Privacy Policy
Effective Date: June 1, 2026 · Last Revised: September 1, 2026
Introduction
This Privacy Policy explains how Arianext (“UNOAH”, “we”, “us”) collects, uses, shares, and protects your personal data when you use the UNOAH AI Bible Companion application and www.unoah.com (the “Service”). It forms part of, and should be read together with, our Terms & Conditions. It is designed to comply with India’s Digital Personal Data Protection Act, 2023 (DPDP Act) and DPDP Rules, 2025; the UAE PDPL (Federal Decree-Law No. 45 of 2021); the KSA PDPL (overseen by SDAIA); and applicable national laws in other GCC and South Asian jurisdictions.
1. Who is responsible for your data
The UNOAH application and related services (the “Service”) are operated and published by ARIANEXT TECHNOLOGIES PRIVATE LIMITED (“Arianext”, “we”, “us”, “our”), a company incorporated under the Companies Act, 2013, which is the Data Fiduciary responsible for your personal data under India’s Digital Personal Data Protection Act, 2023.
UNOAH is a brand owned by UNOAH AI LTD, a company licensed in the Dubai International Financial Centre (DIFC) (Commercial Licence No. CL13235), on whose behalf Arianext develops and operates the Service.
For any privacy matter, contact privacy@unoah.com.
Grievance Officer (in accordance with the DPDP Act, 2023):
2. Data we collect
We collect the following categories of personal data:
3. How and why we use your data
4. AI features, Google Gemini and OpenAI
Parts of the Service are powered by generative AI: the NOAH chat, AI voice setup (the voice onboarding conversation with NOAH), and AI-guided prayers. This section sets out exactly what leaves the Service when you use them, how we collect it, who receives it, and what it is used for. It adds to, and does not replace, the rest of this policy.
What we send
When you use one of those features, we send the following to our AI providers — Google, or OpenAI where Google is unavailable (see “Who receives it” below):
How we collect it
All of it comes directly from what you type, say, or select in the app. We do not infer it from your behaviour, and we do not obtain it from data brokers or any other third party.
Who receives it, and what it is used for
The primary recipient is Google LLC, through the Gemini API. Where the Google service is unavailable or fails to respond, the same request is sent instead to OpenAI as a fallback provider, so that the feature keeps working. Which of the two handles any given request depends only on availability at that moment; both receive the same categories of data described above, and neither receives anything more. Both process this data on our behalf, as our service providers, under the terms that apply to our use of their respective APIs. It is used for one purpose only: to generate the response that is shown back to you. It is not used to advertise to you, it is not used to build an advertising or marketing profile of you, and we do not sell it. We use no AI providers other than these two.
What we never send
We never send your payment or card details, your contacts, or your location to Google or OpenAI for AI processing.
AI Insights on Bible verses
The AI Insights shown alongside Bible passages are prepared in advance and stored as editorial content, and they are the same for every reader. Reading them sends nothing about you to Google.
Your choice
The AI features are optional. In the app we ask you before anything is sent to Google or OpenAI for AI processing for the first time, and nothing is sent unless you agree. You can withdraw that agreement at any time: tap the settings gear on the Home screen, then Privacy & Security → Data & Privacy. After that, no further data is sent for AI features. Declining, or later withdrawing, does not lock you out of the app: Bible reading, downloaded translations, guided prayers, the daily verse, and the community features all continue to work.
The AI Companion on www.unoah.com uses the same AI features. The messages you type there reach the same providers in the same way, for the same purpose, and on the same terms. You can use the rest of the site without it.
Where this processing takes place is described in section 7, and the rights you can exercise over it in section 9.
5. Legal basis & consent
We process personal data on lawful grounds recognised by applicable law, primarily your consent and, where permitted, legitimate uses necessary to provide the Service. Where consent is required, we request it through clear notices and affirmative action (for example, agreeing to these terms at sign-up and granting microphone permission). You may withdraw consent at any time; withdrawal does not affect processing already carried out.
Sending your data to Google through the Gemini API rests on your explicit consent, and on no other ground. We ask for it separately, before the first time an AI feature sends anything, because what you write to NOAH and in prayer requests routinely reveals religious belief, health, and personal relationships — special-category data under Article 9 of the UK and EU General Data Protection Regulation, and data we treat as sensitive throughout this policy. We do not rely on legitimate interests for it, and you can withdraw it at any time as described in section 4.
On iOS, our use of the advertising identifier (IDFA) for attribution depends on your App Tracking Transparency choice. We ask through Apple’s standard prompt and use the advertising identifier only if you allow it. If you decline, or later turn tracking off in iOS Settings, no measurement based on the advertising identifier takes place; attribution then relies only on aggregated, non-identifying reporting such as Apple’s SKAdNetwork. Declining does not limit any feature of the Service. On Android, you can reset the Google Advertising ID or opt out of its use for advertising from your device settings at any time.
7. International transfers
Your data is primarily stored and processed in our India (ap-south-1) region. Some processors may process data outside your country — including Google, which handles the AI requests described in section 4 through the Gemini API, and OpenAI, which handles those same requests when it acts as the fallback provider. Any cross-border transfer is carried out in compliance with applicable restrictions, conditions, or government directions under the DPDP Act, the UAE PDPL, the KSA PDPL, and other applicable laws.
8. Data retention
We retain your personal data for as long as your account is active and as needed to provide the Service. When you delete your account, we delete or irreversibly anonymise your personal data within a reasonable period, except where we are required to retain certain records to comply with legal, tax, accounting, or security obligations.
9. Your rights
Subject to your local law, you have the right to access, correct, and request erasure of your personal data; to withdraw consent; to object to or restrict certain processing; and, under the DPDP Act, to nominate an individual to exercise your rights in the event of death or incapacity. To exercise any right, contact privacy@unoah.com or use the in-app controls. You can request account deletion at any time at https://unoah.com/delete-account or from within the app. We respond within the timelines required by applicable law and, where no shorter mandatory period applies, within ninety (90) days.
10. Children
UNOAH may collect and process the personal data of users under 18 only with verifiable consent from a parent or legal guardian and where permitted by applicable law. The parent or legal guardian may request access to, correction of, or deletion of the minor’s personal data and may withdraw consent. UNOAH does not knowingly permit minors to use the Service without the required consent and supervision.
11. Security
We implement appropriate technical and organisational measures to protect your data, including encryption in transit (TLS), hashing of direct identifiers before analytics, access controls, and monitoring. No method of transmission or storage is completely secure; where required by law we will notify the competent authority and/or affected users of a personal data breach.
12. Changes to this policy
We may update this Privacy Policy from time to time. For material changes, we will provide notice by email or a prominent in-app notice at least fourteen (14) days before they take effect.
