Trust & Privacy
This page is maintained by the Mishkah team to answer common questions about security and privacy. It is not an independent certification.
Authentication & access
Administrative actions are gated behind authenticated admin accounts with server-side role checks. Editorial endpoints require a valid admin session before any data is written or pushed to subscribers.
Data we collect
Most of the app works without an account. Optional features (newsletter, push notifications) collect only the data needed to deliver that feature — for example, an email address or a browser push endpoint.
Hosting & platform
The app runs on the Lovable Cloud platform, which provides managed database, authentication, storage, and serverless functions. This page describes platform capabilities we have enabled — it is not a third-party certification.
Cookies & local storage
We use browser local storage to remember your language, theme, watch progress, saved items, and review schedule. These stay on your device and are not shared with third parties for advertising.
Subprocessors
We rely on Lovable Cloud for backend infrastructure, YouTube for video embeds, and a transactional email provider for newsletters. We do not sell user data to any third party.
Retention & deletion
Newsletter subscribers can unsubscribe at any time, which removes the email from active sends. Push subscriptions are automatically cleaned when the browser endpoint becomes invalid. To request deletion of any other data, contact us using the email below.
Security or privacy contact
To report a security issue, request data deletion, or ask a privacy question, email us at:
hello@mishkah.lifeThis page is app-owner editable content and may be updated from time to time.