Voice of Self Privacy Policy
Effective Date: 2026-06-20 Version: 1.2.22
This Privacy Policy explains how Voice of Self processes personal information when you use the Voice of Self iOS app, the public website, direct contact channels, and other services that link to this policy.
Voice of Self is provided by Aleksander Jałtuszyk (“Developer”, “we”, “us”, or “our”).
Contact:
- Email:
voiceofselfapp@gmail.com - Telephone:
+48 73 2099027 - Mailing address:
Aleksander Jałtuszyk, Skrytka Pocztowa 59, UP Warszawa 93, 02-800, Warszawa - Support page:
/apps/VoiceOfSelf/support/ - Country: Poland
Summary Of Key Points
- Voice of Self is an account-based, subscription-based reflection app. Managed AI features require a Voice of Self account, an active subscription or access grant, and our backend.
- Voice of Self is a self-reflection and journaling tool. It is not healthcare, therapy, diagnosis, treatment, crisis monitoring, emergency response, or a substitute for a licensed professional.
- After managed AI processing completes, journal content is stored locally on your device unless you export, back up, share, or directly send it elsewhere.
- Local app data can also be copied into export files, Files/iCloud locations, or device backups if you create or enable them.
- If you use account, subscription, managed AI, live-question, website, or direct contact features, some information leaves your device so those features can work.
- Journal content can include whatever you choose to say or write, including sensitive topics such as health, religion, philosophical beliefs, political opinions, sexual orientation, race, or other personal information. Some content may be blocked, hidden, or left unanalyzed under safety or acceptable use rules.
- For normal managed AI requests, transcript text, selected context, prompts, and AI output are handled on a zero-retention basis by our backend and configured provider routes: they are transmitted only to service the request and are not retained as readable backend content after fulfillment. Raw audio is handled locally or by Apple speech/transcription services where those services are used, not stored as a readable backend account record. We do retain limited account, subscription, security, diagnostic, and usage/accounting metadata such as token counts, workflow labels, timestamps, processing duration, and derived cost.
- Apple handles billing, RevenueCat handles subscription syncing, Firebase / Google handles authentication and backend infrastructure, Amazon Bedrock / AWS handles the current default managed AI routes, Groq may be used only if backend routing is explicitly configured to use Groq, and GitHub Pages hosts the public site.
- If you grant notification permission, the app may schedule local device reminders, including reminders before an account-mode free trial ends or before a paid App Store subscription period ends. These reminders are generated on your device.
- We do not receive journal content unless you directly send it to us, for example by writing it into an email, copying text, or sending a screenshot.
- Companion animations and playful on-screen interactions are driven by local app interaction signals such as touch, idle, swipe, and recording state. These signals are used to trigger the local animation experience and are not intended to create new backend account records.
- We do not sell personal data, and we do not use your personal content to train our own models.
- Voice of Self is not an ad-supported app. We do not display third-party ads, sponsored placements, or ad-network content inside the Voice of Self app.
- We may advertise Voice of Self by buying ads on services such as Meta, Instagram, TikTok, Apple Search Ads, Google, or similar platforms. Those platforms process ad interactions under their own policies.
- Buying ads does not mean we send your journal content, audio, transcripts, AI outputs, direct-message text, or account email address to ad platforms.
- We do not currently use Meta Pixel, TikTok Pixel, Google advertising tags, third-party advertising SDKs, server-side conversion APIs, custom audience uploads, or similar ad-tracking or retargeting tools in the Voice of Self app or website.
- We do not currently include a third-party analytics SDK in the Voice of Self app. We do process limited backend usage, performance, and accounting metadata to operate subscriptions, enforce limits, understand reliability and cost, and keep the service working.
- If we later add an advertising pixel, app event SDK, server-side conversion API, custom audience upload, or similar measurement tool, we will update this policy and use required consent or choice controls before activating that tool.
- Depending on where you live, you may have rights to access, correct, delete, or object to some processing. Most local journal content remains under your direct control on your device.
Table Of Contents
- What information do we collect?
- How do we process your information?
- What legal bases do we rely on to process your personal information?
- When and with whom do we share your personal information?
- Do we offer artificial intelligence-based products?
- How do we handle sign-in and social login features?
- Is your information transferred internationally?
- How long do we keep your information?
- How do we keep your information safe?
- What are your privacy rights?
- Advertising, tracking, and campaign measurement
- Controls for Do Not Track features
- Do United States residents have specific privacy rights?
- Do we make updates to this policy?
- How can you contact us about this policy?
- How can you review, update, or delete data?
