Privacy Policy
1. Introduction and scope
This Privacy Policy explains how Daily Lion ("Daily Lion", "we", "us"), operated from Israel, collects, uses, and shares personal data when you use the Daily Lion mobile app and related services (the "Service"). It applies to all users worldwide. Sections that apply only in particular jurisdictions are marked with a badge, like this: GDPR
Data controller: Daily Lion, based in Israel, reachable at support@dailylion.news.
2. Information we collect
Data you provide directly
- Account data: your email address; if you sign in using a third-party identity provider, the name and email that provider shares with us (some providers let you hide your real email address). We never receive or store your password for third-party sign-in, and email sign-in uses one-time codes rather than passwords.
- News preferences: your chosen political leaning bucket (left / center / right), any news sources you select, your preferred delivery time, and your narrator voice. Some of these settings may be available only on a paid plan. Your leaning selection may be considered indicative of your political opinions — see section 4 on how we protect this.
- Support messages you send us by email.
Data collected automatically
- Listening activity: which episodes you play, playback position and completion, story taps, and listening streaks.
- App usage analytics: screens viewed, feature usage, subscription status, app version, device model, operating system and version, app language, coarse events around onboarding and playback. Collected via our analytics processor (see section 5).
- Push notification tokens: a device token used to notify you when a new episode is ready (only if you enable notifications).
- Diagnostic data: server request logs (IP address, timestamps, endpoints) retained briefly for security and debugging.
Data we do not collect
- Precise location, contacts, photos, microphone, health data, or advertising identifiers.
- We do not show ads and do not use third-party advertising SDKs.
Data from third parties
- If you choose third-party sign-in, that identity provider gives us your basic profile (name and email address).
- The app store you purchased through tells us your subscription status, meaning whether your purchase or trial is currently active. It does not give us your payment details. We never see your card number or billing information — payments are processed entirely by the app store.
3. How we use your information
- Deliver the core Service: select which episodes you receive, stream them, and sync your archive and playback progress across devices.
- Send episode push notifications at your chosen time, and transactional emails such as sign-in codes.
- Operate subscriptions and make paid features available to subscribers.
- Understand aggregate product usage and improve the Service (analytics).
- Maintain security, prevent abuse, and comply with legal obligations.
We do not sell your personal data, use it for third-party advertising, or use it to train AI models.
4. Legal basis for processing GDPR
| Processing | Legal basis |
|---|---|
| Account, playback sync, archive, subscriptions | Performance of a contract (Art. 6(1)(b)) |
| Political leaning and source preferences | Explicit consent (Art. 9(2)(a)) — you actively choose a leaning in onboarding or settings; you can change it at any time, and deleting your account erases it |
| Push notifications | Consent (you opt in via the system prompt; revocable in system settings) |
| Analytics | Legitimate interest (Art. 6(1)(f)) in improving the Service |
| Security logs, legal compliance | Legitimate interest / legal obligation |
Your leaning selection exists solely to choose which shared episodes you receive. It is never shared with advertisers or data brokers, never used for profiling beyond episode selection, and is deleted with your account.
5. Third-party services and data sharing
We rely on a small number of specialist companies ("processors") to run the Service. Each of them acts only on our instructions under a written contract, may use your data solely to provide their service to us, and may not use it for their own purposes or sell it. The categories of recipient are:
| Category of recipient | Purpose | What is processed |
|---|---|---|
| Cloud database, authentication and storage | Storing your account, preferences and episode files | Account data, preferences, listening activity |
| Application hosting | Running our servers | Request data in transit, server logs |
| Identity providers | Optional third-party sign-in | Your name and email from that account, only if you choose that method |
| Product analytics | Understanding aggregate feature usage | Usage events tied to a pseudonymous identifier |
| Push notification delivery | Sending episode notifications to your device | Push token and notification content |
| Transactional email | Sending sign-in codes | Your email address |
| App store billing | Processing subscriptions | Subscription status only (payment is handled entirely by the store) |
| AI text and speech generation | Producing episode scripts and audio | Published news articles and episode scripts, never your personal data (see section 6) |
You can ask us who these companies are. We will identify the specific processors in any category, and provide links to their privacy policies, on request to support@dailylion.news.
We may also disclose data if required by law, to protect our rights or users' safety, or as part of a merger or acquisition (in which case this policy continues to apply to previously collected data until amended).
6. AI and machine learning disclosure
Daily Lion's episodes are generated by AI, and it is important to be precise about what data touches those systems:
- Episode scripts are written by a third-party large language model, which processes published news articles from our source list. It does not process your personal data.
- Episode audio is produced by a third-party text-to-speech model, which processes the episode script. It does not process your personal data.
