
Legal
Last updated: August 26, 2026
Rooted ("we", "us", "our") is a daily faith journal and Bible study companion. This Privacy Policy explains what information we collect, how we use it, and the choices you have. By using Rooted, you agree to this policy.
Account information. When you sign up, we collect your email address, display name, and authentication credentials (via Firebase Authentication, including Google sign-in where applicable).
Content you create. Journal entries, captured thoughts, wins, sermon notes, Bible study entries, prayer requests, highlights, notes, and any text, image, or audio you record inside the app.
Usage data. Basic analytics about how you use Rooted (screens visited, features used, session length) collected via Amplitude. This helps us improve the product. You can decline non-essential analytics in the cookie banner shown on your first visit.
Payment information. If you subscribe to a paid plan, billing is handled by Stripe. We never see or store your full card details — only a subscription identifier and plan status.
Device & technical data. Standard information your browser or device sends, such as IP address, device type, operating system, and app version.
Order information. If you buy a physical product from our bracelet store, we collect what's needed to fulfill your order: your name, email, shipping address, and what you ordered. Payment is processed by Stripe — we never see your card details. We may run your shipping address through an address-validation service (Google Address Validation, which carries USPS data) solely to catch undeliverable addresses, and we share your name and address with our shipping carrier (USPS) to deliver your package. Order records are kept as long as required for accounting and warranty purposes.
Safety and abuse signals. When you use AI or transcription features, we keep a short log of the call (endpoint, length, latency, and any safety-filter flags) so we can detect abuse, prevent fraud, and protect the service. We do not log the full content of your entries for this purpose.
We use a small number of cookies and local-storage entries to keep you signed in, remember your preferences (theme, last-read scripture), and — only with your consent — measure how the product is used. On your first visit you can accept or reject non-essential analytics. Essential cookies (sign-in, security) always run because the app cannot function without them.
You can change your choice at any time from the footer of our marketing pages.
Some features (sermon study guides, Bible context, weekly review, thought analysis, YouTube transcription, audio transcription, image scan) send the relevant content — such as the sermon notes, audio, or verse you select — to Google's Gemini API for processing. Google processes this data under its own terms and does not, per its API policies, use it to train generally available models.
After transcription, the resulting transcript is also passed through an automated safety classifier so we can detect content that is unrelated to the app's purpose, sexually explicit, hateful, or otherwise harmful. If flagged, the transcript may be held for admin review and the associated account may be suspended in accordance with our Terms.
We rely on the following processors to run Rooted:
We treat the content you write — journal entries, thoughts, wins, prayers — as private by default. We do not read it, sell it, or share it with advertisers. We will only access the raw content of your entries when strictly necessary (e.g., a support request from you, a credible safety concern, or a valid legal demand).
We do not sell your personal information. We share data only with the processors listed above, or when required by law, to protect rights and safety, or as part of a business transfer (e.g., acquisition), in which case you will be notified.
We keep your data as long as your account is active. You can delete individual entries at any time inside the app. To delete your entire account and associated data, email us at support@rootedjournal.app and we will remove it within 30 days, except where retention is required by law (e.g., billing records).
Depending on where you live, you may have the right to access, correct, export, or delete your personal data, and to object to or restrict certain processing. To exercise these rights, email us at support@rootedjournal.app.
Rooted is not directed to children under 13 (or the minimum age in your jurisdiction). If you believe a child has given us personal information, please contact us and we will delete it.
We use industry-standard safeguards including encryption in transit (HTTPS/TLS) and at rest via our cloud provider. No system is perfectly secure, but we work hard to protect your data.
Rooted is operated from the United States. By using the app, you consent to the transfer of your information to the U.S. and other countries where our processors operate.
We may update this policy as Rooted evolves. Material changes will be announced in-app or by email. Your continued use of Rooted after changes take effect means you accept the updated policy.