Privacy Policy
How Corelith Labs collects, uses and protects personal data across its website, applications and services.
How Corelith Labs collects, uses and protects personal data across its website, applications and services.
In short: we collect as little personal data as we can. Our applications work without accounts, advertising, analytics or tracking, and anything they need in order to function stays on your device. Our website uses Google Analytics to understand how it is used. If you contact us or work with us, we use your details only to communicate with you and to deliver our services. We never sell personal data.
Corelith Labs is a technical consultancy based in the United Kingdom, founded by Samuel Steiner. We provide consulting and engineering services, operate the website at www.corelith.co.uk, and publish software applications under the names Corelith and Corelith Labs. In this policy, "we", "us" and "our" refer to Corelith Labs.
For the purposes of data protection law, Corelith Labs is the controller of any personal data described in this policy, except where we say otherwise. If you have any questions about this policy or about how we handle personal data, contact us using the details in section 15.
This policy applies to all personal data we handle in connection with:
Where a particular app or service is accompanied by its own privacy notice, that notice takes precedence for that product. Otherwise, this policy applies.
Our apps are designed to work without collecting personal data. This section explains what they do and do not do, wherever they are distributed and whichever platform they run on.
Unless a specific app tells you otherwise before you use it, our apps do not collect, transmit or store any personal or sensitive user data on our systems. Specifically, our apps:
Some of our apps need certain information in order to work. This information is processed and stored only on your device, inside the app's private storage, and is never transmitted to us. Depending on the app, this may include:
All information described in this section is deleted when you uninstall the app or clear its storage from your device's settings.
Some of our apps connect to the internet, for example to stream audio or to download a catalogue of content. When they do, your device connects to the servers that host that content. As with any internet connection, those servers may automatically record standard technical information in server logs, such as the IP address of the request, the time of the request, the file requested, and the type of app or device making the request. We do not use this information to identify you, do not combine it with any other data, and do not use it for advertising or profiling. Such logs are used only to operate and secure the service and are retained for a limited period before being deleted.
Apps that work offline do not connect to our servers at all.
Our apps are distributed through third-party app stores and run on third-party operating systems. Those platforms may collect information about downloads, installs, updates and crashes in accordance with their own privacy policies, for example Google's Privacy Policy for Google Play and Android, and Apple's Privacy Policy for the App Store and iOS. App stores may provide us with aggregated, anonymised statistics such as install counts and crash rates. We cannot identify individual users from this information.
Device features such as location services, notifications and media playback controls are provided by your device's operating system and are subject to the platform provider's privacy policy.
At the time of writing, we publish the following apps. This list is provided for transparency; the rest of this policy applies to any app we publish, whether or not it is listed here.
| Application | Identifier | Device features used | Personal data collected |
|---|---|---|---|
| R' Chaim Kaufman's Shiurim | com.rebchaimkaufman.shiurim | Internet access (audio streaming and catalogue download), media playback notifications, Android Auto, Bluetooth and headset controls | None |
| Sefiras Haomer | com.sefirahaomer.app | Device location (processed on the device only), local notifications and reminders | None |
You can browse our website without creating an account or providing any personal data. We collect the following information when you visit:
Cookies. The only cookies our website sets are those used by Google Analytics. You can block or delete cookies through your browser settings, and you can prevent Google Analytics from collecting your data by installing the Google Analytics opt-out browser add-on.
Contacting us. If you contact us by email or through any other channel, we will receive the personal data you choose to provide, such as your name, email address, organisation and the contents of your message. We use this information to respond to you and to manage our relationship with you.
Clients and prospective clients. When we provide consulting or engineering services, we collect and use the business contact details of the people we work with, such as names, job titles, email addresses and phone numbers, together with information needed to manage the engagement, including correspondence, contracts and billing details. We use this information to deliver our services, to communicate with you, to manage payments and accounts, and to meet our legal obligations.
Client data. During an engagement we may be given access to a client's systems, code and data, some of which may contain personal data. We handle that information under the terms of our agreement with the client and on the client's instructions. In that situation the client is the controller of the data and this policy does not apply to it, except to the extent that our agreement with the client says otherwise.
We use personal data only for the purposes described in this policy. Under the UK General Data Protection Regulation and the EU General Data Protection Regulation, we rely on the following legal bases:
We do not use personal data for automated decision-making or profiling, and we do not send marketing communications to people who have not asked to receive them.
We do not sell, rent or trade personal data. Because our apps do not collect personal data, we have no app user data to share. We share other personal data only in the following circumstances:
We are based in the United Kingdom. Some of our service providers, including Google and Amazon Web Services, may process data outside the United Kingdom and the European Economic Area, including in the United States. Where this happens, we rely on safeguards recognised under UK and EU data protection law, such as adequacy regulations, standard contractual clauses and the UK International Data Transfer Agreement, to protect your data.
You may ask us to delete personal data we hold about you at any time; see section 12.
We take appropriate technical and organisational measures to protect personal data against unauthorised access, loss or misuse. Our website and apps use encrypted (HTTPS) connections when communicating over the internet. Information stored by our apps on your device is protected by your operating system's application sandbox, which prevents other apps from accessing it. We use reputable service providers, restrict access to personal data to those who need it, and keep the amount of personal data we hold to a minimum. No method of transmission or storage is completely secure, but we work to protect your data in line with good industry practice.
Our website, apps and services are intended for a general audience and are not directed at children under the age of 13. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, for example by email, please contact us and we will delete it.
Depending on where you live, you may have rights under data protection law, including the UK General Data Protection Regulation and the EU General Data Protection Regulation. These include the right to:
To exercise any of these rights, contact us using the details in section 15. We will respond within the time required by law, and we will not charge a fee unless the law allows it. Because our apps do not collect personal data, requests relating to app usage will generally have nothing to return, but you are welcome to ask.
If you are in the United Kingdom and are unhappy with how we have handled your personal data, you have the right to complain to the Information Commissioner's Office at ico.org.uk. If you are in the European Union, you may complain to your local data protection authority. If you are located elsewhere, you may have similar rights under local law, and you can contact us to exercise them.
Our website and apps may contain links to third-party websites and services, for example the website of a sponsor or a library used in an app. If you follow such a link you will leave our website or app, and this policy does not apply to the site or service you visit. We encourage you to read the privacy policy of any third-party site or service you use.
We may update this policy from time to time, for example when we release a new app, change how an existing app or the website works, or when the law changes. Any changes will be published on this page with an updated "last updated" date. We encourage you to review this page periodically.
If you have any questions, concerns or requests relating to this policy or to how we handle personal data, please contact:
Corelith Labs
App support and app privacy enquiries: app.support@corelith.co.uk
All other enquiries: hello@corelith.co.uk
Website: www.corelith.co.uk