home

Privacy

Last updated 3 October 2026

What happens to your messages

When you send a message, it is sent over an encrypted connection to Wadih's server, which passes it to a third-party AI provider that works on our behalf to write a reply. The provider processes it under its commercial terms and does not use it to train AI models. It may keep the data for a limited period under its own data retention policy.

Wadih's server does not store your conversations. Our logs record only technical details such as how long a reply took and its cost, never the text you write or the reply.

Where your conversations are kept

Your conversation history is stored in your browser on this device. Along with your messages and Wadih's answers, it holds the settings each reply used and, when Wadih's safety check flags a message, a short internal note (for example, that a message may mention self-harm). These travel with your next message so Wadih keeps the context. You can rename or delete a single conversation from the sidebar, or delete them all from Settings. Clearing your browser's site data also deletes it. If you use a shared device, others with access to it may be able to see your conversations.

You can export a copy of your conversations from Settings. The copy is made on your device and goes only where you save or share it (in the Wadih app, through your phone's share sheet); it is not sent to Wadih's server. It contains your conversation titles and dates, your questions, Wadih's answers and the verified sources shown with them. It is not encrypted, so anyone who can open the file can read it. Once saved or shared, that copy is outside Wadih and deleting conversations in Wadih does not delete it.

Your account

Everyone signs in to use the chat, with Apple, Google or a 6-digit code sent to your email. Wadih runs its own sign-in and keeps your account in its own database: your email address, your name and profile picture link if Apple or Google shares them, which ways you sign in and, for Apple or Google, the sign-in tokens they issue (stored encrypted). If you use Sign in with Apple and choose to hide your email, Apple gives us a private relay address instead.

Sign-in codes are sent to your email by our email service provider, which works on our behalf. A code expires after 10 minutes and is stored only in a scrambled (hashed) form.

To keep you signed in, Wadih sets a first-party cookie in your browser on this device; it is used only for signing in. We keep a record of each signed-in session (when it started and when it expires), not your IP address or device details. To protect sign-in from abuse, we count recent sign-in requests by IP address.

To apply the daily message allowance, we store with your account your plan, your time zone (so your day resets at midnight where you are; it can change at most once a week) and how many messages you sent each day. We do not store what those messages say.

Plans and payments

If you subscribe to Wadih Plus on the web, payment is handled by our payment processor. In the Wadih app, it is handled by Apple or Google through your store account, and the subscription status reaches us through a subscription service that works on our behalf. We never see or store your card details.

We keep whether your subscription is active, where it was bought, when it ends, and the payment provider's reference for it, so it can be matched to your account.

Reports

If you report an answer, we store what you choose to send: the reason, your note if you add one, and the text of that answer (up to 4,000 characters), linked to your account. The rest of the conversation is not sent.

Deleting your account

You can delete your account from Settings in the chat. This deletes your account and its sign-in sessions (signing you out on every device), your profile, your daily usage counts and your reports, and cancels a Wadih Plus subscription made on the web. A subscription bought through Apple or Google is yours to cancel in your Apple or Google account; deleting your Wadih account does not cancel it.

Deleting your account on the web also removes the conversations and settings stored in that browser.

What else we collect

No ads. No trackers. We do not use analytics or advertising scripts.

Our hosting provider processes standard request information, such as IP addresses, to deliver the site and protect it from abuse. To limit how many messages can be sent in a short time, we briefly count requests in memory, by account, or by IP address when no one is signed in. Messages that may indicate someone is in danger are never limited.

Your settings

Preferences such as reply language, answer style, madhhab and country are stored on this device and sent with each message so replies can follow them.

Your interface language (English or Arabic) is also kept in a small cookie, so the chat page opens in the right language and direction. The cookie holds only the language and is sent with page requests to Wadih's website. It is not used for tracking.

Prayer times and location

Prayer times are calculated on your device. If you choose "Use my location", your browser or phone asks for permission first, and Wadih only asks when you tap that button. Your position is rounded to about 1 km, used only to calculate prayer times, and stored on this device. It is never sent to Wadih's server or to our AI provider. You can choose a city or enter coordinates instead.

In the Wadih app, prayer reminders are off unless you turn them on. They are scheduled as local notifications on your device, not sent from a server.

Important

No online service can promise absolute confidentiality. Please think carefully before sharing details that could identify you or others.

Wadih is not a substitute for qualified scholars, medical professionals, lawyers, therapists or emergency services.