Privacy Policy
Last updated: August 24, 2026
This Privacy Policy explains how JM Tech LLC (“Trinity,” “we,” “us,” or “our”) collects, uses, shares, and protects information about you when you use the Trinity mobile application and related services (the “App”). By creating an account or using the App, you agree to the practices described in this policy.
1. Information We Collect
Information you provide to us
- Account information. When you create an account, we collect your email address and a password. If you sign in with Google or Apple, we receive your name and email address from that provider instead. Passwords for email accounts are handled securely by our authentication provider and are never stored by us in readable form.
- Profile information. A display name you choose during onboarding or in your profile.
- Spiritual activity and content. Information you create while using the App, including your prayer rule, Bible and prayer reading progress, reading streaks, custom prayers you write, verse highlights, notes and favorites, fasting and church-attendance records, milestones and progress insights, and your reminder (notification) preferences.
- AI Guidance messages. The messages you write in the App’s Guidance chat. These are handled as described in Section 6: AI Spiritual Guidance — we do not store their content.
- Communications. If you contact us for support, we receive your email address and the contents of your message.
Information collected automatically
- Device and technical data. When you use the App, our service providers may automatically collect technical information such as a device or installation identifier, device type and operating system version, app version, language and region, and basic diagnostic, crash, and performance data. This helps us operate the App, keep it secure, and fix problems.
- Subscription and purchase data. When you purchase a subscription, the transaction is processed by Apple. We and our subscription providers receive purchase records and subscription status (for example, whether a subscription is active, renewed, or expired) and an anonymous purchase identifier. We do not receive or store your full payment-card details — payments are handled entirely by Apple.
Information stored only on your device
Some information stays on your device and is not transmitted to us, including biometric settings used for Face ID / Touch ID sign-in (handled entirely by your device’s operating system; we never receive your biometric data) and the onboarding questionnaire answers used to generate your initial plan.
2. How We Use Your Information
We use the information described above to:
- Create and manage your account and authenticate you when you sign in;
- Provide the App’s core features and save your spiritual activity so it syncs securely across your devices and is restored if you reinstall the App;
- Send the reminders and notifications you have enabled;
- Process and manage subscriptions and verify entitlements;
- Provide the Guidance feature’s AI-generated responses and enforce its daily message limit;
- Respond to your support requests and communicate with you about the App;
- Maintain the security and integrity of the App, prevent abuse, and debug and improve performance;
- Comply with legal obligations and enforce our terms.
3. Legal Bases for Processing (EEA / UK Users)
If you are in the European Economic Area, the United Kingdom, or Switzerland, we process your personal data only where we have a legal basis to do so. The basis depends on what we are doing and why:
- Performance of a contract (Art. 6(1)(b) GDPR) — creating and authenticating your account; storing and syncing your spiritual activity across your devices; providing the Guidance feature; processing and verifying your subscription; responding to your support requests.
- Consent (Art. 6(1)(a) GDPR) — sending push notifications and reminders, which you enable yourself and can switch off at any time in the App or in your device settings. Where we rely on consent, you may withdraw it at any time; doing so does not affect the lawfulness of processing carried out before the withdrawal.
- Legitimate interests (Art. 6(1)(f) GDPR) — keeping the App secure, preventing abuse and fraud, enforcing the daily Guidance message limit, diagnosing crashes, and improving performance and reliability. We rely on this basis only where our interests are not overridden by your rights and freedoms, and we have assessed that balance for each such use.
- Compliance with a legal obligation (Art. 6(1)(c) GDPR) — retaining records where law requires it and responding to valid legal requests.
We do not process special categories of personal data under Art. 9 GDPR. Your use of the App may reveal religious observance, but we ask you only for the practical records the App needs to function (readings, prayers, fasts, attendance) and we process them on the bases above, as data you have manifestly chosen to provide to operate a devotional tool you selected. We do not infer, profile, or share religious characteristics, and we do not use this data for advertising.
4. How We Share Information
We do not sell your personal information, and we do not share it for cross-context behavioral advertising. We share information only in the following limited circumstances:
- Service providers. With the trusted vendors listed in the next section, who process data on our behalf to provide authentication, cloud storage, subscription management, AI-generated guidance, and similar functions, under contracts that require them to protect your information.
- Legal and safety. When required by law, regulation, legal process, or governmental request, or to protect the rights, property, or safety of our users, the public, or us.
- Business transfers. In connection with a merger, acquisition, financing, or sale of assets, your information may be transferred as part of that transaction, subject to this policy.
