privacy policy

last updated: 5 july 2026 . last reviewed: 8 july 2026

this explains what mahfah collects, why, the legal basis for it, who it goes to, how long we keep it, and your rights. plain language, no tricks.

who runs mahfah

mahfah is operated by an individual (a sole operator), who is the data controller for the personal data described here. contact for any privacy question or request: support@mahfah.app. we have not appointed a data protection officer (we are not required to).

what we collect

why we use it, and our legal basis

each purpose has a legal basis under the EU/UK GDPR:

where we rely on legitimate interest, you can object (see your rights).

your photo, and automated moderation

is your face treated as biometric data? no. mahfah does not use facial recognition. we do not build faceprints or face templates, and we never use your photo to identify, match, or recognise you. under EU law a face photo is only special-category "biometric" data when it is run through technology built to uniquely identify a person, and we do none of that. your photo is ordinary personal data: we use it to show your profile and to keep the app safe.

photos and lore are checked automatically before they go live. these checks run without a human and can reject content on their own. the logic, plainly: if an automated safety score crosses our threshold, the content is rejected and we fail closed (if a check can't run, the upload is blocked). a rejected photo or line of lore is simply not published and you're asked to submit a different one. it does not affect your account standing or scores.

your right to a human. if you think a rejection was wrong, email support@mahfah.app and a person will review it, hear your view, and can overturn it.

where your data goes (international transfers)

your account and content are stored on supabase in the EU (stockholm), and pseudonymous product analytics on posthog in the EU. some processing happens in the united states, and how long each of those holds anything differs: openai (automated moderation) processes the content and does not store it; expo (push delivery and builds) and resend (only used to email ourselves if you flag child-safety content) handle a message in transit; vercel (the mahfah.app web pages) keeps short-term request logs; sentry (crash diagnostics) retains error reports for around 90 days. the per-processor detail is in the list below. when data leaves the EU we rely on the EU-US data privacy framework where the processor is certified, and on the european commission's standard contractual clauses as a fallback. email us for detail on any specific processor.

third parties

each is contractually bound to protect your data as described here.

for transparency: we previously used sightengine (photo moderation) and anthropic (claim suggestions). both have been removed and no longer receive any of your data.

how long we keep it

when a file is deleted, by you or by us after a moderator removal, cached copies on content-delivery networks can take up to 72 hours to expire, so a copy may briefly be served from a cache after the file itself is gone. our database provider keeps automatic daily backups for a short rolling window (currently seven days) for disaster recovery. we do not restore from them to recover a deleted account, and each backup ages out on its own, so your records are gone from the last of them within a week of deletion.

guests (anonymous mode)

you can use mahfah as a guest without an account. we create an anonymous session and keep your progress on your own device. we don't collect your email or identity as a guest. anything you upload still goes through the same safety moderation. if you create an account later, your guest progress transfers to it. deleting the app clears your local guest data.

your rights

under the EU/UK GDPR you can, at any time:

for any right that isn't a button in the app, email support@mahfah.app. we respond within one month.

age

mahfah is for users aged 18 and over. we ask for your date of birth at signup, before any profile is created. if it says you are under 18, the app closes there: no profile is made, the sign-in account created moments earlier is deleted, and that device stays locked out. mahfah is not directed to children, and if we otherwise find that a user is under 18 we delete their account. we ask for a date, not an ID document, so this is a self-declared check: it stops a stated minor, and it cannot detect a false date.

deleting your account

you can delete your account and all associated data at any time. how to delete your account. our community rules are in the terms.

changes to this policy

if we change this policy in a way that materially affects you, we'll update the date above and surface a notice in the app before the change takes effect.

contact

questions? email support@mahfah.app.