Privacy Policy

safi · Effective: 2026-09-01 · Version: 1.3 · العربية

  1. Everything you record in this app — your accounts, transactions, people and debts — is stored on this device alone, in a database that belongs to the app.
  2. Safi asks for an account before it opens: your email address, and a code sent to it — no password and nothing else. Your ledger itself has no server: the app sends nothing you write in it to anybody, and it stays on this device.
  3. Stored with the hosting provider, Supabase, is your email address, which identifies your account and signs you in, together with the technical details that attend any account and that the provider itself records: when the account was created, when it was last signed in to, and the IP address it was signed in from — kept for account security and to prevent abuse. And if you use shared accounts, whatever is recorded inside a shared account is stored there too (the name you choose for yourself among its members, amounts, categories and notes), so that the members of that account alone can read it. Nothing from your own ledger is uploaded there, and nothing from a shared account comes down into your ledger.
  4. That provider’s servers are in Frankfurt, Germany (eu-central-1), outside the Kingdom of Saudi Arabia; what is described in the paragraph above is processed and stored there. The provider has its own privacy policy governing that processing.
  5. Your name, email and phone number — if you enter them into the app — are kept on the device like any other preference. They are never sent anywhere and never verified against any service.
  6. No tracking, no analytics, no advertising, and no third-party tool for crash reporting or usage measurement. The app does not read your contacts, your location or your messages.
  7. Reminders are scheduled on the device itself, and no reminder content leaves your phone. A reminder may show its text — including a person’s name and an amount — on your lock screen; you can change that in your device’s notification settings.
  8. This version is free and nothing is purchased in it. If a subscription is added in a later version it will go through the app store and nowhere else: the app will never see your card and will store no payment details, and all it will learn from the store is whether a subscription is active. The app store has its own privacy policy, which governs the purchase itself.
  9. The app uploads your ledger to no server of ours. But if iCloud Backup is switched on for your device, iOS may include the app’s files — your database among them — in your device’s iCloud backup. That copy sits under your own account and Apple’s policy, and the publisher cannot reach it. Deleting the app deletes its data from the device, and a copy may remain inside the iCloud backup until you delete it from your device settings. Keeping a backup of your own is up to you — Settings will export a file for you to store wherever you like.
  10. Every file the app produces — the backup, the Excel sheet, the PDF statement — is unencrypted, and anyone who opens it can read your transactions. The backup file also contains your name, email and phone number if you entered them. Once it leaves the app it is in your hands alone, whether you send it to cloud storage or by email.
  11. The connection to the server is encrypted in transit (TLS), and what is on your device is protected by the operating system’s file protection and by your device lock. No one can promise absolute security, but this is what we hold to.
  12. From inside the app: "Erase data" clears what you have recorded and keeps the app, and "Erase all data and preferences" also clears your name, email, phone number and preferences. Both happen on the device alone. "Delete account" erases your account and your email address from the server, along with what you recorded in shared accounts and your memberships of them — and any shared account you own is deleted in full, for all of its members. All three are final.
  13. Your email address and your account’s technical details are kept for as long as the account exists, and are deleted with it.
  14. You may at any time learn what we hold about you, ask for it to be corrected or erased, and object to its processing or ask that processing be restricted. Erasure is in your own hands, from inside the app; anything else you may ask for at support@mysafiapp.com. The party responsible for this data is Bisher Al-Shikh Othman.
  15. No account is created for anyone under 16, and the app is not intended for them.
  16. This policy may be updated, and a new version is shown inside the app before its effective date.
  17. If you email us, you share with us whatever you choose to write in that message, and nothing else. Support email is kept in the publisher’s mailbox only in order to reply, and is deleted after 12 months, or within 30 days of your asking at support@mysafiapp.com.
  18. Effective: 2026-09-01 — Version: 1.3