Corelith Labs Corelith Labs
Home About Capabilities Work Contact

Privacy Policy

How Corelith Labs collects, uses and protects personal data across its website, applications and services.

Last updated: 7 September 2026

In short: we collect as little personal data as we can. Our applications work without accounts, advertising, analytics or tracking, and anything they need in order to function stays on your device. Our website uses Google Analytics to understand how it is used. If you contact us or work with us, we use your details only to communicate with you and to deliver our services. We never sell personal data.

1. Who we are

Corelith Labs is a technical consultancy based in the United Kingdom, founded by Samuel Steiner. We provide consulting and engineering services, operate the website at www.corelith.co.uk, and publish software applications under the names Corelith and Corelith Labs. In this policy, "we", "us" and "our" refer to Corelith Labs.

For the purposes of data protection law, Corelith Labs is the controller of any personal data described in this policy, except where we say otherwise. If you have any questions about this policy or about how we handle personal data, contact us using the details in section 15.

2. What this policy covers

This policy applies to all personal data we handle in connection with:

  • our website, www.corelith.co.uk;
  • every software application we publish, including mobile, desktop and web applications, whether distributed through Google Play, the Apple App Store, another app store, or directly by us (together, "our apps");
  • our consulting and engineering services;
  • your communications with us, whether by email or through any other channel.

Where a particular app or service is accompanied by its own privacy notice, that notice takes precedence for that product. Otherwise, this policy applies.

3. Our applications

Our apps are designed to work without collecting personal data. This section explains what they do and do not do, wherever they are distributed and whichever platform they run on.

3.1 What our apps do not collect

Unless a specific app tells you otherwise before you use it, our apps do not collect, transmit or store any personal or sensitive user data on our systems. Specifically, our apps:

  • do not require you to create an account or sign in;
  • do not ask for your name, email address, phone number or any other contact details;
  • do not collect advertising identifiers, device identifiers or any other persistent identifiers;
  • do not include analytics, crash-reporting, advertising or tracking libraries from third parties;
  • do not display advertisements;
  • do not send your location to us or to anyone else;
  • do not access your contacts, photos, files, camera or microphone.

3.2 Information processed on your device

Some of our apps need certain information in order to work. This information is processed and stored only on your device, inside the app's private storage, and is never transmitted to us. Depending on the app, this may include:

  • Location. Where an app uses your location, for example to calculate times that depend on where you are, the calculation is performed entirely on your device. Your location is not sent to us or to any third party. You can revoke location permission at any time in your device's settings; if you do, features that depend on your location may not work correctly.
  • Notifications and reminders. Reminders are scheduled and delivered locally by your device's operating system. We do not use a push notification service, and no information leaves your device in order to deliver a reminder.
  • Preferences. Settings you choose within an app, such as theme, text size, calculation or display preferences, playback speed, and your position within a piece of audio, are stored locally so that the app can remember them between sessions.
  • Media controls. Apps that play audio in the background use the standard media controls provided by your operating system, including lock-screen and notification controls, in-car systems such as Android Auto, and Bluetooth or headset controls. We do not receive any information about what you listen to.

All information described in this section is deleted when you uninstall the app or clear its storage from your device's settings.

3.3 Internet connections and server logs

Some of our apps connect to the internet, for example to stream audio or to download a catalogue of content. When they do, your device connects to the servers that host that content. As with any internet connection, those servers may automatically record standard technical information in server logs, such as the IP address of the request, the time of the request, the file requested, and the type of app or device making the request. We do not use this information to identify you, do not combine it with any other data, and do not use it for advertising or profiling. Such logs are used only to operate and secure the service and are retained for a limited period before being deleted.

Apps that work offline do not connect to our servers at all.

3.4 App stores and platform services

Our apps are distributed through third-party app stores and run on third-party operating systems. Those platforms may collect information about downloads, installs, updates and crashes in accordance with their own privacy policies, for example Google's Privacy Policy for Google Play and Android, and Apple's Privacy Policy for the App Store and iOS. App stores may provide us with aggregated, anonymised statistics such as install counts and crash rates. We cannot identify individual users from this information.

Device features such as location services, notifications and media playback controls are provided by your device's operating system and are subject to the platform provider's privacy policy.

3.5 Applications currently published

At the time of writing, we publish the following apps. This list is provided for transparency; the rest of this policy applies to any app we publish, whether or not it is listed here.

Application Identifier Device features used Personal data collected
R' Chaim Kaufman's Shiurim com.rebchaimkaufman.shiurim Internet access (audio streaming and catalogue download), media playback notifications, Android Auto, Bluetooth and headset controls None
Sefiras Haomer com.sefirahaomer.app Device location (processed on the device only), local notifications and reminders None

4. Our website

You can browse our website without creating an account or providing any personal data. We collect the following information when you visit:

  • Analytics. We use Google Analytics to help us understand how visitors use the site. Google Analytics sets cookies and collects information such as the pages you visit, how long you spend on them, the type of device and browser you use, and an approximate location derived from your IP address. This information is processed by Google in accordance with Google's Privacy Policy. We use it only in aggregated form to improve the site.
  • Server logs. Our hosting and content delivery providers may automatically record standard technical information, such as your IP address, the time of your visit, the pages requested and your browser type, for security and operational purposes.

Cookies. The only cookies our website sets are those used by Google Analytics. You can block or delete cookies through your browser settings, and you can prevent Google Analytics from collecting your data by installing the Google Analytics opt-out browser add-on.

