Privacy Policy
Last updated: 24 August 2026 · Senjab (سنجاب) is made by Kamal Digital, Doha, Qatar.
In short
Senjab helps you understand your own money. Using Senjab requires an account, and your financial data is stored on your phone and synced to our servers under that account — which is how it is backed up and kept available across your devices. The statements and files you import are still read on your iPhone; the file itself is never uploaded. We never ask for your online-banking credentials, and Senjab cannot connect to your bank or move money. We do not sell your personal information, and we do not show ads. If you delete your account, the data we hold for it is deleted with it.
- What we collect
- How we use it
- On device vs. cloud
- What we never do
- Service providers
- Retention & deletion
- Security
- Children
- Your rights
- Changes
- Contact
What we collect
Information you give us
Your financial information. Accounts, transactions, budgets, goals, recurring bills, investment positions, assets you own and what you owe — everything you enter or import. This is created on your device and, because an account is required to use Senjab, is synced to our servers under your account — which is how it is backed up and kept available across your devices.
Account information. Senjab requires an account to store your financial data. We collect your email address and the credentials needed to sign you in. If you turn on reminders, the device token needed to deliver notifications is stored with your account.
Your preferences. Language, currency, categories, and the settings that shape the app. If you turn on the Islamic features, this includes your Zakat preferences — such as your calculation method and the day of the Hijri year you keep. We treat that as sensitive information and use it only to produce the Zakat and screening results you asked for.
What you send us. Emails, beta feedback and support messages, including anything you choose to attach to them.
Information collected as you use Senjab
Usage and diagnostic information. We collect information about how the app is performing and how its features are used — for example which screens and features are opened, whether an import succeeded, how many lines a file contained, crash and error reports, and technical details such as app version, device model and operating-system version. This information is part of how Senjab is provided: it is how we know an import format has broken, how we find crashes before you have to report them, and how we decide what to fix and build next. Diagnostic reports describe what happened, not what you bought — they are not designed to carry your merchant names, amounts or balances.
Information we do not ask for
We do not collect your online-banking username, password, PIN, one-time codes or full card numbers. Senjab has no bank connection and no way to initiate a payment. You bring the statement; the app reads it.
How we use it
- To provide the app — to import and categorise your records, and to produce your budgets, goals, net worth, Zakat and investment figures.
- To sync and back up your data, under your account, across your devices.
- To keep Senjab working — to detect, investigate and fix crashes, parsing failures and other faults, and to protect against abuse and fraud.
- To improve Senjab — to understand which features are used and where people get stuck, and to prioritise what we build next, using de-identified, aggregated information (for example, how often an import fails for a given bank format) — never your individual records, and never to target you.
- To communicate with you — beta invitations, service and security notices, and replies to messages you send us.
- To meet our legal obligations, and to enforce our Terms of Use.
On your device, and in the cloud
Senjab stores your financial data both on your phone and, under your account, on our servers — so it is backed up and available across your devices. Some processing steps happen only on your device, described below.
Parsed on your device. Bank statements you paste, bank SMS you share, and the files you import — CSV, Excel, PDF, OFX, QFX, QIF, MT940 and camt XML — are read and turned into transactions on your iPhone. The file itself is not uploaded to us and is not stored on our servers.
Zakat and screening. Zakat, hawl tracking against the Umm al-Qura Hijri calendar and nisab checks are calculated on your device from your own figures. Stock screening verdicts come from a shared reference table of listed companies that the app looks up over your signed-in connection — the lookup identifies the tickers being checked, never how many shares you hold or what they are worth.
Features that use the cloud, with your consent. Some features need more computing power than a phone has:
- Scanning a screenshot or photo of a statement or balance sends the image you selected for AI processing, so it can be read into transactions.
- Reading a statement with AI. If your phone cannot read a statement's format, you can choose "Read with AI" in the import screen. Only then is the statement's text — which includes the names and amounts in it — sent for AI processing. It is processed to produce the transactions; a copy of the text and the AI's answer is kept with your account for 30 days so we can fix reading errors, then deleted.
- Reporting an import problem. If a statement does not import correctly and you choose to help us fix that bank's format, the app sends the statement's text after masking it on your phone — names and addresses masked, account, card, reference and phone numbers replaced with zeros; amounts, dates and bank wording kept. With your one-time consent this copy is included with later reports automatically; you can turn it off in Settings › Privacy. Copies are used only to fix the format and deleted after 90 days.