- No personal data about you — not your identity, preferences, leaning, or listening history — is ever sent to any AI provider. This is possible because episodes are shared rather than personalized: the same episode is delivered to every listener who receives it, so nothing about you needs to reach an AI system in order to produce it.
- We use these AI services under paid business agreements whose terms prohibit the provider from using the content we send to train their models. Providers may retain content briefly for abuse monitoring under their standard terms.
- AI-generated scripts and audio are stored by us and served to you as episodes. They are not fed back into any model, and your listening behaviour never influences what any model receives.
- We will identify the AI providers we use, and link to their terms, on request to support@dailylion.news.
7. Data retention
- Account data and preferences: kept while your account exists; deleted when you delete your account.
- Listening activity and streaks: kept while your account exists; deleted with your account.
- Analytics events: retained by our analytics processor for 12 months, tied to a pseudonymous identifier rather than your email.
- Server logs: retained up to 30 days.
- Sign-in codes: expire within minutes; email delivery logs are retained briefly by our email processor.
- Backups: encrypted database backups roll off within 30 days, so deleted data can persist in backups for up to that period before it is permanently gone.
8. Your rights
Everyone
You can access and change your preferences in the app, and delete your account (and all associated personal data) directly in the app's settings — no email required. You can also contact support@dailylion.news to exercise any right below.
EU / EEA / UK users GDPR
You have the right to access, rectify, erase, and receive a portable copy of your data; to restrict or object to processing; and to withdraw consent at any time (e.g. change or remove your leaning selection, disable notifications) without affecting prior processing. You may lodge a complaint with your local supervisory authority.
California users CCPA
You have the right to know what personal information we collect and how it is used and shared; to delete it; to correct it; and to non-discrimination for exercising these rights. We do not sell or share your personal information as those terms are defined by the CCPA/CPRA, and we do not use sensitive personal information beyond what is necessary to provide the Service — so no "Do Not Sell or Share" opt-out is required. To exercise rights, use in-app account deletion or contact support@dailylion.news. We will verify requests via your account email. You may use an authorized agent with written permission.
Israel users
Daily Lion is operated from Israel and is subject to the Protection of Privacy Law, 5741-1981 (as amended). You have the right to review personal data we hold about you and to request that it be corrected or deleted. Note that under Israeli law political opinions are treated as sensitive information, which is why your leaning selection is handled as described in section 4. Contact support@dailylion.news.
Other jurisdictions (PIPEDA, LGPD, APP, and similar)
You have equivalent access, correction, and deletion rights; contact us and we will honor them regardless of where you live.
9. Cookies and tracking technologies
The mobile app does not use cookies. It stores local data on your device (session tokens, cached episodes, preferences) necessary for the app to function. Our analytics uses a generated device and user identifier, not your device's advertising ID. We do not track you across other companies' apps or websites, and the app answers "no" to iOS App Tracking Transparency-defined tracking (no ATT prompt is required).
10. Data security
Data is encrypted in transit (TLS) and at rest in our database. Database access is restricted by row-level security policies, and server credentials are held as managed secrets rather than in code. No system is perfectly secure, but we follow industry practices and will notify you and relevant authorities of a data breach as required by applicable law (including within 72 hours to supervisory authorities where GDPR applies).
11. International data transfers GDPR
Our primary database is hosted in Frankfurt, Germany (EU), and our API servers run in Amsterdam, Netherlands (EU), so the core of the Service keeps your data inside the EU.
We are based in Israel, which the European Commission has recognised as providing an adequate level of data protection, so transfers to us do not require additional safeguards. Some of the processor categories listed in section 5 (in particular analytics, push delivery, transactional email, app store billing, and AI generation) may process data in the United States or other countries. Where data leaves the EU/EEA to those processors, transfers rely on the European Commission's adequacy decisions or on Standard Contractual Clauses in our agreements with them.
12. Children's privacy COPPA
The Service is not directed at children under 13, and we do not knowingly collect personal data from them (or from under-16s in EU member states applying that threshold). If you believe a child has created an account, contact support@dailylion.news and we will delete it.
13. Do Not Track and opt-out signals
The app is not a web browser and does not respond to Do Not Track or Global Privacy Control signals; regardless, we do not track users across third-party services or sell data, so these signals would not change our behavior.
14. Changes to this policy
We may update this policy as the Service evolves. Material changes will be announced in the app or by email before taking effect, with the effective date updated above. Prior versions are available on request.
15. Contact
Daily Lion
Email: support@dailylion.news
Write to us at that address for any privacy question or to exercise any right in section 8. We respond to privacy requests within 30 days.