Data Deletion

Operator: Muhkam Limited · Effective 30 August 2026

Customer app

The customer app requires no user-facing account or sign-up. Home Masjid, favourites, language choices, a bounded public-catalogue cache, and source random installation identifiers are stored on the device. Use Settings → Privacy & local data → Clear saved data to remove those device copies, or uninstall the app. This does not immediately delete an already-created server-side abuse-prevention record. Customer 1.1 Mapbox route-limit records contain one-way-hashed UID, installation, and IP-derived subject identifiers, counters, and timestamps, with an expiry field no later than 48 hours after the latest allowed request; no raw IP address or source identifier is stored in them. The legacy Customer 1.0 Google limiter stores its pseudonymous Firebase service UID, count, and timestamps, with an expiry field ten minutes after the latest request attempt, including a denied attempt. Firebase's asynchronous time-to-live deletion may occur after either expiry time. Firebase may recreate a pseudonymous anonymous service identity and random identifier when protected services are used again.

Administrator accounts and mosque applications

Signed-in administrators can permanently delete their account inside Masajidna Admin. Open Settings → General → Account → Permanently delete account. New applicants can use the same action from the email-verification, application-status, or access-unavailable screen. The app shows the data affected, requires the current password, and asks for an explicit permanent-deletion confirmation.

Deletion removes the sign-in account, personal administrator profile, mosque application, and associated personal data. If the administrator owns a mosque workspace, the app names it before confirmation and deletion also removes that workspace and its associated prayer schedules, announcements, display records, and management data. This action cannot be undone.

Security and audit records that must be retained are separated from the account and anonymised so they no longer identify the deleted administrator. Time-limited encrypted backups expire through the normal backup-retention cycle.

If you cannot sign in, or only want a public mosque profile corrected or unpublished without deleting your account, email support@masajidna.app from the address associated with the account. Never send a password.

Correction reports and other requests

Customer correction reports carry a 90-day expiry field. For an earlier privacy request, email support and provide the masjid name, approximate submission date, and enough non-sensitive detail to locate the report. Do not include passwords or sensitive identity documents in the first message.