- AI categorisation. When a merchant needs categorising in the cloud, the request carries the merchant name — not the amount, not your balance, not your identity.
- Ask Senjab (the AI advisor). On iPhones that support Apple's on-device models, your questions are answered on your phone and nothing leaves it. Where cloud processing is used, the app tells you in plain words and asks for your consent first — and your question travels with the smallest summary of your own figures needed to answer it (for example, category totals or a Zakat snapshot), never your full ledger.
Content sent for AI processing is used to produce your result and is returned to you; it is not used to train the AI provider's models. If you decline, the app keeps working — those particular features simply stay off.
Market data. Share prices, exchange rates and gold and silver prices are fetched through our servers from public market-data sources. Those requests carry ticker symbols and currency pairs — never your holdings, quantities or cost basis.
What we never do
- We never sell your personal information, and we never rent or trade it. We do not share it with advertisers or data brokers.
- We do not show ads in Senjab, and we do not use your financial data to target advertising anywhere else.
- We never ask for your bank credentials, and we cannot access your bank accounts or move your money.
- We do not store the statement files you import on our servers.
- We do not present Zakat or purification figures as a religious ruling. They are calculations you configure, with the method shown. They are not a fatwa.
Service providers
We use a small number of third-party companies to run Senjab — for cloud hosting and storage, for the AI processing described above, for market data, and for sending email. They act on our instructions, are permitted to use the information only to provide their service to us, and are bound by confidentiality and data-protection obligations. Apple handles App Store distribution, TestFlight and any payments under its own terms and privacy policy.
We may also disclose information where we are legally required to do so, or where it is necessary to protect the rights, safety or property of our users or of Kamal Digital.
Because our providers operate internationally, information may be processed in countries other than your own. Where that happens, we take steps to ensure it remains protected to the standard described in this policy.
Retention and deletion
On your device. A copy of your data is held on your iPhone for offline access and speed, alongside the copy synced to your account. Settings → Start over erases the on-device copy, and deleting the app deletes it with the app; your account copy is removed when you delete your account, described below.
In your account. Because an account is required to use Senjab, we keep the information associated with it for as long as the account is open, so the app can do its job — including backing up your data and keeping it available across your devices.
Deleting your account. Settings → Account → Delete account schedules your account and the data we hold for it for permanent deletion. For 30 days the deletion is pending — signing back in during that time cancels it, so an accidental deletion can be undone. After 30 days your account and its data are permanently deleted and cannot be recovered. The copy on your phone is yours: you can keep it on the device or erase it when you delete the account. Residual copies may persist briefly in routine backups before being overwritten, and we may retain the limited records we are required to keep by law.
Usage and diagnostic information is retained for as long as it is useful for the purposes described above. Crash and performance reports are not linked to your identity. Basic account activity — such as when your devices last signed in or synced — is kept with your account so we can support you, and is deleted with it.
The senjab.app website
If you request a beta invite on senjab.app, we collect the details you enter — your name, email address, country, preferred language and, if you choose to give it, a phone number — and use them only to send your invite and beta news. We also measure how the site is used, for analytics, research and improving Senjab, as described in How we use it. Our hosting provider keeps routine server logs (such as IP addresses) to run and protect the service.
Security
Information in your account is encrypted in transit and at rest, and access is restricted so that your account's data is available to your signed-in account. A small number of authorised people at Kamal Digital may access account information where it is genuinely necessary — to resolve a support request you have raised, to investigate a fault, or where the law requires it — and that access is recorded. No system is perfectly secure, but we take these obligations seriously and design the app to hold as little as it can.
Children
Senjab is not directed to children under 13, and we do not knowingly collect personal information from them. If you believe a child has provided us with personal information, contact us and we will delete it. Where local law sets a higher age of digital consent, that higher age applies.
Your rights
Depending on where you live — including under Qatar's Personal Data Privacy Protection Law and comparable laws elsewhere — you may have the right to access the personal information we hold about you, to correct it, to request its deletion, and to object to or restrict certain processing.
Most of this is already in your hands: everything Senjab holds about your finances is visible inside the app, editable there, and deletable there. For anything else, email us at the address below and we will respond within the period the applicable law allows.
Changes to this policy
We will update this page and the "Last updated" date whenever this policy changes. If a change is material, we will tell you in the app or by email before it takes effect. Continuing to use Senjab after a change takes effect means you accept the updated policy.
Contact
Kamal Digital, Doha, Qatar — support@senjab.app. Privacy questions, requests and complaints all reach us at that address.