<?xml version="1.0" encoding="UTF-8"?>
<!--
  The three public pages. URLs are extensionless and carry no trailing slash,
  which is the form nginx actually serves: try_files resolves /privacy through
  $uri.html, and a trailing slash is 301'd away.

  /password-reset and /email-verify are left out on purpose (noindex), and so is
  /404. Update lastmod when a page's content changes, not on every deploy.
-->
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
  <url>
    <loc>https://reshta.app/</loc>
    <lastmod>2026-08-26</lastmod>
    <changefreq>weekly</changefreq>
    <priority>1.0</priority>
  </url>
  <url>
    <loc>https://reshta.app/privacy</loc>
    <lastmod>2026-08-01</lastmod>
    <changefreq>yearly</changefreq>
    <priority>0.3</priority>
  </url>
  <url>
    <loc>https://reshta.app/terms</loc>
    <lastmod>2026-08-01</lastmod>
    <changefreq>yearly</changefreq>
    <priority>0.3</priority>
  </url>
</urlset>