1. What Information Do We Collect?
1.1 Information stored on your device
Voice of Self stores journal content locally after processing unless you choose to export, back up, share, or directly send it elsewhere. The app may store the following on your device:
- Audio recordings
- Transcripts
- AI-generated reflections, summaries, notes, relics, milestones, closing messages, and related metadata
- Safety-status, repair, and related processing metadata tied to your entries
- Local interaction state used for companion animations, such as touch, idle, swipe, and recording-state cues
- App settings, reminder preferences, and other preferences
- Local export and import files you create or use
Depending on your Apple or device settings, local app data may also appear in device backups, Finder/iTunes backups, iCloud backups, or other storage locations you choose when exporting or sharing files.
1.2 Account and sign-in information
If you create or use an account, we may process:
- Your email address
- Your Firebase Authentication user ID
- Authentication and session data for email/password sign-in
- Sign-in method data from Google Sign-In or Sign in with Apple
- Limited profile data returned by the provider, such as your email address, stable provider identifier, and, in the case of Sign in with Apple, your name if Apple provides it during the sign-in flow
1.3 Subscription, access, and backend usage records
If you use account mode or paid features, we may process backend-linked records such as:
- Subscription and entitlement status managed through Apple and RevenueCat
- RevenueCat customer and event records synced into our backend
- Manual entitlement overrides or extra usage grants if we apply them to your account
- Usage and accounting records tied to your account, such as token counts, input/output token splits, workflow labels, total calls, timestamps, processing duration, pricing metadata, and derived cost
- Aggregate usage summaries for billing-period, day-level, or app-level operational tracking
Our backend usage and accounting records are intended to track access, limits, cost, fraud prevention, and service operations. They store usage metadata such as token and cost information; they do not store what you said, raw transcript text, raw audio, or AI response content as account records.
1.4 Website and direct contact submissions
If you contact us through website or email channels, we may process:
- Your email address
- Your name or nickname if you provide one
- Your message or optional notes, including any app content you deliberately copy, attach, screenshot, or otherwise send
- Basic submission metadata such as the submission time or source page
- If you use an app-created issue email draft, basic technical details in that draft, such as app version, iOS version, device model, popup text, raw error text, analysis-step label, and timestamp. The app no longer adds recent app logs to these email drafts.
Direct contact emails may be processed through your email provider and ours. Please avoid sending more personal information than needed when contacting us. Do not send sensitive journal entries, recordings, transcripts, health information, location history, screenshots, or third-party personal information unless that information is needed for the support request.
1.5 Sensitive information
Voice of Self is a self-reflection and journaling tool, not healthcare, therapy, diagnosis, treatment, crisis monitoring, emergency response, or a substitute for a licensed professional. Your journal content may still contain or imply sensitive personal information if you choose to say or write it. This is not because we ask you to create a sensitive profile; it is because an open-ended reflection app lets you talk about your life. This may include information about:
- Health or mental-health-related topics
- Religious or philosophical beliefs
- Political opinions
- Race or ethnic origin
- Sex life or sexual orientation
- Other sensitive topics voluntarily included in recordings, transcripts, notes, direct messages to us, or AI-generated reflections
We do not ask you to create a separate sensitive-profile record for our backend. Instead, sensitive information may appear inside the content you create in the app or directly send to us. Managed AI requests process the content needed to answer the request, then the resulting journal content is stored locally by the app. If content appears to involve self-harm, abuse, illegal conduct, or other safety or acceptable-use risks, Voice of Self may block, hide, refuse, or leave some analysis incomplete.
1.5.1 Sensitive information in entries and transcripts
You choose what to write, say, record, transcribe, export, delete, or send. An open-ended reflection app can include sensitive personal topics such as health, mental health, relationships, sexuality, religion, politics, race or ethnic origin, philosophical beliefs, family matters, work issues, legal concerns, or other private subjects.
Managed AI features may process the current entry, current transcript, live transcript excerpts while a recording is in progress, completed transcript text, and selected past entries, transcripts, summaries, relics, milestones, or related local context depending on the feature, account state, app settings, and workflow.
Where applicable law requires explicit consent for processing entries, transcripts, or sensitive information you choose to include for managed AI features, Voice of Self relies on the consent and instructions you give through the app’s legal acceptance, device permission prompts, feature prompts, settings, or other consent surfaces available in the app version you use. The app may ask for that consent during onboarding, before first managed AI use, when legal documents change, or before a feature that needs this processing.
You can withdraw consent by disabling or avoiding managed AI features, deleting
backend-linked account data where available, deleting local entries you no
longer want processed, or contacting support at voiceofselfapp@gmail.com.
