The Coach logo The Coach ← Back home

Legal

Privacy Policy

Last updated: 19 May 2026

1. What this policy covers

This Privacy Policy explains what data The Coach (the “app”) collects from you, why we collect it, who we share it with, how long we keep it, and the choices you have about it. By using the app you agree to the practices described here.

2. Data we collect

We collect only what we need to make the app work for you:

· Account identifiers — when you sign in with Apple, we receive an Apple-issued identifier and (if you choose to share it) your email and name.
· Profile you give us — display name, age, profession, organisation, specialisation, and any other field you fill in during onboarding or later edits.
· Assessment answers and results — your responses to MBTI, Emotional Intelligence, Cognitive, Leadership, Communication, Career and Mission, and Wheel of Life assessments, plus the AI-generated narrative for each.
· Habits, goals, and reflections — titles, daily instructions, target dates, completion checkmarks, and journal entries you write.
· Chat messages — every message you send to or receive from the AI coach, with timestamps.
· Technical metadata — request timestamps, error logs, and basic device information needed to operate and secure the service.

We do NOT collect: location data, contacts, photo library content, microphone audio, or anything else beyond what is described above. We do NOT track you across other apps or websites.

3. Why we use your data

Your data is used only to:

· Run the app for you — show your profile, render your dashboard, surface your habits and goals, persist your reflections, and remember your conversation history.
· Generate personalised AI responses — your profile, recent assessments, active habits and goals, and recent reflections are sent to our AI provider as part of each request so the coach can reply with relevant context.
· Surface scripture references — when the coach is asked about Qur’an or hadith content, the request is sent to trusted Islamic content APIs to fetch the canonical text. Your personal data is NOT sent in those lookup requests.
· Operate and secure the service — diagnose bugs, prevent abuse, and improve reliability.

We do NOT sell your data. We do NOT use it for advertising. We do NOT train external AI models on it without your explicit, separate consent.

4. Who we share data with

We use a small set of trusted third-party processors to deliver the service:

· Supabase — hosts the database that stores your profile, habits, goals, reflections, chat messages, and assessment results. Each row is protected by row-level security so only your authenticated session can read or write rows belonging to you.
· OpenRouter / Anthropic — receives the chat or assessment prompt (which can include the parts of your profile and recent data needed for context) in order to generate an AI reply. Replies are returned to the app and stored in your account.
· Apple — handles Sign in with Apple authentication.
· Quran.ai and hadith-mcp.org — receive only the search query or verse reference needed to return scripture text. They do NOT receive your identity or personal data.

We do not share your data with anyone else outside of these processors, except: (a) if you ask us to, (b) when required by law or by a valid legal process, or (c) if necessary to protect the rights, safety, or property of the app, its users, or the public.

5. How long we keep your data

We keep your data while your account is active. When you delete your account from inside the app, your profile row is marked deactivated and the iOS app stops showing your data; the underlying rows are retained so we can restore your account if you sign back in within a reasonable time. To request hard deletion of all your rows, contact us by email (see Section 8).

We may keep minimal records (for example, logs needed to detect abuse or comply with legal obligations) for as long as needed for those specific purposes.

6. Your rights

You have the right to:

· access the data we hold about you;
· correct it if it is wrong (you can edit most of it in-app, or email us);
· delete it (soft delete is available in-app under Settings → Account → Delete account; full deletion can be requested by email);
· receive a copy of it in a portable format (by request);
· ask us to stop processing it for purposes other than running the service.

Depending on where you live, you may have additional rights under your local data protection law (for example GDPR or comparable regimes). You can exercise any of these rights by emailing us. We will respond within a reasonable time.

7. Security

All traffic between the app and our servers is encrypted in transit (HTTPS). Database access is gated by row-level security so each authenticated user can only read their own rows. Service-role credentials are never shipped with the iOS app. We do our best to protect your data, but no system on the internet can be guaranteed perfectly secure. If we ever become aware of a breach affecting your data, we will notify you in line with applicable law.

8. Contact

For privacy questions, data access or deletion requests, or anything else related to this policy, please email:

azhanmohamed43@gmail.com

Please include the email address associated with your account so we can verify the request.

9. Children

The Coach is not directed at children under 16. If you believe a child has signed up and shared data with us, please email us so we can investigate and delete the account.

10. Changes to this policy

We may update this policy from time to time. The “Last updated” date at the top of this page reflects the most recent revision. We will not reduce your rights under this policy without giving you reasonable notice. Continued use of the app after a change means you accept the updated policy.

This document is provided for transparency and does not constitute legal advice. The operator of the app should have a qualified privacy lawyer in their jurisdiction review and tailor this policy before relying on it in production.