5. Third-Party Services
The App relies on the following third-party services. Their handling of your data is governed by their own privacy policies:
- Google Firebase (Authentication and Cloud Firestore database) — account authentication and secure cloud storage of your account and spiritual activity data. See the Firebase Privacy and Security information and the Google Privacy Policy.
- Google Sign-In — optional sign-in using your Google account. See the Google Privacy Policy.
- Sign in with Apple — optional sign-in using your Apple account. See the Apple Privacy Policy.
- Apple App Store / StoreKit — processes your subscription payments. See the Apple Privacy Policy.
- RevenueCat — manages subscription entitlements and purchase status. See the RevenueCat Privacy Policy.
- Superwall — presents and measures subscription offers (paywalls). See the Superwall Privacy Policy.
- OpenAI — generates the responses in the App’s Guidance chat. OpenAI receives conversation text only, with nothing that identifies you, as described in Section 6. See the OpenAI Privacy Policy.
6. AI Spiritual Guidance
Trinity includes a feature called Guidance, an AI spiritual-guidance chat. Guidance is powered by OpenAI, using the gpt-4.1-nano model through OpenAI’s chat completions API. Because using it means text you write is sent to a third-party AI provider, we describe that handling in full here.
How Guidance works
The App never contacts OpenAI directly. When you send a message in Guidance, your device sends it to a Firebase Cloud Function that we operate, and that function makes the request to OpenAI on our behalf. Tapping one of the six suggested topic cards sends a pre-written question in exactly the same way, before you have typed anything.
What is sent to OpenAI
- The text of the message you send;
- Up to the last 12 messages of your current conversation — your earlier messages and the earlier replies — so that the response follows the thread;
- A fixed system prompt that we write and control.
What is not sent to OpenAI
- Nothing that identifies you. Your name, email address, account or user ID, and device identifiers are not sent. Your Firebase sign-in token and user ID stop at our Cloud Function and are never forwarded to OpenAI, and we do not set the optional user-identifier field on the OpenAI request.
- None of your spiritual activity data. Your prayers, readings, streaks, goals, and check-ins are never sent to OpenAI.
OpenAI receives conversation text only, with nothing that identifies the person who wrote it.
What we retain
We do not store the content of your Guidance conversations. A conversation exists in memory on your device while the screen is open; it is not written to Firestore or to any server of ours. The only thing we store is a per-user daily message counter — a date and a number, with no message content — which we use to enforce the daily usage limit.
What OpenAI retains
Data sent through OpenAI’s API is not used to train their models by default, and their abuse-monitoring logs are retained for up to 30 days. We do not enable OpenAI’s conversation-storage option, so no application state is retained on their chat completions endpoint. See how OpenAI handles API data. OpenAI’s handling of the information it receives is governed by the OpenAI Privacy Policy.
Important limitations
You are interacting with an artificial-intelligence system, not a person. Guidance responses are machine-generated and may be inaccurate, incomplete, or misleading. They are not reviewed by us before you see them, and they do not represent the teaching of any Church or jurisdiction. Guidance is not a substitute for a priest, a confessor, or a qualified medical or mental-health professional, and it should not be relied on as one. For anything of real weight, please speak with your priest or an appropriate professional.
Guidance does not make any automated decision about you that produces legal effects or similarly significantly affects you within the meaning of Art. 22 GDPR. It does not evaluate, score, rank, or profile you, and its output does not change your account, your subscription, or the features available to you.
7. Data Retention
We retain your account and activity data for as long as your account remains active so that your information is available across your devices. Your spiritual activity records are kept on a rolling window (currently up to approximately two years of daily history). When you delete your account, we delete or anonymize your personal data within a reasonable period, except where we are required to retain it to comply with legal obligations, resolve disputes, or enforce our agreements.
8. Data Security
We use industry-standard safeguards to protect your information, including encryption in transit, authenticated access controls, and reputable cloud infrastructure. Sign-in is protected by rate limiting, and you may enable Face ID / Touch ID for an additional layer of protection on your device. No method of transmission or storage is completely secure, however, and we cannot guarantee absolute security.
9. Your Rights & Choices
Depending on where you live, you may have the right to access, correct, update, or delete your personal information, to object to or restrict certain processing, and to request a portable copy of your data. You can:
- View and update your display name and preferences directly in the App;
- Control push notifications in the App’s settings and in your device’s system settings;
- Manage or cancel your subscription through your Apple ID account settings;
- Delete your account, and the data associated with it, from within the App at any time (see Section 10);
- Request access to or deletion of your data by contacting us (see below).
We will not discriminate against you for exercising any of these rights. To make a request, contact us at contact@jmtechlab.com. We may need to verify your identity before fulfilling certain requests.
