Privacy Policy
Last updated: · Website and app
Mishpatav Lenegdi Association (Registered Association No. 580648681), referred to below as the “Association,” operates the Mishpatav Lenegdi website at https://m-lenegdi.org/ and the Mishpatav Lenegdi app. The Association is the data controller for personal information collected and processed through the services for which it is responsible.
This policy explains what information is involved when you use the website and app, why it is used, where it is stored, who receives it, and the choices available to you. It covers My Account, the quiz, Moreh HaEmet Q&A, Et Lehashiv, the Siddur, daily times, downloads, donations, and inquiries to the Association.
App pathways: adults may use an online account shared by the app and the website’s personal area, with an encrypted synchronization copy. A local youth profile has no online account or network services. An independent website account that existed before it was linked to the app may remain separate after the link is deleted, as explained in section 17.
Contents
- Scope and Contact
- Providing Information and Your Choices
- Website Registration and My Account
- Information and Accounts in the App
- The Reasoning Quiz, Results, and Rankings
- Moreh HaEmet Q&A, Et Lehashiv, and Learning Content
- The Siddur, Daily Times, and Location
- App Permissions, Biometrics, and Reminders
- Donations and Support
- Inquiries, Mailing Lists, and Matchmaking
- Technical Information, Cookies, and Browser Storage
- Recipients and Service Providers
- Processing Outside Israel
- Purposes of Information Use
- Retention
- Information Security
- Access, Correction, Account Closure, and Deletion
- Children and Minors
- Information About Others and Public Sharing
- Policy Updates
- Contact
1. Scope and Contact
1.1. This policy applies to the services operated by the Association on all supported devices, alongside the Terms of Use. Privacy questions and requests may be sent to info@m-lenegdi.org.
1.2. When the app opens a web page, the sections describing website use also apply to that browsing. When you visit an external provider, its policy also applies. The Association’s responsibility for information it discloses and for its choice of providers remains subject to applicable law.
1.3. The app description in this policy refers to version 0.5.129, build 136. A new service or materially new use of information requires the policy and user notices to be updated before it is enabled.
2. Providing Information and Your Choices
2.1. As a rule, you are not legally required to give us personal information to browse open content. Providing details when registering, contacting us, donating, or using a personal service is voluntary. Without the details needed for a particular service, we may be unable to provide it, respond to your inquiry, or complete the action.
2.2. Accepting the Terms of Use is not blanket consent to mailing lists, location collection, or any additional use of information. Separate choices shown in the service and device permissions apply to their stated purposes. Continuing to browse does not replace express consent where it is required.
2.3. Do not send passwords, recovery keys, full payment-card details, or sensitive information that is unnecessary for your inquiry. If information about another person is needed, make sure you have permission or another lawful basis to provide it.
3. Website Registration and My Account
3.1. Registration through the website’s personal area involves providing a full name, email address, and password. Account management also involves an account identifier, sign-in details, user choices, and technical data needed for authentication, account operation, access recovery, and security.
3.2. An account provides the personal services available through it, such as saving content and returning to it. Choosing to save reading history and a reading position associates the content you read and your progress with your account, providing continuity across devices signed in to the same website account.
3.3. The registration form offers separate choices for receiving updates and saving reading history. You can register without selecting them. You can change your choice or request deletion through the available account controls or by contacting us. Turning off reading history does not, by itself, remove security records or quiz-attempt data.
3.4. Selecting a support level or donation frequency in My Account records your service preference; it does not create a charge by itself. A charge requires completion of the designated payment process.
3.5. A display name may appear alongside public activity, particularly in the quiz leaderboard described below. Email addresses are not intended to appear in the leaderboard. Choose a display name suitable for publication and avoid identifying details about children.
4. Information and Accounts in the App
4.1. Guest access to content does not require a birth date or an account. A person using a youth profile has an encrypted local profile. Personalization details, including birth date and form of address, remain optional and are stored on the device. An unlock password and recovery key protect the profile. This pathway does not register an online account or disclose those details to an account service.
4.2. Local profiles also store saved content, bookmarks, progress, and some Siddur and quiz settings on the device. The device’s profile registry and certain technical preferences are stored separately. The recovery key is shown to the user; the Association has no remote copy capable of restoring a deleted local profile.
