Privacy Policy

EnglishTürkçe

Effective date: 5 August 2026
Last updated: 5 August 2026

This Privacy Policy explains what Muslim Plus (the "App") does with your information. It applies to the Muslim Plus mobile application for iOS and Android published by Hamza Arslan, trading as Şahid Medya ("we", "us").

Summary

Muslim Plus is designed to work without an account. We do not ask for your name, email address, or phone number, and we do not build a profile of you.

  • We do not require or offer sign-in. There are no user accounts in the App.
  • Your prayer times are calculated on your device, not on a server.
  • Your location is stored only on your device. We never upload it to our servers, and we do not keep location history.
  • We do not use advertising, analytics, or tracking SDKs. We do not sell or share your personal data, and we do not track you across other companies' apps or websites.
  • The only personal data that leaves your device is described in "Information we process" below: approximate coordinates sent to a mapping service so we can show your city name, and anonymous crash diagnostics.

Information we process

1. Location

What: Your device's GPS coordinates, and — if you choose a location manually instead — the country, city, and district you pick.

Why: To calculate prayer times for where you are, to point the qibla compass, and to display your city name on the home screen. This is the core function of the App and there is no way to compute accurate prayer times without a location.

How it is handled:

  • Location is read only while the App is open and in the foreground. The App does not use background location and does not track your movements.
  • Your coordinates and your last known position are saved on your device only, in the App's local storage, so prayer times still work offline. They are never transmitted to us.
  • To turn coordinates into a readable place name ("Üsküdar, Istanbul"), the App sends the coordinates to OpenStreetMap's Nominatim service, which returns the matching address. This is a one-off lookup: the request carries no account, name, or identifier for you, and the service receives nothing else about you. See the OSMF Privacy Policy.
  • If you instead pick a location manually, the App queries our hosted list of countries, cities, and districts. That query contains your search text, not your real position.

Your control: Location permission is optional. You can decline it, revoke it at any time in your device settings, or turn off automatic location in the App and set your city by hand. If you deny location entirely, you can still use the App with a manually chosen city.

2. Your settings and preferences

What: Calculation method, notification switches and pre-reminder times, notification sounds, theme, language, and your location preference.

Why: So the App behaves the way you configured it.

How it is handled: All of this is stored locally on your device. It is not uploaded, not backed up to our servers, and not linked to any identifier. Deleting the App deletes it.

3. Crash and error diagnostics

What: When the App hits an error or crashes, we receive a technical report: the error and stack trace, the App version, your device model, and your operating system version.

Why: To find and fix bugs. Nothing else.

How it is handled: Reports are processed on our behalf by Better Stack, which may use them only to provide that service to us. We have explicitly turned off the collection of personally identifiable information, so reports do not include your IP address, your location, screenshots, or the contents of your screen. Diagnostics are disabled entirely in development builds. See the Better Stack Privacy Policy.

4. Content requests

What: When the App loads daily verses and hadiths, gallery artwork, or Q&A ("fatwa") articles, it makes ordinary network requests. Like any internet request, these are visible to the servers that answer them, including your IP address and the type of device making the request.

Why: To deliver the content you asked to see.

Who receives them:

  • Supabase, our database provider, which stores the daily content, the gallery listings, and the list of countries and cities on our behalf. It processes this data only under our instructions and may not use it for its own purposes. See the Supabase Privacy Policy.
  • Cloudflare (R2 storage and CDN), which stores and delivers the gallery image files themselves. When an image loads, Cloudflare receives the request, including your IP address, in order to serve the file. See the Cloudflare Privacy Policy.
  • sahidmedya.com, our own website, whose public content API supplies the Q&A / fatwa articles. This site is operated by us, so the request does not leave our control and this policy applies to it.
  • Google Firebase (Remote Config), used only to deliver settings such as the minimum supported App version. It generates a per-installation identifier and receives your App version and basic device information. It is not used for analytics or advertising. See the Firebase Privacy and Security page.

We do not log these requests to build a record of what you read.

5. Notifications

Prayer reminders are local notifications scheduled on your device. Nothing is sent from a server, and we do not know when or whether a notification was shown. Notification permission is optional and revocable in your device settings. On Android, the App may ask for exact-alarm and battery-optimisation exemptions so that reminders fire at the correct minute; these affect scheduling only and grant no access to your data.

6. Photos

If you save a gallery image, the App writes that image to your photo library. It has write-only access: your existing photos are never read, browsed, or uploaded. If you use the share button, the image is handed to whichever app you choose, and that app's own terms then apply.

What we do not do

  • We do not sell or rent personal data, and we have not done so in the preceding 12 months.
  • We do not share personal data for cross-context behavioural advertising.
  • We do not use advertising or analytics SDKs, cookies, or device fingerprinting.
  • We do not track you across other companies' apps or websites, so the App does not request App Tracking Transparency permission on iOS.
  • We do not knowingly process data from children (see "Children" below).

Legal bases (EEA/UK users)

Where the GDPR applies, we rely on:

  • Legitimate interests (Art. 6(1)(f)) — for crash diagnostics and delivering requested content, so we can keep the App working and secure.
  • Consent (Art. 6(1)(a)) — for access to your location, photo library, and notifications. Consent is given through your device's permission prompts and can be withdrawn at any time in your device settings.

Users in Türkiye (KVKK)

If you are in Türkiye, we process personal data in accordance with Law No. 6698 on the Protection of Personal Data (KVKK). The processing described above rests on Art. 5/2(f) (legitimate interests) and, for device permissions, your explicit consent. You hold the rights set out in Art. 11 of the KVKK and may exercise them using the contact details below.

Retention

  • On your device: settings, your last location, and cached content stay until you clear them in the App or uninstall it. Uninstalling deletes all of it.
  • Crash diagnostics: retained by our provider for a limited period (currently up to 30 days) and then deleted.
  • We hold no user database. Because there are no accounts, there is no stored record of you for us to keep.

Your rights

Depending on where you live, you may have the right to access, correct, delete, or port your personal data, to object to or restrict processing, and to lodge a complaint with your data protection authority.

In practice, because we hold no account data about you, the most complete way to exercise deletion is to uninstall the App, which removes everything stored on your device. For anything else — including a request relating to crash diagnostics — contact us at the address below and we will respond within the period required by applicable law (30 days under the GDPR).

Children

Muslim Plus is not directed to children under 13, and we do not knowingly collect personal data from them. If you believe a child has provided us with personal data, contact us and we will delete it.

Security

Data on your device is protected by your device's own operating system protections. Network requests use HTTPS. No method of transmission or storage is completely secure, but because the App keeps personal data local and holds no central user database, the exposure from any single incident is limited by design.

International transfers

Our service providers (Supabase, Cloudflare, Better Stack, Google, OpenStreetMap) may process data in countries outside your own, including the United States and the European Union. Where required, transfers rely on the European Commission's Standard Contractual Clauses or another approved mechanism.

Changes to this policy

We may update this policy as the App changes. The "Last updated" date at the top will change, and material changes will be announced in the App. Continuing to use the App after an update means you accept the revised policy.

Contact

Hamza Arslan, trading as Şahid Medya
Email: sahidmedya@gmail.com
Address: Merkez Mah. Yeşiltepe Sk. Sarı Gelin Apt. No: 8, İç Kapı No: 10, 34782 Çekmeköy / İstanbul, Türkiye


If you access the App through the Apple App Store or Google Play, those stores collect their own data about downloads and purchases under their own privacy policies, which we do not control.