מדיניות פרטיות
היומן שייך למשתמש, לא למפעיל האפליקציה
עודכן לאחרונה: 18 באוגוסט 2026
מדיניות זו מתארת את נוהלי הפרטיות המתועדים של מאזני צדק, המופעל על ידי BH Global Consulting LLC.
תוכן היומן
רשומות, חשבונות יומיים, מחויבויות, הערות, דפוסים ונתונים רוחניים מוצפנים במכשיר באמצעות AES-256-GCM לפני שמירה בענן. ביישום המקורי, המפתח נשמר ב־iCloud Keychain ב־iPhone או מוגן באמצעות Android Keystore ב־Android. השרת מקבל טקסט מוצפן, גרסת מבנה, מזהה חשבון, מזהה מכשיר אטום, מספר גרסה וזמני סנכרון. הוא אינו מקבל שדות יומן קריאים או מפתח קריא.
חשבון, גיבוי ושחזור
אפשר להשתמש כאורח באופן מקומי בלבד. בכניסה דרך Apple או Google, Supabase Auth מקבל ושומר מזהה משתמש, כתובת דוא״ל וכל שם ש־Apple או Google מוסרים, לצורך יצירת החשבון וניהולו. הכניסה מזהה את בעל הגיבוי המוצפן, אך אינה מפענחת את היומן. קוד שחזור עוטף את מפתח הכספת במכשיר; Supabase שומר רק מעטפת מוצפנת ומידע על גזירת המפתח. לעולם אין לשלוח לתמיכה קוד שחזור או מפתח. אם כל המכשירים וכל העותקים השמורים של הקוד אבדו, המפעיל אינו יכול לשחזר את התוכן.
גיבויים ושמירה
לחשבונות מחוברים נשמרת כספת ענן מוצפנת וכן גיבויים יומיים אטומים שנשמרים 30 יום. Supabase Auth ותשתית הרשת מעבדים כתובת IP ופרטי דפדפן או מכשיר לצורכי אבטחת כניסה, יומן ביקורת ומניעת שימוש לרעה; פרטים אלה אינם משמשים לניתוח היומן, לפרסום ממוקד או לפרופיל התנהגותי. אפשרויות המחיקה הנוכחיות והמגבלות שלהן מפורטות בדף מחיקה ובחירות פרטיות.
משוב ותמיכה
משוב נוצר רק לאחר פעולה מפורשת. אצל משתמש מחובר, כותרת המשוב והטקסט נשמרים בתיבת משוב מוגנת ב־Supabase יחד עם מזהה המשתמש; גרסת האפליקציה והשפה נכללות, ופרטי פלטפורמה נכללים רק אם המשתמש משאיר את אפשרות הפרטים הטכניים מסומנת. רק מנהלי אפליקציה מאומתים יכולים לקרוא את התיבה. אצל אורח, האפליקציה פותחת טיוטת דוא״ל, ממשק שיתוף או את הלוח, והמשתמש שולט בשליחה. רשומות, הערות, חשבונות יומיים, דוחות ונתונים רוחניים אינם מצורפים אוטומטית. פרטים טכניים אופציונליים משמשים רק לאבחון הבעיה שנשלחה, ולא לניתוח התנהגותי.
בקשות הקדשה
משתמש מחובר יכול לשלוח בקשה מפורשת להקדשה לעילוי נשמת או לרפואה. הבקשה כוללת את שם המבקש, מספר טלפון אחד או כתובת אימייל אחת, סוג ההקדשה, שם אופציונלי של האדם, עניין אפשרי בצירוף תמונה ואישורי הרשאה ליצירת קשר ולפרסום. רק מנהלי אפליקציה מאומתים יכולים לקרוא או לעדכן את תיבת הבקשות. אין שדה להערות חופשיות, ואין לשלוח אבחנה, תיק רפואי, תמונה, תוכן יומן או נתוני שחזור. הבקשה היא ללא תשלום, נתונה לשיקול דעת המנהל ואינה מבטיחה פרסום. לא מתבקש ולא מתקבל תשלום. הבקשה נמחקת אם החשבון המשויך נמחק.
תשלומים, קישורים ושירותים חיצוניים
Apple StoreKit או Google Play Billing מטפלים במזהי מוצרים, ברכישות, במצב הרכישה ובזכאויות בחנויות שלהם. בגירסת Android, קוד גישת בדיקה שהוזן במכוון נבדק מול פונקציית Supabase ייעודית; השרת שומר רק תקציר SHA-256 מוגדר והמכשיר שומר רק זמן תפוגה מוגבל. הגישה אינה מנוי ואינה מעניקה גישה לחשבון, ליומן או למסוף המנהל. Supabase מספק אימות ואחסון מוצפן. קישורי נותני חסות או עמותות נפתחים באתר היעד; בחירתם אינה מבוססת על תוכן היומן. אתרי ושירותי צד שלישי כפופים למדיניות שלהם.
