Gizlilik Politikası
Rahle Gizlilik Politikası
Rahle; zikir sayacı, hatırlatıcılar, Esma-ül Hüsna, namaz tesbihatı ve kişisel istatistikler sunan, yerel veri saklamayı önceleyen bir mobil uygulamadır. Bu politika hangi verilerin cihazınızda kaldığını, hangi sınırlı verilerin hizmet sağlayıcılara gönderildiğini ve seçimlerinizi açıklar.
1. Kapsam
Bu politika Kemal Tekin tarafından sunulan Rahle Android ve iOS uygulamasını kapsar. Bu politika sayfasının kendisi harici analiz kodu, reklam kodu veya çerez yerleştirmez; dil seçimi yalnızca tarayıcıda çalışır. Başka sitelere giden bağlantılar ilgili sitelerin kendi politikalarına tabidir.
2. Cihazınızda saklanan veriler
Uygulamanın temel işlevleri için aşağıdaki bilgiler cihazınızdaki uygulama alanında saklanabilir:
- zikir ilerlemesi, hedefler, tur geçmişi, günlük/haftalık istatistikler ve seri bilgileri;
- favoriler, seçili yerleşik zikir veya Esma, sayaç ve görünüm tercihleri;
- oluşturduğunuz özel zikir, anlam ve Arapça metin;
- hatırlatıcı başlığı, metni, saati, tekrar günleri ve bildirim ayarları;
- onboarding durumu, tema, dil ve diğer uygulama tercihleri.
Bu içerikleri Rahle hesabına veya bize ait bir bulut hesabına eşitlemeyiz; uygulamada kullanıcı hesabı bulunmaz. İşletim sisteminizin cihaz yedekleme davranışı Apple veya Google ayarlarınıza bağlı olabilir.
3. Analiz verileri ve otomatik toplama
Mevcut mobil sürümde aşağıdaki sağlayıcılar uygulama açıldığında ve ölçülen bir ekran ya da işlem gerçekleştiğinde HTTPS/TLS üzerinden takma adlı teknik ve kullanım olayları alabilir:
| Sağlayıcı | Olası veri | Amaç ve ayarlar | Saklama |
|---|---|---|---|
| PostHog Cloud EU | Takma adlı kurulum/cihaz kimliği, uygulama sürümü ve build, platform, işletim sistemi ve cihaz sınıfı, dil/saat dilimi, ekranlar, uygulama yaşam döngüsü ve aşağıda açıklanan ürün etkileşimleri. | Özellik kullanımı, güvenilirlik ve kullanıcı akışlarını anlamak. Altyapı Frankfurt'tadır; IP anonimleştirme açıktır, kişi profilleri ve oturum tekrar kaydı kapalıdır. | Ham olaylar en fazla 12 ay. |
| Google Analytics for Firebase (GA4) | Takma adlı uygulama kurulum kimliği, uygulama sürümü/build, platform, cihaz ve işletim sistemi bilgileri, dil, IP'den türetilebilen yaklaşık konum, ekranlar ve aşağıda açıklanan ürün etkileşimleri. | Kullanım, sürüm dağılımı, performans ve özelliklerin iyileştirilmesi. Reklam kişiselleştirme ve iOS IDFV toplama uygulama yapılandırmasında kapalıdır. | Kullanıcı ve olay düzeyindeki veriler 14 ay; yeni etkinlikte kullanıcı verisi süresi yeniden başlayabilir. Standart toplulaştırılmış raporlar daha uzun süre kalabilir. |
Tipik teknik alanlar; olay zamanı, platform, uygulama sürümü/build, cihaz/işletim sistemi sınıfı ve takma adlı kurulum kimliğidir. Bu kimlik gerçek adınızla veya bir Rahle hesabıyla eşleştirilmez. Sağlayıcılar ağ güvenliği ve yaklaşık konum üretimi için bağlantı IP adresini geçici olarak işleyebilir.
4. Dini veya manevi pratiklerle ilgili hassas bilgiler
Analiz olayları; yerleşik bir zikir veya Esma'nın sabit adı ya da kimliği ve kategorisi, seçilen hedef, zikir sayımları, başlatılan/tamamlanan/sonlandırılan turlar ile favori ve hatırlatıcı etkileşimlerini içerebilir. Bu bilgiler dini veya manevi uygulama alışkanlıkları hakkında çıkarım yapılmasına imkân verebilir ve bazı platformlar ile mevzuat kapsamında hassas bilgi sayılabilir.
