Privacy Policy: Christian Theology Assistant
Effective date: September 27, 2026
Operator: David Gan, operating TheologyAssistant.com ("we", "us")
Contact: [email protected]
Christian Theology Assistant provides Bible study, sermon preparation, theological research and prayer-writing tools. It is available on our website, as a ChatGPT GPT, and as a ChatGPT plugin. This policy explains what we collect, why, who processes it, and how long we keep it.
1. Information we collect
Account information (website).
- If you create an account, we store your email address, a securely hashed password (bcrypt; we never store the password itself), whether your email is verified, your access level, and your account creation and last-login times.
- We do not ask for your name.
- If you use "Access Bible app" without signing up, we create a temporary guest account with a random identifier and no email address.
Content you create or submit (website).
- Notes, saved studies and sermons, sermon drafts and audits, doctrine profiles, prayer requests, and the prayers and other text you ask us to generate.
- Files you upload.
- Prayer requests may include the names of people you ask us to pray for; please include only what you are comfortable sharing.
Searches and tool requests (all channels). When you, or ChatGPT on your behalf, use our search or verification tools, we receive the request content: for example the Bible reference, search terms, or a quotation to verify.
Technical and security information.
- IP address, browser or client type (user agent), requested pages and endpoints, timestamps, and response status.
- We use these to operate the service, prevent abuse (for example rate limiting and a human-verification check), and troubleshoot.
Cookies and local storage (website).
- We use only functional cookies, and no advertising or analytics cookies:
- a sign-in session cookie (up to 14 days);
- a guest cookie that lets a browser return to the same guest account (14 days);
- a short-lived human-verification cookie (6 hours);
- a progress cookie for the outreach feature (30 days).
- Your browser also stores some preferences locally, such as recent searches and open tabs. This stays on your device.
2. Using Christian Theology Assistant in ChatGPT (GPT and plugin)
- Who controls your conversations. Your conversations in ChatGPT are handled by OpenAI under OpenAI's own privacy policy. We cannot see your ChatGPT conversations, and we do not receive your ChatGPT account identity, name or email.
- What we receive. When ChatGPT calls one of our tools (for example Bible search, sermon search, theology reference search, or Scripture-quotation verification), we receive only the tool request (such as the search text or the quotation to check) and technical information about the request.
- Connecting the plugin. Connecting the plugin shows a simple Allow/Deny consent screen. It does not create an account with us. We store a registration record for the ChatGPT client and access tokens in hashed form so that ChatGPT can call our tools.
- What the tools return. Bible text, sermon and reference-work search results, counts, and citation-check results. They do not return personal information.
3. How we use information
We use information to:
- provide and improve the service (for example running your searches and generating content you ask for);
- keep your account signed in;
- prevent abuse and keep the service secure;
- troubleshoot errors and verify that the service works correctly;
- communicate with you about your account (for example email verification).
We do not sell personal information, and we do not use it for advertising.
4. Service providers that process data for us
| Provider | What they receive | When |
|---|---|---|
| OpenAI | the text of your request and relevant context | when a feature uses an OpenAI model, for example study guides and some sermon generation on the website. Many features instead run on our own servers using locally hosted models. |
| ElevenLabs | the text to be read aloud | when you use a voice (text-to-speech) feature that uses ElevenLabs |
| Google (Gmail) | your email address and the message | when we send account emails such as verification |
| Cloudflare | all website and API traffic, including IP addresses and request data | as the network and security provider in front of theologyassistant.com |
Speech-to-text and some voice features run on our own equipment and are not sent to a third party.
5. How long we keep information
| Information | Retention |
|---|---|
| Account data and your saved content | While your account is active, or until you delete the item or ask us to delete your account |
| Guest accounts with no active session | Removed after about 24 hours; content a guest created is deleted 7 days after the guest account is removed |
| Sign-in sessions | Up to 14 days |
| Web server access logs (IP, time, request, user agent) | About 14 days |
| Security and usage records for ChatGPT tool requests | 30 days |
| Detailed tool-request records used for reliability verification (request and response content, without your ChatGPT identity) | 90 days |
| Backups | 30 days |
Records created before September 28, 2026 may also remain in internal engineering archives that are not used to provide the service and are not shared.
6. Your choices and rights
- You can delete individual notes, studies, sermons, doctrine profiles and prayers in the app, and export your notes.
- To access, correct, export or delete your account and all associated data, email [email protected]. We will respond within 30 days.
- In ChatGPT, you can disconnect the plugin at any time in your ChatGPT settings.
- Depending on where you live, you may have additional rights under local law, such as the GDPR or state privacy laws. Contact us to exercise them.
7. Security
We use reasonable safeguards, including:
- hashed passwords and tokens;
- encrypted (HTTPS) connections;
- network restrictions on internal services;
- rate limiting.
No method of transmission or storage is completely secure.
8. Children
The service is not directed to children under 13, and we do not knowingly collect personal information from them. If you believe a child has provided us information, contact us and we will delete it.
9. Changes
We will update this policy as the service changes and revise the effective date above. Material changes will be noted on this page.
10. Contact
David Gan (TheologyAssistant.com), [email protected]