1. Information we collect
We collect only what the service needs to work:
- Account details — your name, email address, and a password stored only as a bcrypt hash. We never store your password in readable form.
- Google sign-in — if you sign in with Google, we receive your name, email address and profile picture from Google. We never receive your Google password.
- Profile answers — the religion, purpose, age, gender and knowledge level you give during sign-up. These personalise the depth and framing of answers.
- Your conversations — the questions you ask, the answers returned, and any thumbs-up or thumbs-down you leave.
- Attachments — if you attach a text document, its contents are read in your browser and sent with your question.
- Technical records — for security events such as sign-in, sign-out and password resets we log the action, your email, IP address and browser user-agent.
2. How we use it
Your information is used to run the service and for nothing else:
- To answer your questions and keep the thread of a conversation.
- To sign you in and keep your session secure.
- To personalise answer depth and reply in your chosen language.
- To enforce fair-use limits so one account cannot exhaust the service.
- To investigate abuse and security incidents.
3. How your questions reach the AI
Answers are generated by the Seerah AI retrieval service, which runs separately from this website. When you send a message we transmit your question, any attached text, your chosen answer depth and language, and a conversation identifier so follow-up questions keep their context. Your name, email address and password are never sent to it.
4. Dictation and read-aloud
Both voice features use capabilities built into your browser, not our servers — but you should know what that means:
- Dictation uses your browser's speech recognition. In Chrome and Edge this sends your audio to the browser vendor's servers for transcription, under their privacy policy — not ours. We receive only the resulting text, and only once you send the message.
- Read-aloud uses your browser's speech synthesis. Some browsers use cloud voices, which means the text being read may be sent to the browser vendor.
- Both are optional. You can turn either off under Settings → Voice, and dictation only runs while you hold the microphone active.
5. Where your data is stored
Accounts, conversations, messages and feedback are stored in a managed PostgreSQL database hosted by Neon. Transport is encrypted with TLS. Rate-limiting counters are held briefly in Upstash Redis. Verification and password-reset emails are delivered by Resend.
8. How long we keep it
Conversations are kept until you delete them or close your account. Deleting a chat removes its messages permanently. Security logs are kept for a limited period for abuse investigation. Expired sessions are removed automatically.
9. Your choices and rights
You are in control of your data:
- Delete a single conversation from its menu in the sidebar, or delete every conversation at once under Settings → Data controls.
- Edit your name and profile picture under Settings → Account.
- Request a copy of your data, correction of it, or full deletion of your account by emailing us.
- Depending on where you live you may have additional rights under laws such as the GDPR, including the right to object or to lodge a complaint with a supervisory authority.
10. Children
Seerah AI is not directed at children under 13, and we do not knowingly collect their information. If you believe a child has given us personal data, contact us and we will remove it.
11. Changes to this policy
We may update this policy as the service develops. The date at the top of this page shows when it last changed, and material changes will be notified in the app.
12. Contact us
Questions about this policy, or a request about your data, can be sent to [email protected] and we will respond as soon as we can.