Özel zikirlerde yazdığınız zikir, anlam, Arapça metin, hatırlatıcı başlığı veya gövdesi ve arama sorgusu analiz olaylarına eklenmek üzere tasarlanmamıştır; bunların yerine genel bir “Özel zikir” etiketi ve sayısal etkileşim bilgisi kullanılabilir. Destek talebiniz için gerekli olmadıkça bize de bu özel içerikleri göndermeyin.
5. Bildirimler, FCM ve APNs
Bildirim izni verirseniz cihazınız bir Firebase Cloud Messaging (FCM) ve/veya Apple Push Notification service (APNs) kayıt belirteci oluşturabilir. Bu belirteç bildirim teslimi, teslimat güvenilirliği ve ilgili teknik tanılama için Google/Firebase ve Apple tarafından işlenebilir. Kişisel hatırlatıcı metinleriniz ve zamanlamalarınız normalde cihazda saklanır; FCM bir analiz hizmeti değildir.
Bildirim iznini işletim sistemi ayarlarından kapatabilirsiniz. Mevcut uygulama sürümü, izin kapatıldığında geçmiş FCM kurulum kaydını her durumda uzaktan hemen silmez; kayıt belirteci geçersizleşene veya silme işlemi yapılana kadar sağlayıcı sisteminde kalabilir. Eşleştirilebilir bir Firebase kurulum kaydı için silme talebi alındığında canlı sistem ve yedeklerden kaldırma, sağlayıcının sürecine göre 180 güne kadar sürebilir.
6. Kıble için konum
Kıble yönü özelliğini seçip konum izni verirseniz cihazınızın konum servislerinden alınan kesin konum, yönü hesaplamak için cihazda kullanılır. Kesin enlem/boylamı kendi sunucumuza, PostHog'a veya GA4 olaylarına göndermek üzere tasarlamadık. Analiz sağlayıcıları bağlantı IP'sinden ülke/şehir düzeyinde yaklaşık konum türetebilir; bu ayrı bir işlemdir. İzni işletim sistemi ayarlarından değiştirebilirsiniz.
7. Toplamadığımız veya yapmadığımız işlemler
- Hesap, parola, kişi listesi, fotoğraf, mikrofon veya ödeme kartı bilgisi toplamayız.
- Reklam SDK'sı kullanmaz, davranışsal reklam sunmaz ve kişisel verileri satmayız.
- Başka şirketlerin uygulama veya web sitelerindeki etkinliğinizle birleştirerek reklam amaçlı takip yapmayız.
- PostHog oturum tekrar kaydı kapalıdır; ekran görüntüsü veya dokunma kaydı alınmaz.
8. Seçimleriniz ve analiz onayı
Mevcut sürümde gelecekteki uygulama olaylarını durdurmanın kesin yolu uygulamayı kaldırmak; Android'de ayrıca uygulama verilerini temizlemektir. Bu işlem cihazdaki yerel verilerinizi de silebilir. Analiz kayıtlarıyla eşleştirme mümkünse erişim, itiraz veya silme talebi için aşağıdaki iletişim yolunu kullanabilirsiniz. Bildirim ve konum izinleri işletim sistemi ayarlarından ayrı ayrı yönetilir.
9. Hizmet sağlayıcılar ve veri paylaşımı
Verileri yalnız uygulamayı işletmek, bildirim teslim etmek, güvenliği sağlamak, destek vermek ve ürün kullanımını anlamak için gereken hizmet sağlayıcılarla paylaşırız: PostHog Cloud EU, Google/Firebase ve bildirimler için Apple APNs. Bu sağlayıcıların verileri talimatlarımız ve sözleşme/koşulları çerçevesinde, bu politikada açıklanan amaçlarla ve aynı veya eşdeğer gizlilik korumasıyla işlemesini bekleriz. Verilerin kendi reklamları, veri satışı veya kullanıcılar arası takip için kullanılmasına izin vermeyiz.
Kanunen zorunlu olduğunda, haklarımızı veya kullanıcı güvenliğini korumak için ya da bir devir/yeniden yapılanma sırasında uygun güvencelerle bilgi açıklamamız gerekebilir.
10. Saklama ve silme
- Yerel uygulama verisi: siz silene, uygulama verilerini temizleyene veya uygulamayı kaldırana kadar cihazda kalır. Uygulamadaki tercih sıfırlama işlemi tüm ilerleme ve favorileri silmeyebilir.
- PostHog olayları: en fazla 12 ay tutulur.
