GloryCam is built local-first. The vast majority of what you create in the app — your prayer journal, your streak, your vow signature, your study progress, your blocked-app list — stays on your device and never reaches a server we operate. We do not run a backend that holds your spiritual content.
This policy explains what data GloryCam collects, why, where it goes, and your rights over it. We have written it in plain language. If anything is unclear, write to us at privacy@glorycam.com and we will explain.
Who we are
GloryCam ("GloryCam," "we," "us," "our") is the operator of the GloryCam iOS application and the website at glorycam.com. We are reachable at hello@glorycam.com for general inquiries and privacy@glorycam.com for privacy matters.
The short version
If you read nothing else, read this:
- On-device by default. Your prayer transcripts, study answers, scanned scripture, vow signature, streak data, profile picture, and partner messages are stored on your iPhone. We do not have a copy.
- iCloud, not us, holds anything that crosses devices. When you pair with a partner ("Two-by-Two") or move to a new device, GloryCam uses Apple CloudKit — meaning the data sits in your iCloud account, governed by Apple's terms. We do not operate a server that stores it.
- Generating a glory is the one exception. When you choose to capture one, GloryCam sends that photograph to AI services through Atlas Cloud. It is encrypted in transit, processed within seconds, and is not retained by us or our processing partners.
- No advertising. No tracking pixels. No selling of data. GloryCam does not use IDFA, third-party advertising SDKs, or behavioral tracking. We do not sell, rent, or trade your information.
Data we collect, and why
Information you provide directly
- Display name and signature (drawn during the Covenant ceremony) — to personalize your home screen and milestone certificates. On-device.
- Profile picture (optional, chosen in Settings) — shown in the app header. Stored on-device only. We never upload it.
- Gender selection — determines which figure appears in the growth visual and which capture guide you are shown. On-device.
- Denomination preference — filters scripture and study content to match your tradition. On-device.
- Reminder times — schedules local notifications. On-device.
- Blocked-app selections — tells iOS which apps to shield. On-device, via Apple's FamilyControls framework. The tokens are opaque: we never see which apps you chose.
- Partner pairing handle (only if you choose to pair) — establishes a CloudKit shared zone between two users. Apple iCloud.
Information generated by your practice
- Prayer transcripts — on-device. Speech-to-text runs on-device using Apple's SFSpeechRecognizer with on-device recognition required.
- Names and topics auto-detected in your prayers — surfaced as chips so you can revisit who you prayed for. Detection runs through Apple's NaturalLanguage framework. Never uploaded.
- Growth day count and pillar completion — powers your growth figure and your milestone unlocks. On-device, with optional iCloud mirror so a new device can resume.
- Study answers and accuracy — on-device.
- Bible Scan camera frames — Apple's Vision framework runs OCR locally to verify the verse. The frame is processed and discarded. No image is saved or transmitted.
- Journal entries you write — on-device. Auto-tagging uses on-device NLP.
Glories — the one moment we use the cloud
GloryCam generates a glory at two kinds of moment:
- Five milestones — the crown, breastplate, boots, cape and Full Glory, earned at growth days 1, 21, 40, 65 and 90. Growth days advance only on days you practise, so these are earned positions rather than calendar dates.
- A monthly picture — offered in the closing days of each month.
When you choose to capture one:
- Your iPhone takes a single still photograph. The framing differs by milestone — head-and-shoulders for the crown, upper body for the breastplate, your feet for the boots, and a full-length shot for the cape. You see the guide before the shutter.
- Before anything is sent, the photograph is checked on your device to confirm it matches the requested framing, and — except for the boots, which contain no face — that it is the same person as your earlier captures. This check runs locally using Apple's Vision framework. Photographs that fail are discarded on the device and never transmitted.
- The photograph is encrypted in transit and sent to Atlas Cloud, which routes it to OpenAI's image-generation service and KLING's image-to-video service.
- These services return a stylized portrait still and a short video (five seconds for a milestone, seven for Full Glory).
- Your original photograph is not retained by us, by Atlas Cloud, by OpenAI, or by KLING beyond the time required to produce the result. We do not log it. We do not store it. We do not use it to train any model.
The rendered still and video are saved on your device and, optionally, to your camera roll if you tap save.
If you choose to share a glory, GloryCam adds a small GloryCam mark and the date it was earned before opening Apple's share sheet. You control where it goes from there.
If you never want a glory generated, simply do not start a capture. No photograph leaves your device unless you take that action.
Subscription information
GloryCam uses Apple In-App Purchase, managed through RevenueCat. When you subscribe, we receive an opaque purchase receipt and a RevenueCat user identifier. We do not see your credit card number, your billing address, or your Apple ID. Apple sees those, governed by Apple's own privacy policy. RevenueCat sees the purchase event, governed by their privacy policy.
Diagnostic and crash data
If you have enabled "Share With App Developers" in iOS Settings, Apple may send us anonymized crash reports through TestFlight or App Analytics. These reports do not contain your prayers, your messages, or any content you create. They contain stack traces and device model information that help us fix bugs.
