OrunaSupport

Privacy

Oruna Privacy Policy

How Oruna collects, uses, discloses, retains, and protects information across the Services.

Last updated September 9, 2026

PrayMob, Inc., doing business as Oruna ("Oruna," "we," "us," or "our"), respects your privacy. This Privacy Policy explains how we collect, use, disclose, retain, and protect information when you use the Oruna mobile application, websites, and related services (collectively, the "Services").

Oruna is a live social prayer platform designed to help people pray together, respond to prayer requests, experience collective unity, and support one another in real time. Because prayer can involve deeply personal subjects - including faith, health, recovery, family matters, grief, emotional well-being, and other sensitive experiences - we design our privacy practices with particular care for the information people entrust to Oruna.

By using the Services, you acknowledge the practices described in this Privacy Policy.

1. Information We Collect

Account and Profile Information

When you create or maintain an Oruna account, we may collect information such as name; username; email address; profile information; profile photo; authentication information and account identifiers; age or date-of-birth information used to determine eligibility; account preferences and settings; and information associated with organizations, creators, leaders, or other account roles.

Oruna is intended for people age 13 and older. We do not permit accounts for children under 13.

Prayer and Other User Content

When you participate in Oruna, we may process content you choose to create, upload, send, or share, including prayer requests; prayers; comments and reactions; posts; messages; profile text; photos and videos; live prayer audio and video; live prayer recordings and replays; reports submitted to Oruna; participation information; and other content you choose to provide.

Prayer content may reveal highly personal information about you or others. Depending on what you choose to share, this may include information concerning religious beliefs or practices, health, mental or emotional well-being, recovery, addiction, family circumstances, relationships, grief, or other sensitive matters.

Please consider carefully what you choose to make public or share with other users.

2. Location and Prayer Heatmaps

Oruna uses location information to support features such as geographic prayer activity and heatmaps.

If you grant foreground location permission, your device may temporarily obtain your precise GPS location through the operating system. Exact GPS coordinates exist only transiently in device memory. Before location information is transmitted to Oruna, the application reduces latitude and longitude to two decimal places.

Oruna therefore does not receive or store your exact GPS coordinates. The Oruna API receives and stores only the reduced location and uses it to derive a generalized geographic heatmap bucket.

What Other Users See

Public heatmaps do not display your exact GPS coordinates, street address, home location, or precise neighborhood.

City-level or regional heatmaps may display privacy-preserving representative dots within a selected city or region.

These dots are generalized visual indicators of prayer activity. A dot displayed on a heatmap is not a marker of a user's actual physical position.

Oruna's realtime heatmap infrastructure receives only server-generated aggregate geographic information, such as a geographic bucket identifier, active participant count, accumulated prayer time, update time, and event version. Our realtime heatmap provider does not receive individual coordinates, city names, profile IDs, session IDs, or individual heatmap presence for this purpose.

Mobile clients, including prayer hosts, cannot publish authoritative heatmap information themselves. Heatmap aggregates are generated and published by Oruna's API.

For the launch version of Oruna, the prayer map displays prayer activity within the United States. U.S. prayer activity may be represented by privacy-preserving representative dots. Prayer activity outside the United States may be included only in an aggregate count, such as the number of people praying outside the United States, and is not displayed as individual outside-U.S. location dots.

If you decline location permission, Oruna may allow you to select a city or region manually where supported.

3. Live Prayer, Recording, and Replays

Oruna supports live audio and video prayer.

Live prayers may be recorded so they can be made available for replay. Before a recorded live prayer begins, the prayer leader receives a recording disclosure and affirmatively starts the recorded session through the applicable Oruna control. Oruna provides a clear visual and/or audible indication while the prayer leader's audio or video is being recorded.

Simply watching or praying along with a live prayer does not mean that Oruna is recording a viewer's camera, microphone, or surroundings. A viewer's participation may still be visible according to Oruna's features, including through a profile or privacy-preserving prayer activity indicator.

LiveKit processes prayer-leader live audio and video and creates the live recording. Bunny.net stores and delivers live-stream and replay media. Oruna's database stores associated metadata rather than the underlying media files. Ably and Restate do not receive live prayer audio or video media bytes.

Recordings and replays may remain available according to the functionality of the Services until they are deleted by the authorized user, removed by Oruna, deleted as part of account deletion, or otherwise removed in accordance with our retention practices.

Public live prayers and replays may be viewed or shared according to Oruna's features. Other people may also independently capture public content using screenshots or screen-recording tools outside Oruna's control. Oruna may not be able to retrieve or delete copies independently created or distributed outside the Services.

