WeSearch

Pope's official prayer app commits cardinal sin, leaks 700K+ users' info

Jessica Lyons· ·3 min read · 0 reactions · 0 comments · 3 views
#pope#official#prayer#commits#cardinal
Pope's official prayer app commits cardinal sin, leaks 700K+ users' info
TL;DR · WeSearch summary

This app needs to take a vow of silence when it comes to your personal information.The app, available in seven languages and on iOS, Android, and clicktopray.org, is the official app of the Pope's Worldwide Prayer Network. It connects users across the globe to pray for the Holy Father’s intentions, and as of July 2026, it has 719,517 registered accounts.It’s also very leaky, according to security sleuth BobDaHacker, who says she spotted and disclosed the vulnerability to the Pope’s Worldwide Prayer Network on January 3. REG AD googletag.cmd.push(function() { googletag.display('labrador/thereg/article/desktop/b'); }); “The vulnerability is still live,” the hacker said in a Friday blog.

Key facts
About this source

The Register publishes from United Kingdom and files mainly under tech. We currently carry 288 of its stories.

Original article
The Register · Jessica Lyons
Read full at The Register →
Opening excerpt (first ~120 words) tap to expand

(function() { let windowUrl = window.location.href; windowUrl = windowUrl.substring(windowUrl.indexOf('?') + 1); let messageElement = document.querySelector('.shareableMessage'); if (windowUrl && windowUrl.includes('code') && windowUrl.includes('expires')) { messageElement.style.display = 'block'; } })(); Security Pope's official prayer app commits cardinal sin, leaks 700K+ users' info (Security) hole-ier than thou Jessica Lyons Jessica Lyons Cybersecurity Editor Published fri 24 Jul 2026 // 23:19 UTC Click To Pray, a prayer app endorsed by the Pope with hundreds of thousands of users worldwide, has leaked people’s names and email addresses for months - or longer - according to an ethical hacker who said she found and reported the security vulnerability six months ago to no avail.

Excerpt limited to ~120 words for fair-use compliance. The full article is at The Register.

Anonymous · no account needed
Share 𝕏 Facebook Reddit LinkedIn Threads WhatsApp Bluesky Mastodon Email

Discussion

0 comments

More from The Register