Qasas Atlas · Your information
Privacy policy
Reading can start without an account. Questions and answer narration are separate choices.
Effective: 2026-09-14
This policy covers the Qasas Atlas iPhone app and these support pages. The operator and data controller is Rehan. Contact us at haani0090@gmail.com.
Information we handle
Reading and device storage
The app stores reading and listening progress, saved passages, preferences and question drafts on your device. Downloaded journeys include their available text, source records, artwork and audio for offline access. Local data is separated by guest or account context. Signing out does not itself request deletion of your cloud account or erase every saved account record on that device.
When you choose account sync, saved passages, progress and reader preferences are associated with your account in Convex. Question drafts and the device's AI permission setting are not part of library sync. Your saved passages are selections from the library, not public posts.
Authentication
Apple and Clerk provide sign-in. Qasas requests your email through Sign in with Apple; you may use Apple's private relay option. Account identifiers and session information connect your library and subscription. Qasas does not receive your Apple Account password.
Clerk also receives a device identifier, device model, operating-system and app versions, and session details for authentication and account security. The SDK can send these request details before you sign in. These identifiers are not used by Qasas for advertising. Optional Clerk development-usage telemetry is disabled in the app.
To disconnect Apple authorization when you delete your account, the backend exchanges the one-use authorization code and stores an encrypted Apple refresh credential. Pending authorization can be held temporarily in this app's device-only Keychain while registration finishes. Registration and deletion status records allow interrupted operations to recover. Encrypted credentials are removed after confirmed revocation; a failed revocation keeps them available for retry.
Subscriptions
Apple handles payment. RevenueCat processes purchase history, transaction and subscription status, and an app user identifier; Convex stores the access needed to allow subscribed features. Subscription reporting helps us operate the service and understand purchases. Qasas does not receive your full payment-card details.
Support, security and network requests
If you contact support, we receive your email and anything you choose to send. Our hosting and service providers process the network and operational information needed to serve requests and protect their systems, which can include IP addresses, timestamps, device or browser details, and error records. TestFlight feedback and crash reports can also be shared through Apple under its testing service.
These static pages use no forms, analytics scripts, advertising pixels, third-party fonts or browser storage. The app does not request contacts, precise location, photos or microphone access for the features described here. Qasas does not record your voice.
Optional questions and answer narration
Questions processed by Anthropic
If you grant permission and submit a question, the backend sends the question and selected published source passages to Anthropic's Claude API. A second Claude request checks the proposed answer against those passages and also receives the question, proposed answer and citations. Chapter questions use that chapter's source material. Prophet questions use the published profile's primary sources and eligible immediate-family evidence. The request does not include your private library or saved passages.
The app labels the result as an AI-generated explanation. Citations and a separate automated check help you examine it; neither makes it an authoritative religious ruling or establishes human or scholarly approval. If evidence or verification is insufficient, the app may return no answer.
Qasas stores the accepted answer, its citations and source snapshots, a hash of the question, request status, timestamps, verification results and limited provider receipt metadata in your account. A question hash is still account-related information. The application database does not store the original question text as a question record, but the text passes through the backend and Anthropic, and a draft can remain on your device. Answers can reflect information you included in a question.
Voice processed by ElevenLabs
Choosing Listen after an eligible answer opens a separate disclosure. Only after you allow it does Qasas send the final answer to ElevenLabs to create synthetic narration. Your earlier Claude permission does not silently permit this voice request. The speech request does not include the original question or saved passages, although the answer may reflect the question. Prepared story narration also uses ElevenLabs, with editorial scripts rather than your personal questions.
Personal answer audio is stored in a private Cloudflare R2 bucket, associated with your account and answer, and delivered through temporary authenticated-access links. Anyone who obtains a still-valid signed link may be able to use it, so do not share those links. The app checks downloaded bytes and audio before playing a temporary local copy. Answer playback is foreground-only and stops when the question sheet is dismissed or the account changes. Story downloads and background story playback have a separate lifecycle.
What to leave out
What you read or ask can reveal religious interests or beliefs. Keep questions about the cited material. Do not enter passwords, payment information, private health details, personal confessions, or information about someone else that you do not have permission to share. Questions and answers are not a confidential counselling service.
Provider processing has its own retention and data-use rules. Anthropic's published API policy describes standard input/output retention of up to 30 days, with exceptions for applicable models, agreed terms, safety enforcement and legal obligations. ElevenLabs' retention and model-improvement use depend on the service and workspace settings; its linked information explains those choices. Qasas does not promise provider-side zero retention, a training opt-out that has not been established for the active workspace, or immediate erasure of data already sent. Contact us if you need details before choosing an AI feature.
Why information is used and who receives it
We use the information described above to deliver the features you choose, secure accounts, check subscription access, recover interrupted requests, handle support and meet legal obligations. Where data-protection law requires a legal basis, providing requested account and subscription services relies on performing our agreement with you; proportionate security, service reliability and support rely on legitimate interests; and legally required records rely on legal obligations. Optional AI sharing is based on your permission. You can withdraw that permission for future requests as described below. We do not use your reading or questions to build advertising profiles or infer a religious identity for marketing.