4.3. Users aged 18 or over may use an account verified through email and password, an email code, Google, or Apple. The sign-in provider supplies Supabase with a user identifier, email address, and approved profile details, such as a display name. Your Google or Apple password is not disclosed to the app. Apple may supply a private relay address if you choose that option.
4.4. An adult user may link a verified phone number for SMS sign-in. The number is stored by Supabase’s identity service and disclosed to the SMS provider actually configured to send the code. Linking a number is not a subscription to a mailing list or WhatsApp.
4.5. For an online account, the app uses Supabase to synchronize an encrypted copy of the profile. This includes the name, birth date, country, city, and street address if you chose to provide them; personal preferences; bookmarks; favorites; results; study progress; and reading settings. The encryption key is managed by the server’s vault service and released only after account authentication. This is not end-to-end encryption against the service operator. The local unlock password, biometric key, and device location are not included in this copy.
4.6. Quick unlock uses the operating system’s secure vault. The app does not receive a face image, fingerprint, or biometric template. Signing out removes remembered-access and biometric keys from that device but does not delete the account. Deletion is described in section 17.
4.7. For adult users only, the app may refresh public menus and articles from the website. The server receives the IP address and technical request information. The refresh does not send account details, saved items, or quiz results. Titles, links, and article details are stored on the device for later viewing. Opening a full web article is a separate browsing action. Youth Mode does not make this network request or open external links.
4.8. Country and city of residence are optional when creating or updating an online account. They are not conditions of registration, sign-in, content access, or synchronization. If provided voluntarily, they are also stored in a private, protected account record for geographic analysis, understanding the service’s reach, and service planning. Street and house number are optional, excluded from the separate geographic record, and not used for geographic analysis. You can update these details in My Account.
5. The Reasoning Quiz, Results, and Rankings
5.1. The quiz includes learning and challenge paths, topic and difficulty choices, and children’s paths by age group. When using the website quiz, data sent to the quiz service may include an attempt identifier, selected path and age group, questions and selected answers, response times, attempt completion, score, and progress. The data operates the exercise, provides feedback, calculates results, and supports ranking where applicable.
5.2. Website practice without signing in also involves data. A visitor identifier used by the quiz service is stored in the browser and sent with service requests. Attempts and answers may be stored on the server for guests as well. Such an identifier does not require a name, but it is not a guarantee of complete anonymity.
5.3. When a signed-in user takes a path eligible for ranking, the result may appear in a public table under that path’s rules. The table displays a display name and achievement data, such as score or time. Children’s paths may be grouped by the selected age group. Others can view and copy public information.
5.4. To practice without association with an account’s leaderboard entry, use guest access. Before a child participates through an account or in a public ranking, involve a parent or guardian and choose a nickname that does not identify the child. Contact us with questions or to request removal of a public result. This does not mean a separate button to hide every result is currently available.
5.5. In the app, local quiz data is stored on the device according to the profile and is not automatically published to the website’s leaderboard. In Youth Mode, the quiz runs locally without a website account, public ranking, or transmission of results.
6. Moreh HaEmet Q&A, Et Lehashiv, and Learning Content
6.1. The services include searching, filtering, opening questions and answers, consulting sources, and copying or sharing prepared content. Website browsing may be included in the usage and measurement records described in this policy. Account-based saving of content or progress is handled according to your choice and the service.
6.2. A personal question or material sent through the Association’s contact channels is treated as an inquiry, not as public information merely because it was sent. Publication of an inquiry that identifies a person requires appropriate permission or another lawful basis. This policy does not grant blanket permission to publish private correspondence.
6.3. The content of an inquiry, study choices, reading history, and activity in Torah services may reveal or permit inferences about beliefs, views, and personal matters. Limit unnecessary details and consider the available saving and publication options.
7. The Siddur, Daily Times, and Location
7.1. The Siddur and daily-times tools may store display preferences, bookmarks, reading position, time zone, and geographic location, depending on the feature used.
7.2. On the website, granting browser location permission may allow the daily-times tool to receive precise latitude and longitude. The location and time zone are stored in the browser for reuse and sent with date information to Hebcal to calculate times and calendar events. That provider also receives technical communication details, such as the IP address.
7.3. Website location use also includes checking Shabbat and holiday dates for operation of the daily-times component. Information already stored in the browser may be reused on later visits. Revoking location permission prevents a new location from being obtained but does not necessarily erase a stored location. To remove it, also clear the website’s data in your browser settings.