If you withdraw consent or disable managed AI processing, features that require
entries, transcripts, or selected context to be processed by managed AI may stop
working or become limited. Withdrawal does not affect processing that happened
before withdrawal or processing we must retain where another legal basis
applies, such as security, legal compliance, dispute handling, or support
records.
Voice of Self does not use journal content, raw audio, transcripts, live question content, or AI outputs for ads, retargeting, custom audiences, or training our own models. For normal managed AI requests, request content is handled transiently to fulfill the feature and is not retained as readable backend content after fulfillment.
1.6 Payment information
Paid subscriptions are sold through Apple’s in-app purchase system. Apple handles payment card or billing instrument details. We may receive limited subscription and transaction status information from Apple or RevenueCat, such as product identifiers, entitlement status, renewal state, and related timestamps, but we do not receive or store your full payment card number.
The app may use subscription status already available to it to schedule a local device reminder about 24 hours before an account-mode free trial ends or before a paid App Store subscription period ends. This reminder uses the app’s existing notification permission, is generated on your device, and does not add new backend data collection, retention, deletion, or third-party sharing.
1.7 Information processed automatically
When you use the website, sign in, call backend features, or use subscription or AI-connected services, we and our service providers may automatically process limited technical information such as:
- IP address
- Request timestamps
- Device, browser, OS, or app-version metadata
- Authentication and session metadata
- App Check, App Attest, DeviceCheck, or similar integrity / access-control signals
- Request identifiers, status codes, model/workflow labels, and similar service-operation diagnostics
- Standard server, security, fraud-prevention, and diagnostic log data
- Advertising and campaign information if you interact with our ads or campaign links, such as ad click metadata processed by the ad platform, referral source, campaign parameters, landing-page request metadata, and aggregated campaign reports from ad platforms
If you use the app, it may also request access to features such as:
- Your microphone
- Speech recognition or transcription-related capabilities
- Local storage used for recordings, exports, imports, and app data
- Notifications, so the app can schedule local reminders and local processing-status notifications, including reminders about an account-mode free trial or paid App Store subscription period ending when notification permission is available, even if you have not enabled a daily reminder feature
You can control device permissions in iOS Settings.
1.8 Information from other sources
We do not buy personal data from data brokers, public databases, or marketing partners.
We may receive limited information from third parties that help us deliver the service, including:
- Google or Apple sign-in providers
- Apple App Store billing systems
- RevenueCat subscription systems
- Website hosting or email providers
1.9 Children
Voice of Self is not intended for children under 16, and we do not knowingly seek to collect personal data from children under 16. If you believe a child under 16 has provided personal information through the app or direct contact channels, contact us and we will investigate and, where appropriate, delete the information.
2. How Do We Process Your Information?
We may process personal information to:
- Provide the app, website, and direct contact channels
- Authenticate users and secure accounts
- Provide managed AI-assisted reflections, summaries, live questions, and related features
- Route managed requests to the configured AI provider and enforce account usage limits so the service stays financially and operationally viable
- Sync subscription state and entitlement access
- Track token usage, pricing, and derived cost for account-mode billing, budgeting, rate-limiting, or abuse prevention
- Maintain app integrity, backend security, fraud prevention, and operational reliability
- Apply safety checks and limit, defer, or block some AI features when content appears to present safety or policy risks
- Provide local companion animations or light interaction effects based on local touch, idle, swipe, and recording-state cues
- Respond to direct messages you send us
- Measure, understand, and improve our own advertising campaigns where lawful, using the limited campaign measurement practices described in Section 11
- Send account, billing, security, safety, legal, or policy notices
- Comply with law, defend legal rights, and protect users or the service
We do not sell personal data. We do not use your registered email address for optional marketing or giveaway campaigns without a separate consent flow.
Safety checks are automated. They may refuse, defer, block, or limit AI output or show safety-oriented language when content appears risky. Voice of Self is not live human monitoring, crisis support, therapy, or emergency response. Human review or disclosure is limited to situations such as support you request, security, abuse prevention, legal compliance, or urgent safety/legal circumstances described in this policy and the Terms.
3. What Legal Bases Do We Rely On To Process Your Personal Information?
If you are in the EEA, UK, Switzerland, or another jurisdiction that requires us to identify a legal basis, we generally rely on one or more of the following:
- Contract or steps at your request: to create your account, provide the app, manage subscriptions, run managed AI features you request, and respond to direct messages you send us
- Consent: where you choose to provide sensitive content or use optional features that depend on consent, such as device permissions
- Legitimate interests: to secure the service, prevent abuse, manage cost, enforce usage limits, route requests, handle failures, and improve reliability without overriding your rights
- Legal obligations: to comply with tax, accounting, fraud, consumer, safety, or other legal requirements
- Vital interests: where needed to protect someone’s safety
Where sensitive personal information is processed, it is processed because you chose to include it in content you ask the app to process or because you directly sent it to us. We rely on your explicit action, instructions, consent where required, or other grounds permitted by applicable law.