If you are in the EEA, UK, or Switzerland
Data protection law gives you the following rights over your personal data. They are free to exercise, and we will respond within one month, which we may extend by two further months for complex requests, telling you if we do.
- Access (Art. 15) — obtain confirmation of whether we process your data and receive a copy of it.
- Rectification (Art. 16) — have inaccurate data corrected and incomplete data completed.
- Erasure (Art. 17) — have your data deleted where one of the grounds in the GDPR applies.
- Restriction (Art. 18) — require us to limit our processing while, for example, a dispute about accuracy is resolved.
- Portability (Art. 20) — receive the data you provided to us in a structured, commonly used, machine-readable format, and have it transmitted to another controller where technically feasible.
- Objection (Art. 21) — object at any time to processing based on our legitimate interests, on grounds relating to your particular situation. We will stop unless we can demonstrate compelling legitimate grounds that override your interests, or the processing is needed for legal claims.
- Withdraw consent (Art. 7(3)) — withdraw consent at any time where we rely on it, without affecting processing already carried out.
- Not be subject to automated decision-making (Art. 22) — we do not carry out any such decision-making, as explained in Section 6.
You also have the right to lodge a complaint with a supervisory authority, in particular in the EU or EEA country where you live, work, or where you believe an infringement occurred. A list of national authorities is published by the European Data Protection Board. In the United Kingdom the authority is the Information Commissioner’s Office. In Switzerland it is the Federal Data Protection and Information Commissioner. We would appreciate the chance to address your concern first, but you are not required to contact us before complaining.
10. Deleting Your Account
You can delete your Trinity account at any time from inside the App, in your account settings. Deleting your account removes your account record and your synced spiritual activity data — your prayer rule, reading progress, streaks, custom prayers, highlights, notes, favorites, fasting and attendance records, and your stored Guidance message counter — from our systems, subject to the limited retention described in Section 7. This action is permanent and cannot be undone.
If you would rather not use the in-app control, or you can no longer sign in, you can also request deletion by emailing contact@jmtechlab.com from the address associated with your account.
Deleting your Trinity account does not cancel your subscription. Subscriptions are billed by Apple and must be cancelled separately through your Apple ID account settings, as described in our Terms of Use.
11. Children’s Privacy
Trinity is not directed to children under the age of 13 (or the minimum age required in your country), and we do not knowingly collect personal information from them. If you believe a child has provided us with personal information, please contact us and we will take steps to delete it.
12. International Data Transfers
We and our service providers process and store information in the United States and in other countries whose data-protection laws may differ from those where you live. Google (Firebase), Apple, RevenueCat, Superwall, and OpenAI all process data in the United States.
Where we transfer personal data out of the EEA, the United Kingdom, or Switzerland, we rely on the safeguards permitted by law for that transfer — in practice the European Commission’s Standard Contractual Clauses, together with the UK International Data Transfer Addendum for UK transfers and the Swiss addendum for Swiss transfers, supplemented by technical and organisational measures such as encryption in transit. Where a recipient is certified under the EU-US Data Privacy Framework and its UK Extension or Swiss-US counterpart, we may rely on that certification instead. You may request a copy of the relevant safeguards by contacting us at contact@jmtechlab.com.
13. California Privacy Rights
If you are a California resident, the California Consumer Privacy Act (CCPA/CPRA) gives you the right to know what personal information we collect and how we use it, to request access to or deletion of that information, to correct inaccurate information, and to not be discriminated against for exercising your rights. We do not sell or share your personal information as those terms are defined under California law. To exercise your rights, contact us at contact@jmtechlab.com.
14. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will revise the “Last updated” date at the top of this page and, where appropriate, provide additional notice within the App. Your continued use of the App after changes take effect constitutes acceptance of the updated policy.
15. Data Controller & EU Representative
The data controller responsible for your personal data under the GDPR and the UK GDPR is:
- JM Tech LLC
- Registered address: 1600 E. Thacker St, Des Plaines, IL 60016, United States
- Email: contact@jmtechlab.com
We have not appointed a Data Protection Officer, as we are not required to do so under Art. 37 GDPR. Privacy questions and data subject requests are handled directly by us at the address above.
EU Representative (Art. 27 GDPR)
Trinity is not currently offered in the 27 European Union territories, and we have therefore not appointed a representative in the European Union under Art. 27 GDPR. If we make the App available in the EU, we will appoint a representative established in a Member State and publish their name and address in this section before doing so. Until then, users in the EEA and the United Kingdom can reach us directly at contact@jmtechlab.com or at the postal address above.
16. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or your personal information, please contact us:
- JM Tech LLC
- 1600 E. Thacker St, Des Plaines, IL 60016, United States
- Email: contact@jmtechlab.com