אנליטיקה, פרסום ובינה מלאכותית
האפליקציה אינה כוללת כרגע ערכת אנליטיקה. תוכן יומן וסטטיסטיקה רוחנית נגזרת לעולם אינם נשלחים לאנליטיקה. אין רשת פרסום התנהגותית. בינה מלאכותית אינה פועלת אוטומטית ואינה פעילה בגרסה הנוכחית.
התראות ודוחות
התראות הן אופציונליות, מתוזמנות מקומית ומשתמשות בטקסט כללי ללא תוכן או ספירות. דוחות נוצרים במכשיר ונשלחים רק אם המשתמש בוחר לשתף אותם.
אתר ציבורי זה
קוד האתר אינו כולל אנליטיקה, טופס, עוגיות או אחסון מקומי. בחירת השפה נשמרת רק בכתובת הדף. Netlify מארחת את הקבצים ועשויה לעבד נתוני בקשה טכניים הדרושים למסירת האתר.
שינויים ושאלות
המדיניות תעודכן כאשר נוהלי המוצר ישתנו. לשאלות פרטיות או בקשות מחיקה, אפשר לכתוב אל support@bhglobalconsultingllc.com או להשתמש בדף תמיכה ויצירת קשר. אין לשלוח תוכן יומן, קוד שחזור, מפתח או פרטי כניסה.
Privacy Policy
The journal belongs to the user, not the app operator
Last updated: August 18, 2026
This policy describes the documented privacy practices of Scales of the Soul, operated by BH Global Consulting LLC.
Journal content
Entries, Daily Reviews, commitments, notes, patterns, and spiritual statistics are encrypted on the device with AES-256-GCM before cloud storage. In the native app, the key is stored in iCloud Keychain on iPhone or protected by Android Keystore on Android. The server receives ciphertext, schema version, account ID, an opaque device ID, revision, and sync timestamps. It does not receive readable journal fields or a readable encryption key.
Account, backup, and recovery
Guest use is local only. When a person signs in with Apple or Google, Supabase Auth receives and retains an account user ID, email address, and any name supplied by Apple or Google to create and manage the account. Sign-in identifies the owner of an encrypted backup, but it does not decrypt the journal. A recovery code wraps the vault key on the device; Supabase stores only the encrypted envelope and key-derivation metadata. Never send support a recovery code or encryption key. If every device and every saved copy of the code is lost, the operator cannot recover the content.
Backups and retention
Signed-in accounts have a current encrypted cloud vault and opaque daily backups retained for 30 days. Supabase Auth and ordinary network infrastructure process IP address and browser or device information for sign-in security, audit logging, rate limiting, and abuse prevention; the app does not use this information for journal analytics, targeted advertising, or behavioral profiling. Current deletion choices and their limitations are described on the Deletion and privacy choices page.
Feedback and support
Feedback is prepared only after an explicit action. For a signed-in user, the feedback title and text are stored in an administrator-only Supabase inbox with the account user ID; app version and language are included, and platform details are included only when the user leaves the technical-details option selected. Only verified app administrators can read that inbox. For a guest, the app opens a mail draft, share interface, or clipboard handoff, and the user remains in control of sending. Entries, notes, Daily Reviews, reports, and spiritual statistics are never attached automatically. Optional technical details are used only to diagnose the submitted issue, not for behavioral analytics.
Dedication requests
A signed-in person may deliberately send a memorial or healing dedication request. It contains the requester’s name, one phone number or email address, dedication type, an optional honoree name, possible interest in including an image, and affirmative contact and publication authorization. Only verified app administrators can read or update this inbox. The form has no general notes field and must not receive a diagnosis, medical record, image, journal content, or recovery material. A request is free and does not guarantee publication; selection remains at the manager’s discretion. No payment is requested or accepted. The request is deleted if the associated app account is deleted.
Purchases, links, and outside services
Apple StoreKit or Google Play Billing handles product identifiers, purchase history and status, localized prices, and store entitlements. In the Android build, a deliberately entered Google Play review-access code is checked by a dedicated Supabase function; the server stores only the configured SHA-256 digest and the device stores only a limited-time expiry. This access is not a subscription and cannot grant account, journal, recovery, or Manager Portal access. Supabase provides authentication and encrypted storage. Sponsor or nonprofit links open the destination site and are not selected from journal content. Third-party sites and services are governed by their own policies.
Analytics, advertising, and AI
The app currently ships no analytics SDK. Journal content and derived spiritual statistics are never sent to analytics. There is no behavioral advertising network. AI does not run automatically and is not currently active.
Notifications and reports
Notifications are optional, scheduled locally, and use generic text without journal content or counts. Reports are created on the device and leave it only when the user chooses to share them.
This public website
The site code has no analytics, form, cookies, or local storage. Language choice is carried only in the page address. Netlify hosts the files and may process technical request data needed to deliver the site.
Changes and questions
This policy will be updated when product practices change. For privacy questions or deletion requests, email support@bhglobalconsultingllc.com or use the Support and contact page. Do not send journal content, a recovery code, an encryption key, or sign-in credentials.