7.4. In the adult app pathway, after a manual selection or location permission, latitude, longitude, time zone, and date are stored on the device and sent to Hebcal for calendar and time data. Account details are not sent with them. The last location may also be used for local calculations and reminders. In Youth Mode, these location and network services are blocked; only local date and calendar information is shown.
7.5. You can refuse location permission and continue using content that does not depend on it. Daily-times functionality depends on the data and options available in each service. Permissions can be changed in your browser or operating-system settings.
7.6. The country and city of residence in your account profile are separate from the daily-times location. The app does not infer them from GPS, use them to replace the prayer location, or send them to Hebcal. Changing either setting does not change the other.
8. App Permissions, Biometrics, and Reminders
8.1. If biometric unlock is selected for a local account, authentication uses the operating system’s mechanisms. The app receives an authentication result, not the fingerprint image or facial template stored by the system. Availability depends on the device and its settings.
8.2. Prayer reminders in this version are local notifications scheduled on the device at your request. They may require notification permission and, on Android, exact-scheduling settings. Enabling them does not automatically subscribe you to a mailing list or server-delivered content notifications.
8.3. For an adult who chooses lesson reminders or push notifications about new articles, Firebase Cloud Messaging processes an installation token and technical information needed for delivery. The token is linked to the account only after an express request and an authorization check. Firebase’s automatic initialization is disabled until that choice is made. This operation is blocked in Youth Mode.
8.4. You can change reminder choices in the app and permissions in device settings. Reminder and location settings may apply to the device and remain after sign-out. Disable them separately if necessary.
8.5. Opening a link, email, phone call, download, copy, or share action at your request may transfer information to the app you choose. For example, sharing through WhatsApp is also subject to that service and to your selected recipients.
9. Donations and Support
9.1. When you donate, the Association may receive your name, contact details, amount, date, payment method, reference, and information needed to issue a receipt, maintain accounts, or investigate a charge. Choosing an external donation route takes you to its payment provider.
9.2. Support channels shown on the website include Nedarim Plus and methods such as Bit and bank transfer. Payment details are provided through the selected channel and processed under its terms. Do not send full card details or a security code to the Association in an ordinary message.
9.3. Donation and receipt data may be retained after an account closes when required for accounting or by law. Account deletion or removal from a mailing list does not cancel a recurring donation; cancellation of the charge must be requested separately.
10. Inquiries, Mailing Lists, and Matchmaking
10.1. When you contact us by email, phone, or a messaging service, we receive the details you choose to provide and your message. These are used to respond, handle the request, and keep the records needed for that purpose. The email or messaging provider also processes information under its own policy.
10.2. The website’s registration form has a separate choice for receiving updates. When the mailing service is active and you choose to subscribe, your contact details are used to send the content described in that choice. Promotional messages or requests for support are sent only in accordance with your permission and applicable law. You can request removal using the message’s unsubscribe option or by contacting us; account deletion is not required.
10.3. Service messages needed to fulfill your request, protect your account, or handle a donation may be sent without a content-update subscription, subject to applicable law.
10.4. Matchmaking registration is open according to the server’s configuration. Voluntary enrollment is separate from general app use and follows the declarations, privacy provisions, and permissions described in the matchmaking addendum to this document. An old preference setting is not permission to publish a profile or disclose a phone number.
10.5. Information provided for matchmaking is not intended for publication on the website or in open groups. Details may be passed to a prospective match only within the permission given and for the purpose of an introduction. Before providing details, consider asking the service representative what will be shared and with whom. Requests to stop handling an introduction or remove details may be sent through the same channel or by email.
11. Technical Information, Cookies, and Browser Storage
11.1. Website browsing involves processing communication and usage data such as IP address, browser and operating system, device type, pages and requests, timestamps, referral source, errors, and security data. Measurement services may infer an approximate location from an IP address. This differs from permission to obtain a precise location.
11.2. The website uses cookies and local storage for sign-in, remembering preferences, component operation, and measurement. Local data includes a quiz visitor identifier, sound preference, and location saved for the times tool. Some information is stored without an account.
11.3. The website incorporates Automattic’s WordPress.com / Jetpack components, measurement based on Matomo through WPMU DEV, and external media and infrastructure components. Measurement components may receive visit, page, and communication information. Describing the website as using “essential cookies only” would not describe all these components.