5. When you contact us or work with us

Contacting us. If you contact us by email or through any other channel, we will receive the personal data you choose to provide, such as your name, email address, organisation and the contents of your message. We use this information to respond to you and to manage our relationship with you.

Clients and prospective clients. When we provide consulting or engineering services, we collect and use the business contact details of the people we work with, such as names, job titles, email addresses and phone numbers, together with information needed to manage the engagement, including correspondence, contracts and billing details. We use this information to deliver our services, to communicate with you, to manage payments and accounts, and to meet our legal obligations.

Client data. During an engagement we may be given access to a client's systems, code and data, some of which may contain personal data. We handle that information under the terms of our agreement with the client and on the client's instructions. In that situation the client is the controller of the data and this policy does not apply to it, except to the extent that our agreement with the client says otherwise.

6. How we use personal data and our legal bases

We use personal data only for the purposes described in this policy. Under the UK General Data Protection Regulation and the EU General Data Protection Regulation, we rely on the following legal bases:

  • Performance of a contract: to provide our services to clients and to manage our relationship with them.
  • Legitimate interests: to respond to enquiries, to operate, secure and improve our website and apps, and to communicate with existing and prospective clients about our services. We balance these interests against your rights and freedoms.
  • Consent: where required, for example for analytics cookies on our website or for an app's access to your device's location. You can withdraw consent at any time.
  • Legal obligation: to keep accounting and tax records and to comply with other laws that apply to us.

We do not use personal data for automated decision-making or profiling, and we do not send marketing communications to people who have not asked to receive them.

7. Who we share personal data with

We do not sell, rent or trade personal data. Because our apps do not collect personal data, we have no app user data to share. We share other personal data only in the following circumstances:

  • Service providers who process data on our behalf and under our instructions, such as Amazon Web Services (website hosting and content delivery), Google (website analytics) and the providers of our email and business tools.
  • Professional advisers such as accountants, lawyers and insurers, where necessary to run our business.
  • Legal requirements, where we are required to disclose information by law, by a court order, or to protect our rights, property or safety or those of others.
  • Business transfers, if we sell or transfer all or part of our business, in which case personal data may be transferred to the new owner subject to this policy.

8. International transfers

We are based in the United Kingdom. Some of our service providers, including Google and Amazon Web Services, may process data outside the United Kingdom and the European Economic Area, including in the United States. Where this happens, we rely on safeguards recognised under UK and EU data protection law, such as adequacy regulations, standard contractual clauses and the UK International Data Transfer Agreement, to protect your data.

9. How long we keep personal data

  • App data: we do not hold personal data about users of our apps on our systems. All app data is stored locally on your device, and you can delete it at any time by uninstalling the app or by clearing the app's storage from your device's settings.
  • Website analytics: Google Analytics data is retained for a limited period, currently no longer than fourteen months, after which it is automatically deleted.
  • Server logs: retained for a limited period for security and operational purposes, then deleted.
  • Enquiries and correspondence: kept for as long as is necessary to deal with your enquiry and for a reasonable period afterwards in case of follow-up.
  • Client records: kept for the duration of our relationship and afterwards for as long as we are required to keep them by law, which for accounting records in the United Kingdom is generally six years.

You may ask us to delete personal data we hold about you at any time; see section 12.

10. Security

We take appropriate technical and organisational measures to protect personal data against unauthorised access, loss or misuse. Our website and apps use encrypted (HTTPS) connections when communicating over the internet. Information stored by our apps on your device is protected by your operating system's application sandbox, which prevents other apps from accessing it. We use reputable service providers, restrict access to personal data to those who need it, and keep the amount of personal data we hold to a minimum. No method of transmission or storage is completely secure, but we work to protect your data in line with good industry practice.

11. Children's privacy

Our website, apps and services are intended for a general audience and are not directed at children under the age of 13. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, for example by email, please contact us and we will delete it.

12. Your rights

Depending on where you live, you may have rights under data protection law, including the UK General Data Protection Regulation and the EU General Data Protection Regulation. These include the right to:

  • access the personal data we hold about you;
  • have inaccurate personal data corrected;
  • have your personal data deleted;
  • restrict or object to our processing of your personal data;
  • receive a copy of your personal data in a portable format;
  • withdraw consent at any time, where we rely on consent.

To exercise any of these rights, contact us using the details in section 15. We will respond within the time required by law, and we will not charge a fee unless the law allows it. Because our apps do not collect personal data, requests relating to app usage will generally have nothing to return, but you are welcome to ask.

If you are in the United Kingdom and are unhappy with how we have handled your personal data, you have the right to complain to the Information Commissioner's Office at ico.org.uk. If you are in the European Union, you may complain to your local data protection authority. If you are located elsewhere, you may have similar rights under local law, and you can contact us to exercise them.

13. Third-party links and services

Our website and apps may contain links to third-party websites and services, for example the website of a sponsor or a library used in an app. If you follow such a link you will leave our website or app, and this policy does not apply to the site or service you visit. We encourage you to read the privacy policy of any third-party site or service you use.

14. Changes to this policy

We may update this policy from time to time, for example when we release a new app, change how an existing app or the website works, or when the law changes. Any changes will be published on this page with an updated "last updated" date. We encourage you to review this page periodically.

15. Contact us

If you have any questions, concerns or requests relating to this policy or to how we handle personal data, please contact:

Corelith Labs
App support and app privacy enquiries: app.support@corelith.co.uk
All other enquiries: hello@corelith.co.uk
Website: www.corelith.co.uk

© 2025 Corelith Labs. All rights reserved. · Privacy Policy