Please do not disclose information during a live or recorded prayer that you do not want authorized viewers or the public, as applicable, to hear or see.

4. Messages and Private Communications

Oruna may allow users to exchange direct or group messages.

We process message contents and associated information as necessary to provide messaging, maintain safety and security, enforce blocks and other user controls, investigate properly submitted reports, and operate the Services.

Private communications are not intended to be publicly displayed merely because they are transmitted through Oruna.

When a message is reported, Oruna may preserve the reported message and a limited amount of surrounding context necessary to investigate the report, enforce our rules, protect users, and maintain appropriate safety records.

5. Reports, Blocks, and Safety Information

When you report another user or content, we may collect the reported content or account; your selected report reason; information you provide with the report; limited contextual evidence necessary to review the report; timestamps and technical information associated with the report; and actions taken in response.

When you block another user, we maintain information necessary to enforce that block across relevant parts of Oruna.

We may also maintain limited records concerning moderation decisions, account restrictions, abuse prevention, security events, or other safety matters.

6. Device, Usage, and Diagnostic Information

We may collect information necessary to operate, secure, troubleshoot, and improve Oruna, including device and application information; application version; operating-system information; product interactions; participation and engagement events; notification tokens; crash information; stack traces; sampled performance information; security and abuse-prevention signals; and related technical information.

This includes a limited history of sign-in and onboarding screens, actions, and outcomes, including failed and cancelled sign-in attempts. We use this history to understand and troubleshoot the steps people take to access Oruna. The app can hold this history in encrypted storage while offline and associate it with your account after successful authentication. This history does not include passwords, authentication tokens, prayer or message text, search text, audio, video, or precise location.

Our Sentry implementation is configured without default personally identifying information and may receive crash diagnostics, stack traces, application and device context, and sampled performance information.

Oruna filters authentication credentials, tokens, and other secret-bearing fields from mobile telemetry and disables production website log forwarding. Sentry is not intended to receive prayer text, private messages, location, audio, video, or recording URLs.

7. Content Moderation

To help keep Oruna safe, text or images submitted to posting, messaging, profile, group, or organization features may be evaluated before they are accepted or distributed.

Oruna may send this text and these images to OpenAI for automated content moderation.

For audio and video uploaded to posts, Oruna may extract audio segments and send them to OpenAI for transcription and moderation of the resulting text. Extracted video frames may also be sent to OpenAI for image moderation.

For this moderation process, Oruna does not intentionally provide user identifiers to OpenAI. Oruna does not submit live prayer audio or video to OpenAI for moderation.

Moderation results may be used to allow, block, quarantine, limit, or refer content for human review according to Oruna's Community Guidelines and safety processes.

8. How We Use Information

We use information to create and maintain accounts; authenticate users; provide prayer, messaging, live, replay, heatmap, and related functionality; display and distribute content according to user choices and product settings; personalize and operate the Services; provide notifications; maintain participation information; enforce blocks and other privacy or safety controls; receive and investigate reports; moderate content; prevent fraud, abuse, harassment, exploitation, and security threats; enforce our Terms of Service and Community Guidelines; provide customer support; maintain, troubleshoot, and improve the Services; understand aggregate product usage; comply with legal obligations; and protect Oruna, our users, and others.

We do not sell your personal information.

9. Service Providers and Processors

We use service providers to operate Oruna. Depending on the feature you use, these providers may process information on our behalf.

Apple - authentication, push delivery, and Core Location services.

Google - OAuth, Android location services where applicable, Firebase Cloud Messaging for Android notifications, and analytics associated with Oruna's public websites through Google Analytics 4 and Google Tag Manager.

Expo / EAS - application builds and updates, push tokens, and notification delivery.

SignalWire - where invitation texting is available, selected recipient phone numbers, invitation messages, delivery status, and incoming enrollment or opt-out messages needed to provide Oruna text invitations.

LiveKit - live audio/video transmission and recording processing.

Bunny.net - media storage and delivery, website hosting, and information submitted through website forms.

Ably - realtime functionality including aggregate heatmap state, comments, reactions, and stream status.

Sentry - limited crash diagnostics and performance telemetry configured without default personally identifying information.

OpenAI - automated moderation of text and images submitted for posting, messaging, profile, group, or organization features, including frames extracted from videos uploaded to posts, and transcription of uploaded audio for moderation. We do not intentionally provide user identifiers or live prayer audio/video for this purpose.

