Saint Pius XCatechism

Saint Pius X Catechism

Privacy policy

How Saint Pius X Catechism handles your information.

Effective September 19, 2026

This policy covers the Saint Pius X Catechism app (SPXC), its online answer-checking service, and spxc.app. The operator is SPXC. For privacy questions or requests, contact help@spxc.app.

Information on your device

SPXC stores local learner names, practice progress, and answer transcripts used in saved reviews. These records are not synced to an SPXC online account. Speech recognition runs on your device after any required Apple speech assets have been prepared. We do not save or upload your voice audio.

Learner names are not sent to our answer-checking service. Device backups are governed by your Apple and device settings.

Optional online answer checking

An adult can enable Semantic Review through the app’s consent prompt or settings. This permission applies to every learner on the device. When an answer needs an online meaning check, the app sends its transcript, question identifier, content version, and request identifier to our service on Amazon Web Services (AWS) in the United States. The service provides the question, reference answer, and transcript to TypeSafe for an AI assessment.

Our backend does not store ordinary answer text or include it in application logs. This does not mean that all third-party processing has zero retention. TypeSafe’s privacy policy states that inputs are not used to train or fine-tune models; it does not specify a fixed API-input retention period. TypeSafe processes information in the United States and may use its service providers. Its retention and deletion terms apply to the information it processes.

Answer text can contain personal information if you speak it, and catechism responses may reveal religious beliefs. Keep answers focused on the question and avoid names, contact information, or other personal details.

Apple App Attest verifies the installation for online checking. Our service uses installation authentication records, request-result metadata, and counters to secure requests, prevent abuse, and enforce usage limits. Requests also expose network information, including an IP address, to the services that deliver them. We do not use these identifiers for advertising or tracking across other companies’ apps or websites.

Optional usage sharing and reports

Share usage metrics is a separate choice and starts off. With consent, the app sends question identifiers, grading results and probabilities, software and content versions, timing, retries, skips, and later success. These events exclude answer text, audio, and learner names. The analytics identifier is separate from the authentication identity; the backend keeps the association needed to delete an installation’s shared data.

A grading report is a separate action. An adult previews the question, transcript, result, and suspected problem, can edit or redact the text, and explicitly sends the report. We retain submitted report text and grading details to investigate and improve answer checking. Reports do not automatically change the model or the app’s grading instructions.

We use these optional records to understand reliability and improve practice. They are stored in our AWS service. We do not sell personal data, use it for targeted advertising, or place advertising trackers in the app or website.

How long information is kept

Local learner records
Remain on your device until you delete the learner or app data. Backups follow your device settings.
Ordinary answer transcripts
Processed without storage in our backend. TypeSafe’s separate policy does not specify a fixed API-input retention period.
Shared usage events and submitted reports
Expire after 30 days, or can be removed earlier using the in-app shared-data deletion control. Expired records are excluded from reads and removed by scheduled cleanup and database expiry.
Service security records
Installation authentication records expire after 90 days of inactivity. Request-result metadata expires after 24 hours; sessions after 15 minutes and challenges after five minutes. Rate-limit and daily usage counters expire within 48 hours of their last update.
Operational logs and totals
Backend operational logs exclude answer text and learner names and are retained for up to 30 days; cleanup logs for seven days. AWS retains aggregate operational metric rollups for up to 15 months. These aggregate metrics contain no installation identifiers.
Queued usage metrics
The app holds up to 200 events for up to seven days while awaiting upload. Turning sharing off clears the queue.

Support messages and this website

If you email us, we receive your email address, message, and any attachments through our email providers. We use them to answer your request and resolve the issue. We keep correspondence as needed for that purpose and any applicable legal obligations; you can contact us to request deletion.

The website uses self-hosted fonts and images and does not set analytics or advertising cookies. AWS serves the site and necessarily processes request and network information to deliver it. Links to Apple, TypeSafe, and other external sites are governed by those sites’ policies.

Your choices and requests

You can withdraw online-checking consent, turn usage sharing off, preview or cancel reports, delete shared metrics and reports, and delete local learners. Follow the steps on Your data & choices.

Turning a feature off stops future processing; it does not by itself erase earlier submissions. In-app deletion removes this installation’s optional records from our service, not TypeSafe’s records or support correspondence. Minimal authentication and quota records remain for security until expiry.

Depending on where you live, you may have rights to access, correct, delete, or obtain a copy of personal information, restrict or object to processing, withdraw consent, or complain to a privacy regulator. Contact help@spxc.app to make a request. We may need to verify and locate the records; local learner data is not remotely accessible to us.

Children and shared devices

Online checking, usage sharing, and grading reports are intended only for adult learners aged 18 or older. The app’s settings apply to all learners on the device, so turn these features off before a child practices. TypeSafe’s published policy says its services are not directed to children under 18 and that it does not knowingly collect their personal data. Family-use permission and a specific API retention period have not been confirmed.

For a learner under 18, keep Semantic Review and usage sharing off and do not send grading reports. Reading and local practice remain available. Contact us if you believe a child’s personal information has been shared so we can help address it.

Security and disclosures

We use HTTPS, installation authentication, access controls, and limited retention to protect the service. No system can guarantee absolute security. We may disclose information when legally required or necessary to protect the service and users. Optional processing follows the consent choices described above.

Changes to this policy

We will publish changes here with an updated effective date. Material changes to optional data use will be explained before that processing begins, with consent requested where needed.