Privacy policy
Last updated:
This policy covers the Minare — Prayer Times app (on iPhone, iPad and Mac, including its Apple Watch app, widgets and Live Activity, and on Android, including its widgets and Live Update), the Minare Qur'an app and the minare.app website.
Minare — Prayer Times has no accounts; we do not ask for your name, email or phone number. The app sends us data only if you turn on the Live Activity on iPhone, and then only the anonymous details needed to move it forward (see below). In Minare Qur'an an account is optional and only needed for group khatm; what we process is set out below. Neither app uses ads, an advertising identifier, tracking or third-party analytics, and we do not sell data.
Data controller
The data controller under the Turkish Personal Data Protection Law No. 6698 (KVKK) and the EU General Data Protection Regulation (GDPR) is Mehmet Kalaycı, Kınıklı Mh. Hüseyin Yılmaz Cad., Pamukkale Teknokent, 20160 Pamukkale/Denizli, Türkiye. Contact: [email protected].
What stays on your device
Prayer times, the qibla direction, the Hijri calendar, the monthly timetable and nearby mosques are worked out on the device from data inside the app. No request is sent to a server for any of this.
We use your location only while you use the app and only if you allow it: to work out prayer times and the qibla, to find nearby mosques and to draw your route in Journey. The compass uses the device's heading sensor; that data is processed on the device.
Your saved locations, settings and notification preferences are stored on the device. So that widgets and the Live Activity work, they are kept in the app's own shared container (App Group); for the Apple Watch app they go directly from your iPhone to the watch. They are not sent to us.
Adhan notifications are scheduled on the device; no server is used to send them.
On Android, your saved locations and settings are kept in the app's own storage, and the widgets read them from there. Adhan notifications and the Live Update on the lock screen are scheduled on the device with Android's alarm service; neither Firebase nor any other notification server is used. If Android backup is on for your device, the app's data may be included in Android's own backup (in your Google account).
Live Activity (iPhone)
If you turn on the lock-screen countdown (Live Activity), the app sends the following to the server we run ourselves (katki.minare.app) so that the countdown can move on at each prayer time: a list of the coming days' prayer-time updates, the anonymous push token Apple issues for this Live Activity (APNs) and a random installation id created by the app. No account, name or coordinates are sent; the times reveal only your approximate city.
The server sends each update at its time through Apple's push service (APNs). Entries not yet sent are replaced each time the app updates the list, and deleted when you turn off the Live Activity setting. No entry is kept longer than 9 days (an 8-day schedule plus 1 day for cleanup); only the server's encrypted database backups may hold it for up to 30 days.
Apple Maps and map apps
To show the name of the place you are in (city, district) and to calculate routes in Journey, Apple's map service (MapKit) is used. These requests go to Apple and are subject to Apple's privacy policy; they do not reach us.
When you ask for directions to a mosque, the map app you choose (Apple Maps, Google Maps, Yandex, Waze) opens with the destination; that app works under its own policy.
Android: location, maps and routes
On Android, your location comes from the device's location service. To show the name of the place you are in (city, district), Android's address lookup service (Geocoder) is used; it is provided by your device, and on devices with Google Play services the request goes to Google and is subject to Google's privacy policy. These requests do not reach us.
Map images in the app are loaded from OpenFreeMap (tiles.openfreemap.org), which processes the requests for the map area shown and connection data such as your IP address under its own policy.
In Journey, the route is fetched from FOSSGIS's OpenStreetMap routing server (routing.openstreetmap.de) by sending the coordinates of the start and the destination. The mosques and prayer times along the route are worked out on the device.
When you ask for directions to a mosque or a destination, Google Maps or another map app on your device opens with the destination; that app works under its own policy.
Purchases (Minare Pro)
On iPhone, iPad and Mac, Minare Pro is bought through Apple; your payment details stay with Apple and never reach us. On Android, Minare Pro is bought through Google Play; your payment details stay with Google and never reach us.
We use RevenueCat, Inc. to verify your subscription. RevenueCat receives an anonymous app user id (created by RevenueCat on the device and not linked to your name or any account), purchase and subscription transaction details, and technical details such as the app version, operating system and store country. RevenueCat processes this data on our behalf to verify subscriptions.
Your Pro status is stored on the device for widgets and the Apple Watch (on Android, for widgets). The reminder shown 2 days before a free trial ends is also scheduled on the device.
