Last updated: July 2026
Account info: Email address, username, display name, birthday, gender, and profile photo.
Religious preference (optional, explicit consent required): Madhab (Islamic school of thought) self-identification, and content preference level (Standard / Conservative / Strict). This is GDPR special category data — you provide separate, explicit consent for this during sign-up, and can withdraw it at any time.
Content you create: Posts, comments, messages, stories, and reels you publish through the app.
Location (optional — only if you enable prayer time reminders): City-level location, rounded to approximately 1 km precision. Not exact GPS, not retained at high precision. Only collected if you explicitly enable prayer time reminders in Settings and grant location permission.
Contacts (optional — only if you use Find People → From Contacts): We never store your contact list. Phone numbers are hashed on your device before any comparison and discarded immediately after matching completes. We never upload, store, or share your raw contact list.
Usage data: App interactions, likes, and follows — used to rank your feed (SafaRank) and improve the app, analyzed via PostHog (EU-hosted, no third-party ad sharing).
We use AI in two specific, bounded ways. We believe you deserve to know exactly what happens to your content.
Sharia Shield: Every post, comment, story, and message is screened by an AI model (Claude, by Anthropic) before it is published, to check for content that violates our community guidelines. This happens automatically, server-side, on every piece of content you submit.
Rafiq (the companion chat): If you message Rafiq, your message is sent to Anthropic's Claude API to generate a response. Rafiq's answers about Quran verses are checked against the Quran Foundation's API rather than generated from memory.
We do not use your content to train AI models.We use Claude, built by Anthropic, to power Sharia Shield's content screening and Rafiq's responses. Under Anthropic's Commercial Terms of Service, API data is contractually excluded from being used to train their models. The founder has verified this against Anthropic's published Commercial Terms before publication.
Safa supports voice calls, video calls, and live streaming between users.
Call recording: Safa does not record voice or video calls. Calls are established peer-to-peer via LiveKit (a WebRTC infrastructure provider) and are not stored on our servers. The only data we retain is metadata: who called whom, call type, duration, and status.
Live streams: Live streams are transmitted in real time via LiveKit. We do not archive or store the video content of live streams after they end. We retain metadata: title, duration, viewer count, and any moderation actions taken during the stream.
Live chat: Text comments submitted during a live stream are screened by Sharia Shield (see “How AI is used on your data” above) before they are shown. Approved comments are stored server-side and associated with your account. The audio and video stream itself is not AI-screened in real time.
Reporting: Both calls and live streams have an in-app report button. Reports trigger a moderation review. For live streams, reports are flagged as urgent and can result in immediate stream termination by a moderator.
[Fill in actual retention periods once decided — how long is a deleted account's data kept before permanent erasure, how long are moderation logs kept, how long is Rafiq chat history retained. These must be specific numbers, not general statements.]
Safa is not intended for children under 13. [Confirm the correct minimum age requirement with legal review — GDPR's “digital age of consent” varies by EU country (13–16), and some jurisdictions set different thresholds entirely.]
[Add a real contact method for privacy questions and data requests before publication — GDPR requires a reachable point of contact for data subject rights requests.]
© 2026 Safa Social · Built for the Ummah