- Apple
- Sign in with Apple, App Store transactions, subscription management and TestFlight. Apple privacy information.
- Clerk
- Account and session authentication. Clerk data processing agreement.
- Convex
- Backend execution, account library, request records and access checks. Convex data processing agreement.
- RevenueCat
- Subscription verification and purchase reporting. RevenueCat privacy information.
- Anthropic
- Optional question generation and automated source checking. Anthropic API retention information.
- ElevenLabs
- Prepared narration and separately permitted answer speech. ElevenLabs privacy policy and data-use settings.
- Cloudflare R2
- Private narration and answer audio storage and delivery. Cloudflare privacy information.
- Cloudflare Pages
- Hosting these public pages and processing the technical requests needed to deliver and protect them.
Some providers act on our instructions under their service agreements; Apple and providers may also handle information for their own payment, security or legal purposes. Their linked notices describe those practices. Qasas does not sell your personal information or share it for cross-app advertising. Necessary disclosures may occur to comply with law, protect people and the service, or support a business transfer subject to appropriate privacy protections.
International processing
Providers can process information outside your country, including in the United States. Their data-processing agreements describe the locations, subprocessors and contractual safeguards that apply to their services. We do not promise that all Qasas data stays in one country. Where a restricted international transfer requires safeguards, the relevant provider arrangements and applicable data-protection requirements govern that transfer. Contact us for information about the arrangements relevant to your data.
How long information stays
Your synced library, accepted answers and personal answer audio remain associated with your account while needed to provide those features and until account deletion, unless removed earlier. The current service has no automatic short-term expiry for accepted answers or their stored audio. An expiring media link is an access control, not a promise that the stored file has been deleted.
Local question drafts and saved reading remain on the device until replaced or removed through the applicable device/account cleanup. Answer audio temporary files are removed when the answer controller is cleared; files left by an interrupted process are cleaned on the next answer-controller start. Device and operating-system backup behaviour is separate from deletion on our live service.
Support correspondence is kept while needed to resolve the request, document the resolution and address related legal or security matters. Operational logs and backups follow the relevant provider schedules and may persist after live records are removed. We assess retention against the purpose, whether the account or issue is active, legal requirements and the need to prevent misuse. We do not promise a single deletion deadline across all provider systems. Restricted security records and unresolved deletion work are described below.
Deleting your account
Open Atlas → Account → Delete account and confirm the request. If you cannot access the app, contact haani0090@gmail.com; we may need to verify ownership before helping. Deletion is available separately from subscription management.
Once the server accepts deletion, the account loses access to private operations. The app begins removing the account's local library and downloads and retains a private receipt so you can check progress. The backend removes personal library and question records, removes private answer audio, revokes available Apple credentials, deletes the Clerk account and requests RevenueCat customer deletion. Shared editorial content is not your private account data and can remain with pseudonymous review history.
Deletion may stay pending while work already in progress settles. For answer voice, cleanup waits until the 15-minute settling window from creation of that voice job has passed, so a late upload can be removed. This is not a promise that all deletion finishes within 15 minutes: provider failures, retries and backups can take longer. A completed Qasas receipt means our recorded cleanup and provider-request stages succeeded; RevenueCat's internal erasure can continue after accepting its deletion request.
The app reports Apple disconnection separately. If it cannot revoke a legacy Apple authorization automatically, it provides Apple's disconnection instructions. Minimal account/request hashes, status and timestamps remain to prevent old sessions or delayed purchase events from recreating the account and to recover deletion. These security records have no automatic expiry in the current implementation. Encrypted authorization material is retained while revocation requires a retry. Provider safety, legal and backup retention is not erased instantly by deleting Qasas.
Deleting Qasas or its account does not cancel an App Store subscription. Use Apple's subscription settings to manage renewal. Apple keeps its own purchase records.
Your choices and rights
You can read the available free journey without creating an account. You can decline optional questions, disable Allow AI questions in Your account, decline a prophet question disclosure, or decline voice narration. Declining these choices does not start a subscription or prevent ordinary free reading. Withdrawing permission stops future optional requests; it cannot undo a request already sent.
Depending on your location, you may have rights to access, correct, delete or receive a portable copy of personal data; restrict or object to its use; and withdraw consent where consent is the basis. Contact haani0090@gmail.com. We may verify identity and explain any lawful limits. You can also complain to the relevant data-protection authority. If you are in the UK, the ICO explains how to complain.
Qasas does not use answers to make legal or similarly significant decisions about you. Subscription access is checked automatically against purchase status; contact support if it appears wrong.
Age and changes to this policy
Qasas is a general educational service rather than a child-account service. Parents or guardians should supervise a child's use, especially optional accounts, purchases and AI features. We do not ask a child to provide personal details in a question. If you believe personal information from a child was provided without the permission required by applicable law, contact us so we can investigate and arrange appropriate removal. An App Store age rating is a content rating, not consent to personal-data processing.
We will update this page when the service or its data practices change, with a new effective date. Where required, we will provide an additional notice or obtain a fresh choice before a new optional use.