Privacy Policy

Effective September 4, 2026

ShulDisplay is a configurable synagogue information board. It does not sell personal information, process payments, or intentionally collect donor identities or payment credentials.

Information used by the app

Board owners may configure a postal code, city name, latitude, longitude, timezone, congregation details, schedules, announcements, images, and payment links. Configuration is stored on the device unless the owner chooses a separate synchronization or deployment method.

Configured location data is sent to weather and calendar-related services when needed to retrieve local forecasts and calculate or verify location-specific information. This data describes the board location and is not intended to identify an individual.

Weather and external content

Weather requests may be sent to government or configured weather services. Optional live-media panels may connect to StreamVu, YouTube, or another URL selected by the owner. Those services receive ordinary network information, such as the device IP address and browser or application request headers, under their own privacy policies.

Donations and payment links

ShulDisplay does not process payments. Donation QR codes open a payment URL configured by the board owner, such as a Cash App, Venmo, Zelle, or other provider link. Payment details, donor identities, and transaction records remain with the selected payment provider.

Optional anonymous telemetry

When the optional payment gateway and impression tracking are enabled, ShulDisplay records only a random event ID and timestamp; owner-selected board and campaign identifiers; payment provider, event type, application version, and event source; and the destination hostname rather than the full destination URL.

The application does not intentionally record donor names, payment credentials, payment amounts, device identifiers, precise personal locations, or IP addresses in the payment database. Duplicate anonymous events are collapsed into ten-second windows. Database events older than 400 days are deleted when new telemetry is written and when an authenticated owner requests the payment summary. Owners can disable track_impressions or gateway_enabled.

Optional remote management

Remote management is off by default. When an owner enables it and pairs an Owner Companion, the service stores the board's display name, random board identifier, hashed credentials, app version, platform, last contact time, configuration revisions, and owner-published configuration. Configuration may contain congregation schedules, notices, names, branding, and donation destinations.

Pairing codes expire after ten minutes. Separate board and owner credentials are transmitted over HTTPS and stored only as SHA-256 hashes. Credentials are not included in remotely published configuration. The board continues using its last validated local configuration when it is offline.

Cloud hosting and offline storage

The web version uses Cloudflare for hosting and may use browser storage and a service worker to cache application files and upcoming daily content for offline operation. Cloudflare may retain ordinary request and security logs according to the account settings and Cloudflare's privacy policy. Native versions store configuration and bundled content locally on the device.

Retention and control

Local configuration remains until the owner edits it, clears application data, or uninstalls the app. Owners control optional external media, payment links, and telemetry. ShulDisplay does not use personal information for advertising or sell it to third parties.

Children

ShulDisplay is intended to present public community information and is not designed to collect personal information from children.

Changes and support

This policy may be updated as features or service providers change. The effective date above identifies the current version. Questions and support requests can be submitted through the ShulDisplay product site.