Skip to contentPsalmly

Privacy Policy

Last updated June 30, 2026

Psalmly is a service of Everwood Ventures LLC ("Psalmly," "we," "us"). This Privacy Policy explains how we collect, use, share, and protect information when you use our websites at psalmly.app and its subdomains, our mobile apps, and the public church pages we host (together, the "Service"). Psalmly is church-management software used by churches and the people in them. We have tried to write this plainly — if anything is unclear, email us at privacy@psalmly.app.

1. Who we are and how this policy works

Psalmly provides software that a church's leaders use to manage their congregation — prayer, events, groups, announcements, a member directory, online giving, a public church page, and an optional AI assistant — and that members use on the web and in our mobile apps.

For your personal account (your name, sign-in credentials, and the list of churches you belong to), Psalmly is the controller of that information. For the information inside a church (its members, content, communications, and giving records), the church is the controller and Psalmly acts as its processor — we handle that information on the church's behalf and under its direction. If you have questions about how a particular church uses your information, please contact that church's leaders directly.

By using the Service, you agree to this Privacy Policy. If you do not agree, please do not use the Service.

2. Information we collect

Account information. When you create an account we collect your name, email address, and a password. Passwords are stored only in hashed form by our authentication provider — we never see or store your plaintext password. You may also add a profile photo and a short bio.

Church and membership information. The churches you create or join, your role in each (such as member, admin, or lead), and any title a church gives you.

Content you create. Prayer requests (which you may post anonymously), group posts and photos, comments and replies, event RSVPs and registration-form responses, messages you send to the AI assistant, and messages you send through contact or feedback forms.

Giving information. When you give online, we record the amount, the fund, the date, the frequency (one-time or recurring), and a confirmation number. Card and bank details are collected and stored by our payment processor, Stripe — Psalmly stores only limited information such as the card brand, the last four digits, and the expiration, along with identifiers that let us reconcile your giving. We never receive or store full card or bank-account numbers.

Device and technical information. When you use our apps we may collect a push-notification token, device type and operating-system version, IP address, and log and diagnostic data. We use cookies and similar local storage to keep you signed in and to operate the Service; we do not use advertising cookies.

Communications. If you contact us for support or send feedback, we keep that correspondence so we can help you and improve the Service.

3. How we use information

We use the information described above to:

  • Provide, operate, and maintain the Service, and authenticate you;
  • Process church subscriptions and online donations through Stripe;
  • Send transactional messages — receipts, year-end giving statements, and security and account notices — and the church communications you have signed up for, such as announcements and bulletins;
  • Deliver the push notifications you have enabled;
  • Power the AI assistant when a church has it enabled;
  • Keep the Service secure by preventing fraud, abuse, and unauthorized access;
  • Provide support and respond to your requests;
  • Comply with legal obligations, including tax and financial-record requirements;
  • Understand how the Service is used so we can improve it.

We do not sell your personal information, and we do not use your giving history or private content for advertising.

4. The AI assistant

Churches on a paid plan can enable an AI assistant that answers questions about the church — service times, events, how to get involved — and helps leaders draft and navigate. The assistant draws on content the church has published (its profile, its events, and knowledge-base articles its leaders write); it does not read private member content such as prayer requests, giving, or group messages.

When you ask the assistant a question, your message and the relevant church content are sent to our AI provider (accessed through Vercel AI Gateway) to generate a response. Under our agreements, these providers process the data only to return a response and do not use it to train their models. The assistant only ever proposes an action — such as drafting an announcement or registering you for an event — and a person confirms before anything happens.

AI responses can be wrong or incomplete. Please don't rely on them for important decisions without checking.

5. How information is shared

Within your church. Information you provide is visible to your church according to its features and your own settings. Your directory listing is shown to other members based on your "How you appear" choices; prayer requests appear on the church's prayer board (anonymously if you choose); group posts are visible to that group; and church admins can see membership and giving records for their church. Anonymity options hide your identity from a church's reports and boards, but your identity is still retained for receipts, tax statements, and your own records.

