Privacy policy
Updated on August 25, 2026
This policy explains, in plain language, what Antioquia stores, where that data goes and what you can do about it. It describes the app as it works today.
The essentials, in three sentences
Most of what you do in Antioquia stays on your device: the Bible works offline, and your notes, highlights and chat conversations are saved locally.
When you sign in with your Google account, a copy of your data goes to our server so you do not lose anything when you change phones.
We do not sell your data, we do not use it for advertising and we do not build an advertising profile about you.
Your account
Sign-in is handled by Google, through Firebase Authentication. We receive your name, e-mail and profile picture from your Google account — we never receive or see your password.
We use this to identify you, sync your data across devices and show who is who when you share a board or a prayer room with other people.
You can use much of the app without signing in at all.
What gets synced
With your account connected we sync: notes (including attached audio, photos and drawings), favorite and highlighted verses, reading progress, plans, search history and your language preference.
This data lives in a database on Google Cloud, and attached files in storage private to your account. Our server stores this content but does not open it for analysis: it travels as a closed block, identified only by your account.
Syncing happens in the background and never blocks your use of the app.
AI-powered features
Some features send what you wrote to specialized providers, which process the request and return the answer:
• Bible chat, sermon outlines, cell studies and visitor sheet reading: OpenAI • Image and verse background generation: Google (Gemini) • Bible and devotional narration: ElevenLabs • AI search: Perplexity • Voice conversation: OpenAI, with audio going straight from your device to the provider
Your chat conversations are NOT stored on our server, and we ask the provider not to retain them either. Chat history exists only on your device.
The visitor sheet photo travels inside the request itself and is not stored at the provider.
Images you generate stay in our storage for 7 days and are then deleted automatically.
Other people's data
The visitors tool, the board and the prayer room store third-party data: names, phone numbers, prayer requests, photos.
That data belongs to your church or ministry, not to us. You decide what to register, and it is your responsibility to have those people's consent and to treat their data with the care the law requires.
We only store and transmit this content so you and your team can see it. Whoever is a member of a group sees what is in it.
Events and registrations
Anyone who registers for an event through the organizer's link gives a name, an email address and a WhatsApp number. Those three stay with us, and they are what the organizer sees in the attendee list.
The WhatsApp number is erased 90 days after the event date — it exists so the organizer can reach you before and during the event, and has no use afterwards. Name and email stay: they are your ticket and the record of who was there.
The email is also what links a registration made on the website to the app: sign in with the Google account using that same address and your tickets appear under My tickets. We never send you email — here the address is an identifier, not a contact channel.
Payment happens on the Mercado Pago page, not on ours. We never see or store a card number, security code or Pix key. From the payment we keep only whether it was approved, the amount and the method used (Pix, card or balance). The money goes into the organizer's Mercado Pago account, never into an account of ours.
If you are the organizer, two things of yours become PUBLIC on the event page. The cover photo you upload sits at an open address — that is what lets it show up for whoever gets the link on WhatsApp. And the nickname of the Mercado Pago account that will receive the money is shown to whoever registers: it is what lets them check that the organizer's name and the payment destination match, and whoever sells in a consumer relationship has to be identifiable. Deleting the event deletes its cover; deleting your account deletes all of them.
Still as the organizer, the data of the people who register is yours, not ours — the same responsibilities from the previous section apply. And if you delete your account, your events and their registrations go with it.
Subscription
Payment is handled entirely by Google Play. We do not receive, see or store card numbers or banking details.
From Google Play we receive only the confirmation that an active subscription exists, which plan it is and how long it is valid — enough to unlock the paid features.
Notifications and crashes
If you allow notifications, we register a device identifier with Firebase Cloud Messaging so we can notify you about prayer requests and news. You can revoke this at any time in your system settings.
When the app closes unexpectedly, we send a technical report to Firebase Crashlytics — device type, Android version and where the error happened. That report exists to fix the problem and does not carry the content of your notes or conversations.
How we measure app usage
To learn what works and what needs improving, we record in Firebase Analytics which screens you visit, which features you use and subscription events (reaching the plans screen, starting a purchase, subscribing or cancelling).
Nothing you write goes into that measurement: not the text of your notes, not your conversations with the artificial intelligence, not what you type into search. We record, for example, that a search happened and how many results it returned — never what you searched for.
We do not collect an advertising identifier: that permission is removed from the app, so there is no way to build an advertising profile or target ads with this data.
Permissions we ask for
• Microphone: to record audio in a note and for voice conversation. Used only while you are recording. • Notifications: for the alerts you choose to receive.
We do not ask for camera or gallery permission: when you attach a photo, Android itself opens the camera or gallery, and we receive only the image you picked.
How long we keep it
Your data stays with us for as long as your account exists.
Whatever you delete inside the app is removed from our servers within 30 days — that window exists so the deletion can propagate across your devices before becoming final.
AI-generated images are deleted after 7 days. Narration audio is kept because it is shared across all users and identifies no one.
Deleting your account
In Profile, under Danger zone, you can delete your account and everything tied to it: synced data, attached files, usage counters and the account itself.
Deletion is permanent and immediate, and does not require asking us for anything. If you prefer, you can also write to the e-mail at the bottom of this page.
Your rights
You may request confirmation that we process your data, access to it, correction of anything wrong, portability and erasure.
Most of this is already in your hands inside the app. For anything that is not, write to the e-mail below and we will answer.
Children and changes to this policy
Antioquia is not intended for children under 13, and we do not knowingly collect children's data. If you know of such an account, let us know at the e-mail below and we will delete it.
If this policy changes in a relevant way, we will let you know inside the app before the change takes effect. The date at the top of this page shows the last revision.