- GA4 kullanıcı ve olay verileri: 14 ay tutulur; kullanıcı verisi yeni etkinlikte yeniden 14 aylık süreye girebilir. Toplulaştırılmış standart raporlar bu ayardan etkilenmeyebilir.
- FCM/APNs kayıtları: bildirim teslimi için geçerli oldukları, geçersizleşmedikleri veya silme işlemi tamamlanmadığı sürece tutulabilir.
- Destek yazışmaları: talebi yanıtlamak, kötüye kullanımı önlemek ve yasal yükümlülükleri karşılamak için gerekli olduğu sürece; ardından silinir veya erişimi sınırlandırılır.
“Gizlilik Talebi” konusuyla info@zikirmatik.pro adresine yazarak eşleştirilebilir veriler için erişim, düzeltme veya silme isteyebilirsiniz. Hesap kullanmadığımız ve kurulum kimliği uygulamada görünür olmayabildiği için geçmiş takma adlı kayıtları her zaman belirli bir kişiyle eşleştiremeyebiliriz. Talebi yerine getirmek için yalnız gerekli asgari bilgiyi ister, bu sınırlamayı size açıklar ve sağlayıcı araçlarının izin verdiği kayıtları siler veya silinmek üzere iletiriz. Zikir metinlerinizi veya gereksiz kişisel bilgileri göndermeyin.
11. Güvenlik ve uluslararası aktarım
Aktarımda HTTPS/TLS, erişim sınırlaması, veri minimizasyonu ve sağlayıcı güvenlik kontrolleri kullanılır. Hiçbir yöntem mutlak güvenlik sağlayamaz. PostHog verileri Frankfurt'taki Cloud EU altyapısında; Google/Firebase ve Apple verileri ülkeniz dışında bulunabilen altyapılarda işlenebilir. Uygulamayı kullanmanız tek başına hukuken gerekli bir uluslararası aktarım onayı sayılmaz; uygun yasal mekanizmalar ve hizmet sağlayıcı koşulları kullanılır.
12. Haklarınız
Bulunduğunuz yere göre verilerinize erişme, düzelttirme, sildirme, işlemeyi kısıtlama veya itiraz etme ve ilgili veri koruma makamına başvurma haklarınız olabilir. “Gizlilik Talebi” konu satırıyla bize yazın. Kimlik doğrulama için yalnız talebi yerine getirmeye yetecek asgari bilgiyi ister ve yürürlükteki yasal süre içinde yanıtlarız.
13. Çocukların gizliliği
Rahle çocuklar için özel olarak tasarlanmamıştır ve App Store Kids Category'de sunulmaz. Uygulama yaş doğrulaması yapmaz. Bulunduğunuz ülkede dijital onay için geçerli asgari yaşın altındaysanız bir ebeveyn veya vasinin izni olmadan uygulamayı kullanmamalı ya da analiz paylaşmamalısınız. Bir çocuğa ait verinin işlendiğini düşünüyorsanız bizimle iletişime geçin; eşleştirilebilen veriyi inceleyip silmek için gerekli adımları atarız.
Premium, hediye erişimi ve yedekleme
Premium altyapısı etkin olduğunda Apple/Google satın alma ve abonelik durumu RevenueCat ile doğrulanır. Takma adlı uygulama kullanıcı kimliği, ürün, dönem ve mağaza makbuzu/satın alma belirteci işlenebilir; ödeme kartınızı Rahle almaz. Rahle sunucusu eski kullanıcı, abonelik ve hediye erişimini değerlendirmek için kurulum kaydı, doğrulanmış erişim durumu ve imzalı erişim belgesi saklayabilir. Hediye kuponu/kurtarma kodu bu güvenli işlem için kullanılır; GA4 veya PostHog'a gönderilmez. İşlem sonuçları ve plan türü kod veya ödeme belirteci olmadan analitiğe gönderilebilir. Bu altyapı hazırlığı Premium zorunluluğunun herkese açıldığı anlamına gelmez.
İsteğe bağlı iCloud yedekleme seçilirse yedek veriler Apple hesabınızın iCloud altyapısında işlenir. Kurulum sırrı ve güvenli hediye kurtarma kayıtları genel uygulama yedeğine dahil edilmez. Web sayfaları analiz SDK'sı veya çerez eklemez; hosting sağlayıcısı istek IP'si ve teknik erişim/güvenlik kayıtlarını işleyebilir.