Data we do not collect
GloryCam does not collect:
- Your real name (unless you choose to type it as your display name).
- Your email address (we do not require an account).
- Your phone number.
- Your contacts list.
- Your photo library. We read a single image only when you pick one as your profile picture, and it stays on your device; we write to the library only when you save a glory.
- Your location.
- Your IDFA or any cross-app tracking identifier.
- Your browsing history, your other installed apps, or your device fingerprint.
- Audio recordings of your prayers (audio is processed in memory and discarded; only the text transcript persists, on your device).
How partner sync works
If you choose to pair with another GloryCam user as your "Two-by-Two" partner, GloryCam creates a CloudKit shared zone between the two of you. Through that zone, you can see each other's streak status, send a small set of pre-defined gestures, and view a shared milestone moment. The shared content is governed by these rules:
- The shared zone lives in Apple's iCloud, in your iCloud accounts. It is not stored on a server we operate.
- By default, GloryCam does not share the substance of your prayers — only that you prayed. The product is designed around presence, not surveillance.
- You can unpair at any time from Settings. Unpairing severs the CloudKit share and removes your partner's view of your data going forward.
- Apple's CloudKit terms apply to data in transit and at rest within iCloud.
Third-party services
- Apple — App Store, iCloud, CloudKit, FamilyControls, SFSpeechRecognizer, Vision, NaturalLanguage. Whatever the framework requires. CloudKit data lives in your iCloud, not ours.
- RevenueCat — subscription management. An opaque purchase receipt and a RevenueCat user identifier.
- Atlas Cloud — routing layer for glory generation. The encrypted photograph at the moment of capture. Not retained.
- OpenAI — generates the glory still. The photograph at the moment of capture. Not retained per their commitments to Atlas Cloud.
- KLING — generates the glory video. The rendered still at the moment of generation. Not retained per their commitments to Atlas Cloud.
We do not use Google Analytics, Firebase Analytics, Meta SDK, TikTok SDK, AppsFlyer, Branch, Adjust, or any analogous behavioral analytics or attribution provider.
How we keep your data safe
- Local storage on your device is protected by iOS's standard data-protection class (encrypted at rest when your device is locked).
- iCloud and CloudKit use end-to-end encryption where Apple supports it for the relevant data class, and TLS for everything in transit.
- Glory transmissions use HTTPS / TLS 1.2 or higher between your device, Atlas Cloud, and the AI processing endpoints.
- We have no servers that hold your spiritual content. An attacker cannot breach a database of GloryCam user prayers, because no such database exists.
Your rights
- Access — you can view all of your data inside the app.
- Deletion — deleting the GloryCam app removes all on-device data. To remove iCloud-synced data, also turn off iCloud for GloryCam in iOS Settings → Apple ID → iCloud, then delete the app.
- Portability — you can export your reflections as a plain-text file you control.
- Correction — you can edit your display name, profile picture, denomination, and other preferences at any time in Settings.
- Withdraw partner pairing — unpair at any time from Settings → Partner Pairing.
- Opt out of glories — simply do not start a capture. No photograph is generated unless you tap to capture.
Children
GloryCam is intended for users 13 years of age and older. We do not knowingly collect data from children under 13. If you are a parent or guardian and you believe your child under 13 has created data inside the GloryCam app, please contact us at privacy@glorycam.com and we will help you delete it.
International users and data transfers
GloryCam is offered globally through the Apple App Store. Because most of your data never leaves your device, there is no international transfer to speak of. The exceptions are:
- Glory captures, which are routed through Atlas Cloud and processed by OpenAI and KLING. These services may operate from data centers outside your country of residence.
- Subscription receipts, processed by RevenueCat and Apple.
- iCloud data, governed by Apple and possibly stored in regional data centers.
If you are located in the European Economic Area, the United Kingdom, Switzerland, California, or any other jurisdiction with extraterritorial privacy law, you retain all rights afforded to you under that law (including access, deletion, portability, and the right to lodge a complaint with your supervisory authority). Email privacy@glorycam.com to exercise any of those rights.
Retention
On-device data persists until you delete it or uninstall the app. iCloud-synced data persists in your iCloud until you remove it. Glory source photographs are never retained beyond the seconds required to generate the result. RevenueCat retains subscription records for as long as your subscription is active and for the period required by accounting and tax law thereafter.
Cookies and similar technologies
The GloryCam iOS app does not use cookies. The glorycam.com website uses no third-party tracking cookies. If we ever introduce essential cookies for site function, we will say so here and provide controls.
Changes to this policy
If we change this policy in a material way, we will update the "Last updated" date at the top and surface a notice inside the app the next time you open it. Continued use of GloryCam after a change indicates your acceptance of the updated policy. We will not retroactively reduce your rights under this policy without your consent.
Contact us
- Email: privacy@glorycam.com
- Web: glorycam.com
We aim to respond within seven days.