11.4. You can block or delete cookies and site data through your browser. Blocking may affect sign-in and saved preferences. Additional management options, if offered by the service, follow your selection. This policy does not represent that every measurement component currently waits for approval in a consent dialog.
11.5. Deleting browser data does not erase information already sent to a server or external provider. Similarly, signing out does not remove the website’s data from the device.
12. Recipients and Service Providers
12.1. To provide the services, information is disclosed as needed to Supabase for authentication, databases, and storage; Google or Apple if you choose their sign-in; the SMS provider actually configured, if the service is active and a phone number has been added; Firebase if lesson reminders or new-article push notifications are enabled; Hebcal if an adult requests location-based calendar information; and hosting, maintenance, security, email, payment, and accounting providers as needed for the selected service.
12.2. WordPress.com / Jetpack components may process technical and visit data according to their functions on the website. Provider details appear in Automattic’s Privacy Notice for Visitors to Our Users’ Sites: https://automattic.com/privacy-notice/. WPMU DEV / Matomo provides measurement. Hebcal receives location and request data for website daily times, as described in section 7.
12.3. YouTube and Vimeo videos, Spotify players, messaging services such as WhatsApp and Telegram, source links, payment providers, and file-distribution services also operate under their own terms and policies. Loading an embedded external component may contact its provider without deliberately leaving the page. In the adult app pathway, Spotify loads only after the listening card is selected. YouTube videos may contain ads supplied by YouTube; the app does not include its own advertising SDK. The existence of an external link does not mean all account data is disclosed to it.
12.4. Information may also be disclosed to professional advisers, authorities, or courts where required or permitted by law, and to investigate misuse or protect rights, to an appropriate extent. Information may be disclosed to another recipient following an appropriate user request or authorization.
13. Processing Outside Israel
13.1. Internet, measurement, payment, media, and communication providers may process and store information outside Israel. Processing locations depend on the provider and service and may involve more than one country. Not all information displayed on the website is stored in Israel.
13.2. Transfers abroad of personal information for which the Association is responsible are subject to applicable transfer laws and appropriate arrangements with providers. A deliberate visit to an external service is also subject to its own transfer arrangements. Contact the Association with questions about particular information.
14. Purposes of Information Use
14.1. Information is used to operate accounts and requested services; save preferences and content; analyze country and city to understand the service’s reach and plan services; operate the quiz and display feedback and rankings; calculate times and reminders; answer inquiries; handle requested introductions; send selected updates; and process donations and receipts.
14.2. Technical information is also used for maintenance, usage measurement and service improvement, troubleshooting, and prevention of fraud and misuse. Information needed to comply with law, resolve a dispute, or protect rights is processed for those purposes. A materially new use inconsistent with the original collection purposes requires assessment, notice, and consent where required.
15. Retention
15.1. Retention depends on the information and purpose. Account details and saved personal items support the account; quiz attempts and rankings support history, scoring, and fair competition; inquiries support handling and follow-up; and donation data is also retained under accounting obligations.
15.2. Information is retained while needed for the stated purposes or required by law, not indefinitely merely because storage is possible. When there is no further need or basis for retention, the information must be deleted or appropriately de-identified. Data allowing indirect identification is not necessarily anonymous.
15.3. Deletion requests may be subject to retention of some information because of a legal obligation, a dispute, or a defined security need. Backups are not necessarily updated at the same time as the active system. In handling a request, we will explain the applicable exceptions and retention periods. Deletion by the Association does not ensure deletion of a copy someone else made from public information.
15.4. Local device or browser information is retained according to their settings until the relevant deletion or reset. Local data must be deleted on the device where it was stored.
16. Information Security
16.1. The Association is committed to handling information in accordance with law and taking appropriate protective measures based on the service and information involved. No system is completely immune to failures or unauthorized access. Describing encryption does not promise such immunity.
16.2. Choose a unique password, protect your device, sign out of the website on shared devices, and keep recovery keys secure without sharing them. You can report suspected unauthorized access without including a password or recovery key.
16.3. Any security incident will be handled according to the Association’s applicable obligations, including reporting or notification obligations where they apply.
17. Access, Correction, Account Closure, and Deletion
17.1. You may contact info@m-lenegdi.org to request access to personal information, correction, account closure, or deletion, according to law and the type of information. Do not send a password, one-time code, or recovery key.
