Privacy Policy

Your prayer history stays on your device.

Last updated: September 4, 2026. The app behavior described below applies specifically to version 2.0 build 11 when installed. Its subscription access policy does not describe the earlier, fully free build 10.

Who we are

Lumen Prayer is provided by Hangzhou Shengli Technology Co., Ltd. (杭州昇丽科技有限公司), referred to as “Sunnycreate,” “we,” or “us.”

Data stored on your device

The app does not require an account. Feelings, personal notes, devotional content, conversations, progress, history, reminder preferences, activation date, daily usage counts, and this installation's subscription-access history are stored on your device. A local archive is not uploaded as a whole. Relevant prayer and conversation context is transmitted when you request an AI response. The continuous 30-day welcome period is measured from the first successful launch on your device, not by our server. Deleting content in Settings keeps the activation date, usage counts, and subscription-access history. A clean reinstall or a new device may start a new welcome period; restoring app data from a backup may restore its local access records. Deleting content or the app does not cancel an Apple subscription. We do not keep a server-side welcome-period registry.

Data used for AI generation

Version 2.0 build 11 sends requests over HTTPS directly to DeepSeek and then, if needed, PoYo.ai using app-configured credentials. If both direct services are unavailable, Sunnycreate's ECS v3 fallback forwards the request to its provider, PoYo.ai. All access states may use this fallback, subject to safety controls. Requests can contain language, date, selected mood, your optional note, relevant prayer context, and recent conversation messages. Curated offline prayer content does not require generation. Avoid submitting names, contact details, medical records, or other sensitive information. Requests are processed under the applicable provider's policies; we do not claim that third-party processing occurs only on your device.

Service protection and retention

The ECS v3 fallback checks a request signature made with an installation key stored in the device Keychain. This proves possession of that key; it is not an account login, Apple App Attest, or proof that a request came from an unmodified app. Each request carries separate installation, conversation-context, and request identifiers. The app checks the returned identifiers before displaying or saving a response. Neither subscription purchase information nor subscription proof is sent to the v3 fallback.

The v3 application database does not store prayer prompts, conversation text, or generated replies. It keeps installation and request identifiers, context identifiers, operation types, a hashed IP address, timestamps, and processing status for concurrency limits, abuse prevention, and replay protection. Completed-request metadata is eligible for deletion after 48 hours and is checked by a periodic cleanup process; in-progress entries remain until processing ends or service recovery resolves them. These records do not time the welcome period or serve as an advertising or cross-app tracking profile.

Network addresses are also used by the network-facing service and may appear in Nginx web-server access logs. Those logs are separate from the v3 application database and are not covered by its 48-hour cleanup rule.

Legacy v1/v2 endpoints used by earlier client versions are separate from the v3 fallback. They retain subscription-verification and Apple App Attest checks, with their own subscription-identifier hashes, request metadata, integrity counters, and cleanup rules. Those legacy checks do not apply to the v3 route used by build 11.

Third parties and disclosures

DeepSeek and PoYo.ai process generation requests. Apple processes purchases and subscription status through the App Store; notification permission is controlled by iOS. Apple's App Attest processing applies only to the separate legacy protected routes described above, not the build 11 v3 fallback. Processing may occur outside your country. We do not include advertising or analytics SDKs, sell personal information, or share data for targeted advertising. We may disclose information if required by law or necessary to protect the service and its users.

Your choices

To avoid transmitting personal notes or conversation content, do not submit them for generation. When opened, the app may also request a general daily blessing using the date and language without your personal notes. You can disable reminders in the app or iOS Settings, delete prayer content from Settings, and delete the app. For privacy questions or requests, contact us using the support page.

Children and sensitive use

Lumen Prayer is a general-audience devotional app and is not directed to children. It is not medical, mental-health, legal, or crisis care. If you are in danger or need urgent support, contact local emergency services or a qualified professional.

Policy changes

We may update this policy when the app, providers, or legal requirements change. The effective date above identifies the current version.