
| 1.0 | 11 June 2026 | Initial public release policy, updated to clarify that gender is optional during signup and is not required for account creation, mosque selection, phone verification, general mosque membership setup, or core app access. Gender is used only when voluntarily provided or confirmed for optional gender-specific features or mosque-managed workflows. |