17.2. Deletion in the app: an adult opens My Account > Manage Account > Delete Account and All Data, verifies ownership using the local password if one was set or the authenticated account connection, types the confirmation word shown in the interface, and confirms. After successful deletion, the Supabase identity, profile, country-and-city record, synchronization copy, website link and app data, reading history and saved items created through the app, lesson-board registrations, and notification tokens are deleted, followed by the local vault. If online deletion fails, the process stops and local data remains available for another attempt.
17.3. Deletion without the app: instructions and a request link are available at https://m-lenegdi.org/account-deletion/. You can send a request from the account’s email address. We will ask only for reasonable information needed to verify ownership and handle the request.
17.4. Local youth profile: Manage Account lets you delete the encrypted profile and all its local data from the device. This profile has no cloud account or cloud copy. The Association cannot remotely delete information held only on the device.
17.5. A WordPress account that existed independently before linking may remain a separate website account; the link and app data are deleted. You can also request deletion of the website account, subject to law and any independent content its owner published. A website account created solely for the app, with no independent content, is deleted when the technical conditions allow it.
17.6. Donation data, receipts, accounting records, dispute records, or information required by law may be retained only for the necessary purpose and period. Account deletion does not cancel a recurring donation. Operational logs may retain the event type and time after account identifiers are deleted or anonymized. Backup copies may remain temporarily until the normal backup cycle and will not be used to continue operating the account.
18. Children and Minors
18.1. Torah content, the Siddur, and local quiz paths are available to minors. A birth date supplied when setting up a youth profile is used on the device to determine Youth Mode; it is not identity-document verification.
18.2. Youth Mode does not create or link an online account and does not include email, phone, country, city, or street collection; social sign-in; cloud synchronization; website history; private lessons; server notifications; location services; external links; shopping; donations; inquiries; or matchmaking. Profile and activity details stay in the device’s local vault.
18.3. Parents and guardians are encouraged to supervise minors’ use and keep the profile password and recovery key appropriately. A parent who believes a minor’s information reached an online service can contact us for investigation, correction, or removal as appropriate.
19. Information About Others and Public Sharing
19.1. Do not provide another person’s personal information without permission or another appropriate lawful basis. This also applies to halachic questions describing an identifiable person, matchmaking inquiries, documents, dedications, and names in material submitted for publication.
19.2. When sharing content or joining a messaging group, check what other members or recipients can see. This policy does not give users permission to collect other participants’ personal information or use it for harassment or mailing lists.
20. Policy Updates
20.1. This policy will be updated to reflect changes in services, information processing, and law. The update date appears at the top. Material changes will be communicated appropriately, and additional consent will be requested where required.
20.2. Changing the wording does not, by itself, authorize a new use of information collected previously. Describing a future service neither activates it nor constitutes consent to it.
21. Contact
21.1. Mishpatav Lenegdi Association, Registered Association No. 580648681. Email: info@m-lenegdi.org. Phone: 055-688-1423. Please indicate whether your inquiry concerns the website, the app and its version, the quiz, a donation, or another service.
21.2. Related documents: Terms of Use and Accessibility Statement. These documents address users of all genders.
Team Management and Profile Review
Participants enter a birth date and declare that they are at least 18. An authorized reviewer manually checks the declared age, participation conditions, and content before approving publication. If age or details are uncertain, the profile remains pending until clarified. This process relies on a declaration and manual review, not automatic age verification.
Authorized managers can find a verified account using its complete email address and grant, change, or revoke manager or editor permissions within the matchmaking section. An explicit permission in that section takes precedence over a permission inherited from the app. Team lists are not stored for offline use or transferred to watches. Revoking a team permission does not delete the account or its permissions in other sections.
Body Care and Matchmaking — Introduced in Version 0.5.127
The movement and hydration log is local: activity type, duration, time, personal goal if selected, and water amount if reported. Timing an activity does not activate health, location, heart-rate, or calorie sensors. The log is not sent to the cloud. For an account, it is stored in the existing local vault; for a guest, in device storage. Activity is retained for up to one year and hydration for up to 30 days. Reports from a paired watch are protected and retained until acknowledged by the correct profile, and the latest summary is sent to the watch. Deleting a local profile deletes its log.
Matchmaking registration is open according to server status. Separate, voluntary enrollment includes a private birth date, profile details and preferences, an explicitly versioned sensitive declaration of faith, eligibility confirmation, and publication consent. Phone verification uses the existing online account. Profiles are available only to participants whom the server permits to view them under the section’s rules. A number is disclosed only after both people expressly consent to that pair and the current number, followed by a fresh authorization check when it is displayed.
