Rabbi collects less than most apps, on purpose. Here's the actual list — what, why, and who else sees it.
Signing in is handled by Clerk, a third-party authentication provider. Rabbi receives your email address and a Clerk-issued user ID; we don't see or store your password — Clerk handles that entirely.
Subscriptions are processed by Stripe. Your card details go directly to Stripe and never touch Rabbi's own servers or database — Rabbi stores only your Stripe customer/subscription IDs and subscription status (trialing, active, canceled), needed to know what you're entitled to.
This is the content covered by “your study stays yours” — see the Terms of Service for what that means in practice.
Rabbi uses PostHog to understand how the app is actually used — which features get opened, which translations people read in, where the reading flow breaks down. This includes standard event tracking (page views, feature clicks) and, depending on PostHog project settings, session replay with sensitive input fields automatically masked. Analytics data is tied to your account once you're signed in, so usage patterns can be understood per-user rather than only in aggregate. If you'd rather not be tracked this way, most browsers' built-in tracking-protection or a content blocker will stop it — Rabbi works the same either way, you'd just be invisible to our own usage data.
Reading a passage isn't private in any special sense — chapter/verse access isn't logged against your identity beyond the ordinary analytics above. Translation text itself comes from api.bible (NASB, NLT, Amplified) or is bundled directly (WEB, public domain); reading it doesn't send your query to those providers in real time — Rabbi caches translation text server-side.
Data is shared with exactly the vendors named above, each only for the purpose stated, and nowhere else:
Rabbi doesn't sell your data, and doesn't share it with anyone outside this list.
You can ask for an export of everything tied to your account, or ask for your account and everything in it to be deleted, at any time — use Request a Feature (choose “Other”) or reach out directly. Deletion removes your account, Memory Vault, Ah-Ha Moments, and Stripe/Clerk linkage; it doesn't retroactively pull analytics events already recorded, since those aren't practically reversible once aggregated, but they stop the moment your account is gone.
Rabbi isn't directed at children under 13, and knowingly collecting data from a child under 13 isn't something we do.
If what Rabbi collects changes in a way that matters — a new vendor, a new kind of tracking — this page gets updated and the “last updated” date above moves.
Questions about any of this — use Request a Feature or reach out directly.