Website
minare.app has no ads, tracking or analytics. Your browser keeps your theme choice and the last city you looked at (local storage and a one-year “city” cookie); the city cookie lets the home page show that city's times. When you sign in to the developer dashboard, two strictly necessary cookies keep you signed in: a short-lived access token and a refresh token valid for at most 90 days. They are hidden from JavaScript, sent only to minare.app and deleted when you sign out.
The khatm invite page reads the invite code in the link only in your browser and shows it; the code is not sent anywhere.
Hosting
The website runs on a server we manage ourselves and is delivered through Cloudflare. Cloudflare processes connection data such as IP addresses under its own policy to deliver the pages to you.
Minare Qur'an: account and khatm data
The reader, search and the reciters work without an account; bookmarks and your reading position are stored on the device. When you listen to or download a reciter, the audio files are fetched from everyayah.com, which processes the request (connection data such as your IP address) under its own policy; we do not receive this data.
When you create an account for group khatm, we process the following on the Minare Qur'an server we run ourselves (katki.minare.app):
- account: your display name, an optional profile photo and the public keys of your passkeys; no password is asked for, and the private part of a passkey never leaves your device and your password manager (such as iCloud Keychain or Google Password Manager),
- your email address: when you create an account on minare.app or add one later, verified with a 6-digit code we send to it; used to let you back into your account if you lose your passkeys and for notices about the service, never for marketing. Codes and notices are sent through Cloudflare Email Service,
- sync: while you are signed in, your bookmarks, reading position, reading settings and reading time, to keep your devices in step,
- khatms: the khatms you create or join, the dedication, the parts you take and complete, your reading progress,
- khatm chat: your messages and reactions, messages you report and people you block,
- trusted people: the trust links you make and QR code verifications,
- notifications: your in-app notifications and, if you turn on notifications, Apple's device token (APNs),
- your IP address: only briefly, to limit sign-in and sign-up attempts; it is not written to the database.
Minare Qur'an: deleting your account
You can delete your account inside the app: Profile › your account › Delete account. Deletion immediately removes your name, email address, passkeys, profile photo, device tokens, notifications, trust links, blocks, reactions, bookmarks and reading records, and signs you out everywhere. Khatms you organise pass to their longest-standing participant, or close if there is none.
To keep other people's khatms intact, your chat messages and completed parts remain, linked to a nameless account; your identity is no longer shown.
Developer account (API and MCP)
You sign in to the developer dashboard with a passkey, using the same account as Minare Qur'an; creating one takes a display name, an email address verified with a code and the public key of your passkey (see above). For the API and MCP we also process the following on the katki.minare.app server:
- API keys: the name you give, the first few characters of the key, and when it was created, last used and revoked; the key itself is shown to you only once, when it is created, and we keep only its SHA-256 hash,
- usage: per-key request counts per minute (deleted within an hour) and per-account request counts per day and per month; the content of requests (the city or date you ask for) and IP addresses are not written to the usage records,
- plan and subscription: your plan, the subscription status, the end of the period, and your customer and subscription numbers at the payment provider.
Payments (developer plans)
Paid developer plans are sold through Polar Software, Inc. (polar.sh). Polar is the merchant of record: it takes the payment, issues the invoice and handles taxes, and to do so processes the email, name, billing address and card details you enter on its checkout page under its own privacy policy. Your card details never reach us. We send Polar your account ID and the plan you chose; Polar tells us the subscription status.
Children
Minare is not directed at children and does not knowingly collect personal data from children. Minare has no accounts, so it does not ask for anyone's age.
Your rights and contact
Under Article 11 of the KVKK and the GDPR you have the right to access your data, to have it corrected or deleted, to object to its processing and to complain. Write to [email protected] for any request. You can also apply to the Turkish Personal Data Protection Board or to the data protection authority of your EU country.
Because Minare — Prayer Times has no accounts, we hold no record linked to you; Live Activity entries are anonymous and are deleted when you turn the setting off. You can remove the data on your device by deleting the app. You can delete your Minare Qur'an account inside the app. You can revoke your API keys in the developer dashboard at any time; to have your developer account data (email address, key records, usage counts, plan) deleted, write to [email protected]. Subscription records are kept by Apple or Google Play and by RevenueCat, and for developer plans by Polar.
If this policy changes, the new version is published on this page with its update date.