Sağlayıcı: RevenueCat gizlilik açıklaması. Erişim kayıtları hizmeti işletmek, güvenliği sağlamak ve gerekli yükümlülükleri karşılamak için gerektiği sürece tutulur; talep değerlendirmesinde teknik eşleştirme ve zorunlu kayıt sınırları açıklanır.
14. Değişiklikler ve iletişim
Özellikler, sağlayıcılar veya yasal gereklilikler değişirse bu politikayı güncelleyebiliriz. Toplanan verileri burada açıklanmayan, maddi ölçüde farklı bir amaçla kullanmadan önce açık bilgi verir ve gerektiğinde yeni onay alırız. Önemli değişiklikleri uygulama içinde veya bu sayfada bildirir ve yürürlük tarihini güncelleriz.
Kemal Tekin
Veri sorumlusu ve uygulama sahibi
info@zikirmatik.pro
Destek sayfası
Privacy Policy
Rahle Privacy Policy
Rahle is a mobile dhikr counter, reminder, Esma-ul Husna, prayer tasbihat, and personal statistics app built around local data storage. This policy explains what stays on your device, what limited data is sent to service providers, and the choices available to you.
1. Scope
This policy covers the Rahle Android and iOS app offered by Kemal Tekin. This policy page itself does not load external analytics code, advertising code, or cookies; its language selector runs only in your browser. Links to other sites are governed by those sites' policies.
2. Data stored on your device
The following information may be stored in the app's local storage area to provide core functionality:
- dhikr progress, targets, round history, daily/weekly statistics, and streaks;
- favorites, selected built-in dhikr or Esma, counter settings, and display preferences;
- custom dhikr text, meanings, and Arabic text that you create;
- reminder title, body, time, repeat days, and notification settings;
- onboarding state, theme, language, and other app preferences.
We do not synchronize this content to a Rahle account or our own cloud account; the app has no user accounts. Device-level backups may be controlled by your Apple or Google operating-system settings.
3. Analytics data and automatic collection
In the current mobile version, the following providers may receive pseudonymous technical and usage events over HTTPS/TLS when the app opens and when a measured screen or action occurs:
| Provider | Possible data | Purpose and settings | Retention |
|---|---|---|---|
| PostHog Cloud EU | Pseudonymous installation/device identifier, app version and build, platform, operating-system and device class, language/time zone, screens, app lifecycle, and product interactions described below. | Understand feature use, reliability, and user flows. Infrastructure is in Frankfurt; IP anonymization is on, while person profiles and session replay are off. | Raw events for up to 12 months. |
| Google Analytics for Firebase (GA4) | Pseudonymous app-installation identifier, app version/build, platform, device and operating-system information, language, coarse location that may be derived from IP, screens, and product interactions described below. | Understand usage, release distribution, performance, and improve features. Ad personalization and iOS IDFV collection are disabled in the app configuration. | User-level and event-level data for 14 months; user retention may reset on new activity. Standard aggregated reports may remain longer. |
Typical technical fields include event time, platform, app version/build, device/operating-system class, and a pseudonymous installation identifier. That identifier is not tied to your real name or a Rahle account. Providers may temporarily process the connection IP address for network security and coarse-location derivation.
4. Sensitive information about religious or spiritual practice
Analytics events may include a fixed name or identifier and category of a built-in dhikr or Esma, the selected target, recitation counts, rounds started/completed/ended, and favorite or reminder interactions. This can support inferences about religious or spiritual practice and may be considered sensitive information under some platform classifications and laws.
Custom dhikr text, meaning, Arabic text, reminder title or body, and search queries are not designed to be attached to analytics events. A general “Custom dhikr” label and numeric interaction information may be used instead. Please do not send this private content to us unless it is genuinely necessary for a support request.
5. Notifications, FCM, and APNs
If you grant notification permission, your device may create a Firebase Cloud Messaging (FCM) and/or Apple Push Notification service (APNs) registration token. Google/Firebase and Apple may process the token for notification delivery, delivery reliability, and related technical diagnostics. Personal reminder text and schedules normally remain on your device; FCM is not an analytics service.
You can turn notification permission off in your operating-system settings. The current app version does not in every case immediately delete a historical FCM installation record remotely when permission is withdrawn; a token may remain until it becomes invalid or is deleted. When deletion of a matchable Firebase installation record is requested, removal from live systems and backups may take up to 180 days under the provider's process.