Service providers (subprocessors). We share information with vendors who help us run the Service, under contracts that limit their use of it. These currently include:

  • Supabase — database, authentication, and file storage;
  • Stripe — subscription billing and online-giving payment processing;
  • Vercel — application hosting and delivery;
  • Resend — delivery of transactional and church emails;
  • Expo, Apple Push Notification service, and Google Firebase Cloud Messaging — push-notification delivery to your device;
  • our AI provider, accessed through Vercel AI Gateway — to power the AI assistant;
  • hCaptcha — to protect public forms and guest giving from abuse.

Legal and safety. We may disclose information if required by law or legal process, or where we believe in good faith it is necessary to protect the rights, safety, or property of Psalmly, our users, or the public.

Business transfers. If Psalmly is involved in a merger, acquisition, or sale of assets, information may be transferred as part of that transaction; we will require the recipient to honor this policy.

With your consent, or in aggregated or de-identified form that cannot reasonably be used to identify you.

6. Online giving and payments

Online giving runs on Stripe. Each church connects its own Stripe account and is the merchant of record for the gifts it receives — funds settle directly to the church, and Psalmly never holds your donation. Stripe collects and secures your card or bank details under the PCI Data Security Standard.

Psalmly keeps a record of your gifts so we can send receipts, build your year-end contribution statement, and show your giving history. Because donations are financial records, we retain them as described in "Data retention" below, even if you later leave the church or delete your account.

Choosing to give anonymously hides your name from the church's giving reports, but your identity remains attached to the gift for receipts, statements, and the church's own Stripe records, as required for legitimate financial and tax purposes.

7. Your choices and rights

You have control over much of your information:

  • Profile and visibility — update your name, photo, and bio anytime, and control how you appear in each church's directory;
  • Email — manage announcement and bulletin email subscriptions, or unsubscribe with one click from any such email;
  • Push notifications — turn categories on or off in the mobile app, or in your device settings;
  • Leave a church — remove yourself from a church at any time;
  • Delete your account — request deletion of your account and personal data.

Depending on where you live, you may have rights to access, correct, delete, or receive a copy of your personal information, and to not be treated differently for exercising those rights. To make a request, email privacy@psalmly.app. We will verify your request and respond as required by law. Note that some information — particularly giving and financial records — must be retained even after a deletion request.

8. Data retention

We keep your information for as long as your account is active and as needed to provide the Service. When you delete your account, or when a church closes, we delete or de-identify personal information that we no longer need.

We retain giving and other financial records for as long as required to meet tax, accounting, and legal obligations — generally up to seven years. When a church closes its account on Psalmly, its giving ledger is preserved so members keep access to their contribution statements. Residual copies may remain in backups for a limited time before they are overwritten.

9. How we protect information

We protect information with encryption in transit, row-level access controls so each person and church can reach only their own data, and reputable infrastructure providers. Card and bank data are handled by Stripe under the PCI Data Security Standard. No method of transmission or storage is perfectly secure, so we cannot guarantee absolute security — but we work hard to protect your information and to respond promptly if something goes wrong.

10. Children's privacy

The Service is designed for churches and their members, not for children. We do not knowingly collect personal information directly from children under 13 without appropriate consent. Many churches serve families, and a church may add information about minors (for example, a youth-event registration); when it does, the church is responsible for obtaining any parental consent required by law. If you believe a child's information has been provided to us without proper consent, contact us at privacy@psalmly.app and we will remove it.

11. Where your information is processed

Psalmly is operated in the United States, and the information we collect is processed and stored there. If you access the Service from outside the United States, you understand that your information will be processed in the United States, where data-protection laws may differ from those in your country.

12. Changes to this policy

We may update this Privacy Policy from time to time. When we do, we will revise the "Last updated" date above, and for material changes we will provide a more prominent notice. Your continued use of the Service after an update means you accept the revised policy.

13. Contact us

Psalmly is operated by Everwood Ventures LLC, based in New Mexico, United States. Questions about this policy or your information? Email us at privacy@psalmly.app, reach support at support@psalmly.app, or visit our Help Center. You can also review our Terms of Service.