OpenStreetMap / Nominatim - region-search functionality. Queries are proxied through Oruna's server.

Hetzner - application and database hosting and transactional email infrastructure.

Amazon Web Services (AWS) - encrypted backups and key-management operations.

Cloudflare - DNS, certificates, and traffic metadata for proxied Oruna properties.

GitHub and EAS build infrastructure - source-code and release metadata. These systems are not intended to process production user content as part of their development and release function.

These providers process information according to their respective roles in providing services to Oruna and applicable contractual and legal requirements.

10. Public and Private Information

Oruna is a social service. Information you choose to publish publicly may be visible to other users and, depending on the feature, may be shareable.

This may include public profiles, public prayer requests, public prayers, comments, public live prayers and replays, public events, and other activity designated as public.

Private messages, private groups, non-public prayer requests, and other information designated as private are intended for their applicable audiences and are not made public merely because they are stored or transmitted through Oruna.

No online service can guarantee that another person will not copy, screenshot, screen-record, repost, or redistribute information they can legitimately see. If another person independently creates or distributes a copy outside Oruna, deleting the original content or your Oruna account may not remove that outside copy. Our Community Guidelines prohibit misuse of private or sensitive information.

11. Sensitive and Health-Related Information

Oruna is designed around prayer, and people may choose to pray about deeply personal subjects.

Information you voluntarily provide may reveal religious beliefs or practices; physical or mental health circumstances; addiction or recovery experiences; emotional distress; family or relationship circumstances; grief or loss; or other sensitive personal matters.

Oruna processes this information to provide the Services you request, facilitate prayer and support, maintain safety, and perform the other functions described in this Privacy Policy.

You are not required to publicly disclose sensitive personal information in order to use Oruna. Please avoid sharing another person's sensitive information without their permission.

12. Notifications

If you enable notifications, Oruna may send notifications relating to prayer activity, messages, live sessions, participation, account activity, safety, and other Service features.

You can control operating-system notification permissions through your device settings and may have additional notification preferences within Oruna.

Where Oruna text invitations are available, you select the recipients before their phone numbers are sent to Oruna. This feature does not upload your entire address book. Invitations are sent by Oruna through SignalWire and may include your first name and an invitation link. Recipient enrollment and opt-out records determine whether an invitation can be sent. Recipients can reply STOP to stop receiving these texts.

13. Data Retention

We retain personal information for as long as reasonably necessary to provide the Services, maintain security and safety, comply with legal obligations and valid legal process, resolve disputes, enforce our agreements, prevent fraud and abuse, and establish, exercise, or defend legal claims.

The limited sign-in and onboarding history described in Section 6 expires seven days after that journey begins. Signing in or associating the history with an account does not restart the seven-day period. Expired history is excluded from active account views and further uploads and is removed by scheduled server cleanup. If the app is closed when locally stored history expires, the app removes it the next time it runs. This short-lived history is kept separately from ordinary activity recorded while you use your account. Backup copies remain subject to the backup practices described below.

For Oruna text invitations, encrypted recipient phone numbers and the rendered invitation message are scheduled for removal seven days after the final delivery outcome and no later than fourteen days after the invitation is created. Limited coded records support delivery troubleshooting, invitation limits, and abuse prevention. We retain the current enrollment or opt-out record needed to honor the recipient's messaging choice. Our messaging provider may retain its own delivery and operational records under its applicable service policies.

When an account-deletion request is made, the account is locked and active sessions are revoked. Oruna's deletion process is designed to remove or de-identify account-associated information from active systems within 30 days, subject to the limited retention circumstances described in this Policy.

Limited deidentified safety receipts may be retained for up to 365 days. Identifiable analytics projections associated with a deleted account are erased. Oruna may retain an immutable pseudonymous event ledger where necessary for security and aggregate analytics, provided it is not maintained as an ordinary identifiable user profile.

Content-delivery-network copies expire according to signed URL and cache periods.

Backups are not selectively edited when individual accounts are deleted. Deleted information may therefore remain temporarily in encrypted backups until those backups age out under Oruna's backup-retention schedule. Planned backup retention does not exceed 90 days. Information retained in backups is not restored to active production systems except as part of legitimate disaster-recovery operations and remains subject to applicable access and security controls.

Oruna may preserve particular information for longer when reasonably necessary or legally required in connection with a valid subpoena, warrant, court order, preservation request, other lawful process, safety or security matter, fraud or abuse investigation, enforcement matter, dispute, or legal claim. Information retained for such a purpose is limited to what is reasonably necessary and retained only for as long as appropriate for that purpose, subject to applicable law.