A manager or editor whose matchmaking permission has been verified by the server can access management tools even if marked as married. Server verification of a role does not publish a personal profile. Reports and management decisions are restricted to authorized staff. Deleting participation removes the profile, draft, and consents without deleting the learning account. A draft not saved for 90 days is deleted automatically. A submitted or participating profile remains until deletion from the active system is requested. An open report remains until handling is complete; the report and handling record are then retained for 180 days. A decision record unrelated to a report is retained for 180 days from the decision. Blocks remain while the accounts exist, including after profile deletion, to prevent evasion. Deletion from the active system does not immediately remove existing backups or information already received by another person. Screens do not store other people’s numbers or profiles in browser storage and hide them when the app enters the background or loses connectivity. Information already disclosed to someone else cannot be retrieved.
Automatic Website Synchronization — Introduced in Version 0.5.115
A verified online account is linked to the website identity using its verified email. The app automatically synchronizes saved articles and reading progress; history follows the website’s retention and deletion settings. Offline actions wait inside the same account’s encrypted vault. Q&A is public content updated from the website and stored on the device for guests as well. Public content requests do not include an account token.
When you deliberately select website sign-in, a one-time link valid for two minutes is created. An encrypted account access token is stored temporarily on the server for revalidation. The link does not contain the account token, is removed from the address bar when opened, and requires confirmation of the email address in the browser. Sign-in is retained through a secure authentication cookie, subject to expiry, sign-out, and revocation. Guest Mode sends no personal information for this synchronization.
Personal Study and Article Updates — Introduced in Version 0.5.80
Study reminders use the plan and completion marks saved in the account. For local scheduling, the device stores the profile identifier, plan, completed unit numbers, and reminder times. Signing out or changing accounts cancels or replaces that schedule. A Moment of Knowledge selects passages from completed chapters and previously answered questions on the device; the selection does not change scores or study marks.
In-app article updates store lists of seen articles and unopened articles in the account. Article push notifications are a separate choice for adults with a linked account, available only when the service is operational. Delivery uses a server record of the device token, device type, account link, and authenticated session. Notification text is general and does not include study history. Each type of update can be disabled separately. Account deletion or server-side session revocation removes the device registration and associated queue.
Optional Profile Details — Updated for Version 0.5.129 (Build 136)
Country, city, gender, birth date, and marital status are optional. You can register and use an account without providing them. Country and city, if volunteered, are used for personalization and to understand the service’s reach. Country is stored as a standard country code and city as entered, allowing geographic analysis, service planning, and improvement. Completing these details is not mandatory, and sign-in, content, and synchronization do not depend on them.
Street and house number are optional. Country and city are kept in a private, protected Supabase record linked to the account and in the encrypted profile for continuity across devices. Street information is not included in the separate geographic record or used for geographic analysis. If entered, it is included only in the encrypted on-device profile and encrypted synchronization copy. These details do not come from GPS, do not change the prayer-times city, and are not sent to Hebcal. Local youth profiles do not collect country, city, or street.
Google Play App Updates
The Android app can check for and download updates through Google Play. For this check, Google’s update service processes technical information about the device, app version, and installed components. Our update mechanism does not send vault contents, account details, or reading history to Google. The offered version and the time you dismissed the offer are stored on the device to avoid showing it too often. In-app update checking is not enabled in Youth Mode.
Existing Profiles, Accounts, and Deletion
Open content is available as a guest without registration or personal details. Regular sign-in and Guest Mode do not require a birth date or personal details unnecessary for sign-in. Birth date is optional and used for personalization if provided. Previously configured local youth profiles retain their restrictions. A user under 18 has an encrypted local profile only, without email, phone, Google or Apple sign-in, Supabase or WordPress account, cloud synchronization, website history, private lessons, server notifications, precise location, external links, shopping, donations, inquiries, or matchmaking. Torah content, the Siddur, and local quizzes remain available. The date and profile stay on the device and can be deleted through Manage Account.
Adults can use verified email, Google, or Apple accounts, with optional phone linking for SMS sign-in. The profile, saved items, and progress may be kept in an encrypted cloud copy. Deletion through Manage Account requires express confirmation and proof of ownership, using the local password if set or the authenticated connection if no local password is set. It deletes the sign-in identity, synchronization copy, website links and app data, lesson-board data, and notification tokens. Only after online deletion succeeds is the on-device vault deleted. Instructions for deletion without the app are at https://m-lenegdi.org/account-deletion/.
