Legal

Privacy Policy

Last updated: July 27, 2026

Version: 2026-07-27

1. Who we are

WellDone GFS ("we," "us," "our") is a Scripture-centered daily-formation service operated by JoshuaOneNine LLC, a Florida limited liability company, at welldonegfs.io. For any privacy question, email support@welldonegfs.io with "Privacy" in the subject line. For applicable data-protection law, JoshuaOneNine LLC is the controller of the personal information described here.

2. The sensitive nature of what you share

The reflections, prayers, and related content you create may reveal your religious or spiritual beliefs and may express your emotional or mental-health state. Under laws such as the EU and UK GDPR, this is "special category" (sensitive) personal data receiving heightened protection. We process this sensitive content only to provide the Service to you, and we rely on your explicit consent — given when you create your account and accept this Policy — as the legal basis. You may withdraw consent by deleting the content or closing your account. We do not sell it, use it for advertising, or use it to train third-party advertising or foundation models.

3. Information we collect

You give us: account information (name, email, hashed password, optional avatar); date of birth (collected at sign-up to confirm you are 18+, stored privately, visible only to you and our systems, never shown to other users); Your Content (reflections, prayers, journal entries, messages, voice/video, keepsakes); preferences (notification, rhythm, accessibility, location-sharing precision); consent records (the fact, time, and versions of your agreement); and, if you contribute, billing records from Stripe (name, email, billing address, amount, cadence, transaction identifiers — Stripe handles your card details directly; we never see or store them). We collect automatically: technical data (IP address, device and browser type, basic security logs). We have turned off general visitor/page analytics for this project.

4. How we use your information

To provide the daily formation experience and generate Scripture-grounded responses; to deliver features you use (messages to their recipients, keepsakes you preserve); to confirm eligibility (18+) and operate the safety measures in Sections 5 and 8; to send the communications you have chosen; to secure the Service and detect abuse or fraud; and to keep records we are legally required to keep, such as billing and consent records. We do not use your reflections for advertising and do not sell your personal information.

5. Automated safety screening

Text you submit may be automatically screened for indications of crisis, self-harm, or harm to others, so supportive resources can be surfaced and accounts routed for human review where our procedures require. This screening is automated and used only for safety and integrity; never for advertising or commercial profiling. WellDone GFS is not a crisis or emergency service; if you are in danger, contact local emergency services or, in the U.S., call or text 988. Where safety screening or an age concern places an account on hold, related content is preserved rather than automatically deleted so a person can review it; the governing procedures are being finalized with counsel.

6. The AnsweredPrayer globe — location by design

When a prayer joins the AnsweredPrayer globe, your device — not our servers — resolves your location to a centroid at the precision you choose in Settings (City, Region, Country, or None). Your precise coordinates are never sent, logged, or stored. Only the centroid, the region name your device produced, and the country reach us. Before the centroid is written, a small deterministic drift (about 2–5 km) derived from the prayer is added: stable across sessions, but the stored point sits near a place you know and never where you are. A city-level light stands alone only if at least two other prayers sit within about 10 km; otherwise it softens to the region tier, so no light identifies one person. We store only the centroid, region name, and country — we cannot expose what we never held.

7. AI processing and how your content is handled

Some features send the relevant text of Your Content to AI service providers acting on our behalf, solely to generate your Scripture-grounded responses, power the in-app guide, and perform the safety screening in Section 5. These providers are contractually restricted from training on your content or using it for their own purposes; where we rely on zero-retention handling, your content is not retained after the request is served. Because these AI providers operate their services from the United States, the text of your reflections processed by them is handled on U.S.-based infrastructure, even though your account data is stored in the European Union (see Section 8); we treat that as an international transfer.

8. Where your data is stored and who processes it

We build and host WellDone GFS using third-party sub-processors. As currently configured: your account data and database records are currently hosted in a region our project configuration indicates is in the European Union; we are confirming the precise hosting details with our provider and will update this section as those details are verified. File storage, transactional email, and some processing may be handled by providers operating from the United States; the AI providers that process your reflection text operate from the United States (Section 7); and payment processing is handled by Stripe (United States) under its policy at stripe.com/privacy. In plain terms: your account and reflections primarily rest in what our configuration indicates is the EU, but delivering the Service involves a chain of sub-processors, several based in the United States — including the AI providers that process your reflections. Where personal data moves between regions, we treat it as an international transfer and rely on appropriate safeguards. We are moving the parts of the Service that store and process your content onto infrastructure we contract for directly, and before public launch we will state the exact hosting region and maintain a current, itemized list of sub-processors with their roles and locations.

9. How we share information

We share personal information only with the sub-processors above, acting on our behalf; with the specific people you choose to share content with inside the Service; and where legally required or necessary to protect a person's safety or the Service's integrity. We do not sell personal information and do not share it for advertising.

10. International users and your rights

You can access, export, correct, or delete your information anytime from Settings → Privacy, or by email. EU/UK users have GDPR rights (access, rectification, erasure, restriction, portability, objection, withdrawal of consent, and complaint to a supervisory authority). California residents have CCPA/CPRA rights (know, delete, correct, opt out of "sale"/"sharing" — we do neither). We honor verified requests within the time required by law and, in any case, within 30 days where practicable.

11. Cookies

We use only essential cookies — authentication session, accessibility preferences, cookie-consent state, and the age-gate rate-limit marker. We do not use advertising or cross-site tracking cookies. See our Cookie Notice for details.

12. Data retention and deletion

We keep Your Content while your account is active. When you delete specific content it is removed on our stated schedule; when you close your account, your personal content is deleted within 30 days, except (a) content another user has preserved through a feature that permits it, (b) records we are legally required to keep (billing and consent), and (c) short-lived backups and security logs, purged on a rolling schedule. Content preserved for a safety or age review is retained only as long as needed and then handled under the procedures referenced in Section 5.

13. Security

We protect the Service with encryption in transit and at rest, database-level access controls (row-level security), hashed passwords, and least-privilege access. No system is perfectly secure, but we design the Service to hold as little as we can and protect what we hold.

14. Children

WellDone GFS is intended solely for adults aged 18 or older. We do not knowingly permit anyone under 18 to use the Service or collect personal information from anyone under 18. We use a date-of-birth age check at account creation and remove accounts we learn belong to a person under 18. If you believe someone under 18 has created an account, contact support@welldonegfs.io with "Privacy" in the subject line.

15. Changes to this Policy

We may update this Policy. When changes are material, we will notify you (by email or in-app) and, where the change concerns sensitive content, ask you to review and re-consent. Each version is identified.

16. Contact

Email support@welldonegfs.io with "Privacy" in the subject line.

Formation continues quietly.