Privacy Policy

Last updated: 23 September 2026

What Lamsa is

Lamsa is designed for private sharing between paired devices. The current release lets two devices pair, send photo Moments with an optional caption, mood and song information, send Touches, build a shared Story over time, receive push notifications, and show the latest received Moment in a Home Screen widget.

Data Lamsa processes

Lamsa processes an app-generated device identifier, an app-generated user identifier, pairing information, push-notification tokens, photos you choose to send, optional captions, optional mood selections, optional song title and artist information, Touch events, shared Story history, and timestamps needed to operate the service. For Story Restore, Lamsa also processes short-lived Restore Codes and Recovery Keys. Restore Codes expire after 15 minutes, and only one-way hashes of Restore Codes and Recovery Keys are stored on the server.

Lamsa does not request your contacts or precise location in the current release.

If Lamsa Gold is enabled and you subscribe through Apple or Google, the store processes your payment details. Lamsa may receive and store subscription status, product identifier, expiry information, and a pseudonymous purchase reference needed to verify access. Lamsa does not receive your full payment-card number from the app stores.

Why the data is used

The data is used to provide app functionality: pairing and authenticating devices, delivering Moments and Touches, showing received content, maintaining and restoring the shared Story, sending notifications, updating the widget, preventing abuse, and processing user-requested deletion. A successful restore replaces the old device identity with the new device inside the same Story and invalidates the old device session.

The current release does not include advertising or third-party analytics SDKs.

Storage and retention

The Received view shows the most recent 30 days. Sent Moments may remain in the private shared Story beyond 30 days so the Story can grow over time. Image access uses short-lived signed links rather than public image URLs. Unsent uploads are cleaned up separately.

Deletion

Disconnecting ends the current shared Story and deletes its shared server-side Moments and Touches before a new pairing can begin. The in-app delete option removes the pairing and its private server-side data and clears local pairing/widget data on the initiating device.

Security

Private server operations require authenticated device identity. Device credentials are stored in protected local storage, and image access is authorized with time-limited signed URLs.

Contact

Privacy questions: privacy@lamsawidget.com

General support: support@lamsawidget.com

سياسة الخصوصية

صُممت Lamsa للمشاركة الخاصة بين جهازين مرتبطين. يتيح الإصدار الحالي إرسال لحظات خاصة وبناء قصة مشتركة مع مرور الوقت.

تشمل البيانات: معرّفات عشوائية للتطبيق والجهاز، معلومات الربط، رمز الإشعارات، الصور التي تختار إرسالها، النص الاختياري، المزاج والأغنية الاختياريين، أحداث اللمسة، سجل القصة المشتركة، والتوقيتات اللازمة لتشغيل الخدمة. وللاسترجاع يعالج التطبيق Restore Code مؤقتة وRecovery Key. تنتهي Restore Code بعد 15 دقيقة، ولا يخزن الخادم النص الأصلي لهذه الرموز والمفاتيح بل بصمتها أحادية الاتجاه فقط.

لا يطلب التطبيق جهات الاتصال أو موقعك الدقيق، ولا يحتوي الإصدار الحالي على إعلانات أو أدوات تحليلات خارجية.

إذا تم تفعيل Lamsa Gold واشتركت عبر Apple أو Google، يتولى المتجر معالجة بيانات الدفع. قد تستقبل Lamsa حالة الاشتراك ومعرّف المنتج وتاريخ الانتهاء ومرجع شراء مستعارًا للتحقق من الاستحقاق، ولا تستقبل رقم بطاقتك الكامل من متجر التطبيقات.

يعرض قسم المستلم آخر 30 يومًا، بينما قد تبقى اللحظات الأقدم ضمن القصة المشتركة حتى فك الربط أو حذف البيانات. تستخدم الصور روابط وصول موقعة وقصيرة المدة.

عند استرجاع القصة يُستبدل الجهاز القديم بالجهاز الجديد داخل نفس القصة، وتُلغى جلسة الجهاز القديم. أما فك الربط فينهي القصة الحالية ويحذف لحظاتها ولمساتها المشتركة من الخادم قبل بدء ربط جديد.