Oruna does not retain complete deleted accounts indefinitely merely in anticipation that law enforcement or another third party may request them in the future.

14. Account Deletion

You can initiate deletion of your Oruna account from within the application.

When deletion begins, Oruna locks the account and revokes active sessions. The deletion process is designed to delete or de-identify account-associated information from active systems, including, as applicable, account and profile information; authored prayers, posts, and comments; authored messages; uploaded media; live recordings and replays controlled by the deleting account; identifiable participation and activity information; and other personal information associated with the account.

Deletion from active systems is designed to be completed within 30 days, subject to limited retention permitted or required for legal compliance, valid legal process, safety and security, fraud and abuse prevention, enforcement of our Terms and Community Guidelines, dispute resolution, or the establishment, exercise, or defense of legal claims.

Shared conversations, groups, or other collaborative structures may continue to exist when they belong to or are shared with other users. Oruna removes or de-identifies the deleting user's information where required by the deletion process while preserving shared structures where appropriate.

Content that another person independently copied, screenshot, screen-recorded, reposted, or distributed outside Oruna may remain outside our control after account deletion.

As described above, deleted information may remain temporarily in encrypted backups until the applicable backup expires, with planned backup retention of no more than 90 days.

15. Your Choices and Controls

Depending on the feature and applicable law, you may be able to update certain account or profile information; choose what information you publish; report content or users; block users; control notification permissions; grant or deny location, microphone, camera, photo, and other device permissions used by launch features; use a manually selected city instead of location permission where supported; delete content you control; delete eligible live recordings or replays you control; and initiate permanent account deletion.

Device permissions can generally be changed through your operating-system settings.

Withdrawing a permission may prevent the related feature from functioning but does not automatically delete information previously provided to Oruna. You may use available deletion controls or contact us regarding applicable privacy requests.

16. Security

We use administrative, technical, and organizational measures designed to protect information against unauthorized access, disclosure, alteration, loss, or misuse.

These measures include access controls, encryption where appropriate, authenticated administrative operations, restricted privileged access, audit records, secure infrastructure practices, and data minimization.

No system can guarantee absolute security, and we cannot promise that information will never be accessed, disclosed, altered, or destroyed despite our safeguards.

17. Children's Privacy

Oruna is intended for users age 13 and older.

We do not knowingly permit children under 13 to create Oruna accounts. If we learn that an account belongs to a child under 13, we may suspend or delete the account and associated information as appropriate.

If you believe a child under 13 has provided personal information through Oruna, please contact us at inquiries@oruna.live.

18. Legal Requirements and Protection of Others

We may preserve, use, or disclose information when we reasonably believe doing so is necessary to comply with applicable law or valid legal process, including subpoenas, warrants, court orders, lawful preservation requests, or other lawful governmental requests; protect the rights, safety, and security of Oruna, our users, or others; investigate fraud, abuse, exploitation, or security incidents; enforce our Terms of Service or Community Guidelines; respond to an emergency involving danger of death or serious physical injury; or establish, exercise, or defend legal claims.

Where appropriate, a valid preservation request or other lawful process may require Oruna to preserve specified information that would otherwise be subject to ordinary deletion or retention schedules. We seek to limit preservation and disclosures to information reasonably necessary for the applicable purpose and to retain preserved information only as long as required or reasonably necessary under applicable law and process.

19. International Processing

Oruna and its service providers may process information in the United States and other countries where our service providers operate.

Those countries may have privacy and data-protection laws that differ from those where you live. Where required, Oruna uses appropriate measures for international transfers of personal information.

20. Changes to This Privacy Policy

We may update this Privacy Policy as Oruna evolves or as legal, regulatory, technical, or operational requirements change.

When we make changes, we will update the "Last Updated" date. If a change materially affects how we handle personal information, we may provide additional notice where appropriate or required.

21. Community Guidelines and Terms

This Privacy Policy should be read together with Oruna's Terms of Service and Community Guidelines.

Our Community Guidelines explain standards for prayer, live sessions, messages, privacy, safety, reporting, blocking, and enforcement.

22. Contact Us

If you have questions about this Privacy Policy, Oruna's privacy practices, account deletion, or applicable privacy rights, contact:

PrayMob, Inc. d/b/a Oruna 7400 Center Ave, #439 Huntington Beach, CA 92647 United States Privacy: privacy@oruna.live Safety and moderation: moderation@oruna.live Questions about general product support may be directed through the support methods provided in the Services or on Oruna's website.