6. Location for Qibla
If you select the Qibla feature and grant location permission, precise location obtained from your device's location services is used on-device to calculate direction. We do not design the app to send exact latitude/longitude to our own server, PostHog, or GA4 events. Analytics providers may separately derive country/city-level coarse location from the connection IP. You can change permission in operating-system settings.
7. What we do not collect or do
- We do not collect an account, password, contacts, photos, microphone data, or payment-card information.
- We do not use an advertising SDK, serve behavioral ads, or sell personal data.
- We do not combine activity across other companies' apps or websites for advertising tracking.
- PostHog session replay is off; screens and touch interactions are not recorded as replay video.
8. Your choices and analytics consent
In the current version, the definitive way to stop future app events is to uninstall the app or, on Android, clear app data. Doing so may also delete local data on your device. Where records can be matched, you may use the contact route below to request access, object, or request deletion. Notification and location permissions are controlled separately in operating-system settings.
9. Service providers and sharing
We share data only with providers needed to operate the app, deliver notifications, provide security and support, and understand product use: PostHog Cloud EU, Google/Firebase, and Apple APNs for notifications. We expect these providers to process data under our instructions and contractual/technical terms, for the purposes disclosed here, with the same or equivalent privacy protection. We do not allow use for their own advertising, data sale, or cross-user tracking.
We may disclose information where legally required, to protect rights or user safety, or during a transfer/reorganization subject to appropriate safeguards.
10. Retention and deletion
- Local app data: remains on the device until you delete it, clear app data, or uninstall. Resetting preferences inside the app may not delete all progress and favorites.
- PostHog events: retained for up to 12 months.
- GA4 user and event data: retained for 14 months; user retention may reset following new activity. Aggregated standard reports may not be affected by this setting.
- FCM/APNs records: may remain while valid and needed for delivery, until invalidated, or until deletion completes.
- Support correspondence: kept only as long as needed to answer the request, prevent abuse, and meet legal obligations; it is then deleted or access-restricted.
Email info@zikirmatik.pro with the subject “Privacy Request” to request access, correction, or deletion of matchable data. Because there is no account and installation identifiers may not be visible inside the app, we may not always be able to link historical pseudonymous records to a particular person. We ask only for the minimum information needed, explain any limitation, and delete or forward deletion for records that provider tools allow us to match. Do not send dhikr text or unnecessary personal information.
11. Security and international transfers
We use HTTPS/TLS in transit, limited access, data minimization, and provider security controls. No method can guarantee absolute security. PostHog data is processed in Cloud EU infrastructure in Frankfurt; Google/Firebase and Apple data may be processed on infrastructure outside your country. Use of the app alone is not treated as consent to an international transfer where consent is legally required; appropriate legal mechanisms and provider terms are used.
12. Your rights
Depending on your location, you may have rights to access, correct, delete, restrict, or object to processing and to complain to a data-protection authority. Contact us with “Privacy Request” in the subject. We request only the minimum information necessary to verify and fulfill the request and respond within applicable legal time limits.
13. Children's privacy
Rahle is not specifically designed for children and is not offered in the App Store Kids Category. The app does not verify age. If you are below the minimum age for digital consent where you live, you should not use the app or share analytics without permission from a parent or guardian. If you believe a child's data has been processed, contact us so that we can review and take steps to delete matchable data.
Premium, gifts and backups
When enabled, Premium infrastructure verifies Apple/Google transactions and subscription status using RevenueCat. Pseudonymous app user identifiers, products, periods and store receipts/purchase tokens may be processed; Rahle does not receive payment-card details. Our server may keep installation records, verified entitlement status and signed access documents to evaluate legacy, subscription and gift access. Gift redemption/recovery codes are used for these secure operations, not sent to GA4 or PostHog. Analytics may receive plan types and operation results without codes or purchase tokens. Preparing this infrastructure does not enable a mandatory Premium paywall for everyone.
If optional iCloud backup is selected, backup data is processed in your Apple account's iCloud infrastructure. Installation secrets and secure gift recovery records are excluded from general app backups. These web pages add no analytics SDK or cookies; the hosting provider may process request IP addresses and technical access/security logs.
Provider: RevenueCat privacy disclosure. Access records are retained as needed to operate the service, maintain security and meet necessary obligations. Matching limitations and required record retention are explained when handling requests.
14. Changes and contact
We may update this policy when features, providers, or legal requirements change. Before using collected data for a materially different purpose not disclosed here, we will provide clear notice and obtain new consent where required. We will notify important changes in the app or on this page and update the effective date.
Kemal Tekin
Data controller and app owner
info@zikirmatik.pro
Support page