Skip to content

Privacy policy

Draft, last updated with this site.

Draft — pending legal review

This page describes our intended data practices and is derived from our product specification. It has not yet been reviewed by counsel and is not final.

Who we are

Kit by Church Clap Co. is a subscription service for churches. This policy describes what we collect from churches and the people who use Kit by Church Clap Co., why, and how long we keep it.

Information we collect

We collect only what running the service requires:

  • Account information: email address, a hashed password (never stored in plain text), and display name.
  • Sign-in metadata kept by our authentication provider (e.g. sign-in timestamps).
  • Church information: name, city, region, country, and time zone.
  • Membership information: which church you belong to, your role, and your capabilities.
  • Invitee email addresses, when someone invites you or you invite someone else.
  • Content you or your church authors, and any review notes on it.
  • Saved items and notification preferences.
  • A record of certain account and church actions (an audit log).
  • A minimal trial-usage record (your user ID and a hash of your email) used only to enforce one free trial per person.
  • Billing identifiers from our payment processor (a customer ID and subscription ID) — we never receive or store your card number.

We do not collect phone numbers, home addresses, birthdates, payment card numbers, precise location, or analytics/tracking data about how you use the app.

Why membership and content are treated as sensitive

Being a member of a church organization can reveal religious affiliation, which we treat as sensitive information. Content your church authors may also reference third parties in ways that touch on health or family matters. We treat all church-authored content as private by default: it is never used for analytics or to train any AI model, and it is never shown outside your church.

Age requirement

Kit by Church Clap Co. accounts are for people age 16 and older. We ask for age confirmation at sign-up and do not collect a birthdate. Children’s and youth-focused content in our library is written by adults for use with young people — minors themselves do not get individual accounts.

How long we keep information

Retention runs on an automated schedule:

  • Unaccepted invitations are deleted 30 days after they expire.
  • Read in-app notifications are deleted after 90 days.
  • Audit log entries are kept for 2 years.
  • Request logs are kept for 30 days.
  • Trial-usage records are kept indefinitely — the minimum needed to enforce one trial per person.
  • A church that lapses (subscription ends) has its data kept for 12 months, so resubscribing restores everything; admins are notified and can export data before deletion. A church that never subscribes at all follows a shorter, separate schedule.

Who we share information with

We share the minimum necessary data with the following processors, each of whom is bound to protect it:

  • Supabase — authentication and database hosting.
  • Railway — application server hosting.
  • Stripe — payment processing; we never receive your card details directly.
  • Cloudflare — content delivery and security for our web pages.

We do not sell personal information, and we do not share it for advertising.

Your data, your control

You can download a copy of your data — profile, memberships, content you authored, saved items, and notifications — as a JSON file from your account settings. Church admins can export their church’s content the same way. You can also delete your account from within the app; deletion is described in the app’s account settings.

Questions

This is a draft policy pending legal review. Contact details will be added once finalized.