Rooted (“we”, “our”, or “us”) built this app to help you read the Bible — not to harvest your data. This policy explains, in plain language, what we collect, what we don’t, and the choices you have. By using Rooted you agree to what’s described here.
So we can keep you signed in and sync your progress across your own devices, Rooted stores a small amount of data tied to your account:
Your highlights, notes, and bookmarks stay on your device — they are never uploaded to our servers. If you use iCloud, Apple syncs that on-device data across your own devices; we never see it.
To understand how Rooted is used and to find and fix problems, we use two trusted third-party providers: PostHog for product analytics and Sentry for error and crash reporting. They help us see whether key flows are working — app opens, onboarding progress, paywall views, trial starts, purchases, plan starts, and daily reading completions — and alert us when something breaks.
These providers process usage and diagnostic data on our behalf — such as screen views, in-app actions, device model, OS version, and crash logs. Events may be associated with an app-generated identifier for your account so we can measure how features perform, but we never send them the text you read, your notes, your highlights, or your search queries. Both are contractually barred from using your data for their own purposes or selling it.
Your account and reading data are stored securely with Supabase, our cloud database provider. Data is encrypted in transit (TLS) and at rest. On-device data — notes, highlights, and bookmarks — is stored only in local storage on your device and is removed when you delete the app.
We share limited data only with the providers that help us operate Rooted: Supabase (cloud database and sign-in), PostHog (product analytics), Sentry (error and crash reporting), and RevenueCat with Apple (subscriptions and app delivery). Each is bound to use your data only to provide its service to us. We may also disclose information where required by law.
Rooted relies on Apple for App Store delivery, push notifications (APNs), and subscription management through StoreKit. Subscriptions are managed on our behalf by RevenueCat; we never receive or store your payment card details. You can limit the diagnostics Apple shares from iOS Settings → Privacy & Security → Analytics & Improvements.
We keep your account data for as long as your account is active. When you delete your account, we remove your personal data within 30 days, except where we are required to retain it for legal reasons.
Rooted is not directed to children under 13, and we do not knowingly collect personal information from them. If you believe a child has provided us with personal information, email support@dossdev.com and we will delete it promptly.
If you are a California resident, you have the right to know what personal information we collect, to request its deletion, and to opt out of its sale. We do not sell personal information. To exercise these rights, email support@dossdev.com.
We may update this policy from time to time. We will post material changes within the app. The “Last updated” date above reflects the most recent change.
Questions about this policy? We’d love to hear from you.
This Privacy Policy applies to the Rooted iOS application. It does not apply to third-party websites or services linked to or from the App.