Google, Apple, or verification-code sign-in does not require a new local password. A random data key encrypts the on-device copy and is also protected by the account key supplied after authentication. Registration ends with saving the encrypted profile to the cloud; a save failure is shown explicitly. After uninstalling the app, only synchronized information can be restored by signing in to the same verified identity. Linking a phone is optional after account verification and completes only after the server verifies the SMS code.
Hydration Reminders
Hydration reminders are an optional My Account feature, with yes/no responses and amounts in milliliters. Entries remain in the local profile. When the feature opens, records older than 30 days are removed. They are excluded from cloud synchronization. Account entries use the encrypted vault; guest entries use local storage. Notification responses are held temporarily in protected device storage until the profile opens. You can undo an entry or disable reminders; changing profiles disables them. On a paired watch, notifications and responses use the operating system’s mirroring services. There is no connection to HealthKit or Health Connect.
Quizzes at the End of Articles
Quiz content comes from the public website. Answers and progress are saved in the device’s local profile and, for a local account, in the existing encrypted vault. They are not sent to the website or cloud. At your request, only the public quiz content may be sent to a paired watch. Watch practice answers remain in the screen’s memory and do not synchronize back to the phone. You can delete phone quiz progress from the quiz card.
Donor Acknowledgments and On-Device Translation — Introduced in Version 0.5.128
The acknowledgment list is managed manually by the authorized account owner only. Records include a name for management purposes, amount, currency, donation-receipt date, and separate consents to publish the name, publish the amount, and participate in rankings. A donation is not published before receipt is confirmed and publication is selected. Information not approved for publication is excluded from the public-list response. You may ask the Association to withdraw publication or change consent. Do not enter payment-card or bank-account details in this section.
Translation uses Google Translate through ML Kit on the phone. Text is passed to the on-device engine, not sent to a cloud translation service. Language packs are downloaded from the provider only after an explicit choice and can be deleted in the translation screen. The provider may process operational and diagnostic data under ML Kit’s terms. Translations are temporary screen content; they do not synchronize to the account or go to the watch. The engine is not asked to download all languages in advance.
The Watch App and Its Stored Information
Reading open content does not require registration. Gender, birth date, marital status, country, and city are optional and may be left blank. The watch library stores the text size and reading position locally, separately from the account and study progress on the phone.
When connected to a paired watch, the phone sends Shabbat Mode time windows, a location description, and the time zone for displaying when Shabbat ends. Precise coordinates are not sent to the watch. You can disable scheduling and remove the location on the phone; open the apps and allow the connection to deliver the update.
Watch reminders require your selection and operating-system permission. The phone sends up to 60 scheduled times covering up to 20 days, with the reminder topic and sound choice, but without account details, completion data, or coordinates. Disabling reminders on the phone or removing the study account takes effect on the watch when a new schedule is received; reminders can also be disabled directly on the watch. Phone-notification mirroring is controlled separately in system settings.
Inspiration Treasury images and catalog updates are loaded from the website over HTTPS, without sending the app account or authentication files. The server receives the IP address and ordinary network-request data. Text content is stored for offline reading. Clearing the watch app’s data or uninstalling it deletes its local preferences.
Interface Languages and Language Preference — Build 136
You can choose Hebrew, English, Russian, or the device-language default. The interface-language preference is stored on the device separately from the user account, so it may remain after signing out or switching accounts. You can change it in Settings. When the connection to a paired watch is active, the language choice is also sent to the watch to adapt its interface. For a device explicitly enrolled in push notifications, the active interface language is also sent to the server and stored with that device’s notification enrollment so messages can use the appropriate language. Changing language does not enroll the device in notifications. Updating the language on the server requires a connection and a verified account.
Choosing English or Russian for the interface displays translations included in the app; it does not send books, prayers, or articles to a translation service. Content translation through ML Kit is a separate action you choose, as described in the on-device translation section. Choosing a language within a policy document does not itself change the saved interface language.
The Hebrew and English Siddur editions are selected separately from the interface language. The same choice is available at the top of the Siddur and in Appearance settings. Each edition retains its own text and controls; selecting a Russian interface does not create a Russian translation of the Siddur.