4. When And With Whom Do We Share Your Personal Information?
We may share information with service providers or infrastructure partners when needed to operate the service. Categories include:
- Firebase / Google for authentication, backend functions, infrastructure, and App Check related protection
- Amazon Bedrock / AWS for the current default managed account-mode analysis and live-question AI processing
- Groq for managed account-mode AI processing only when a backend workflow route is explicitly configured to use Groq
- Apple for Sign in with Apple, App Store billing, DeviceCheck / App Attest, and transcription-related services when Apple services are used
- RevenueCat for subscription syncing and entitlement management
- GitHub Pages / GitHub for website hosting
- Other apps, Files locations, or storage providers you choose if you export
or share a
.vosbackup file - Email providers involved in delivering or receiving direct contact email
- Advertising platforms when they show or measure Voice of Self ads on their own platforms and provide campaign reports
- Future advertising measurement providers only if the relevant pixel, SDK, conversion API, custom audience, or similar tool is added with required notice and compliance controls before activation
We may also disclose personal information when reasonably necessary to:
- Comply with law, court orders, or valid legal requests
- Protect the rights, safety, or property of users, us, or others
- Investigate fraud, abuse, or security incidents
- Complete a merger, sale, financing, acquisition, or similar business transfer
We do not sell personal data, and we do not share personal data for cross-context behavioral advertising.
5. Do We Offer Artificial Intelligence-Based Products?
Yes. Voice of Self includes AI-assisted features such as:
- Transcription-related processing
- Structured summaries and reflections
- Memory-like updates and milestone or relic generation
- Live questions during or after reflection
- Text analysis and related insight generation
AI features are for non-authoritative reflection only. They are not advice, guidance, therapy, crisis support, emergency support, safety-critical decision support, or proof that progress is truly present or absent. Additional safety and acceptable-use limits appear in the Terms of Service.
Current managed provider roles are summarized below. Provider availability, routing, model choices, and infrastructure settings may change over time.
| Provider | Purpose | Data handled for the request or service | Retention and training notes | Region / transfer note |
|---|---|---|---|---|
| Firebase / Google | Authentication, callable backend, App Check, security, account records, usage/accounting metadata, and backend infrastructure | Account identifiers, authentication/session metadata, request metadata, App Check or integrity signals, token/cost/workflow metadata, performance metadata, and limited operational logs | Backend records are designed not to store raw journal text, transcript text, raw audio, or AI output as persistent account records. Platform logs may retain limited technical metadata under Google/Firebase settings. | May process in regions used by Firebase / Google infrastructure. |
| Amazon Bedrock / AWS | Managed analysis, live-question, and related AI processing | Transcript text, live transcript excerpts, selected entry/context needed for the requested workflow, prompts, outputs, and technical request metadata while servicing the request | We do not use your content to train our own models. Bedrock model invocation logging for raw request or response bodies is disabled for these managed requests, and our backend is designed not to retain raw Bedrock request or response bodies as persistent account records. | May process in AWS regions used for managed AI processing. |
| Groq | Optional managed AI processing only when backend routing is explicitly configured to use Groq | Transcript text, live transcript excerpts, selected context needed for the requested workflow, prompts, outputs, and technical request metadata while servicing the request | We do not use your content to train our own models. If used, the provider route is configured for zero data retention for normal requests, and our backend is designed not to retain raw Groq request or response bodies as persistent account records. | May process in regions used by Groq and its infrastructure providers. |
| Apple | App Store billing, Sign in with Apple, DeviceCheck / App Attest, local device permissions, and Apple transcription or Apple-assisted features where used | Apple account/platform data, entitlement and transaction status, device integrity signals, microphone/speech data where Apple services are used, and device permission state | Apple handles platform data under Apple’s own policies. Local app records remain under local app/device behavior unless you export, back up, share, or send them elsewhere. | Depends on Apple services, your device settings, and Apple’s infrastructure. |
5.1 Managed account-mode AI
If you use account mode, content needed to fulfill the request may pass through
our Firebase backend to the managed AI provider selected by our backend
configuration for that workflow. Managed AI processing uses Amazon Bedrock /
AWS for the default managed AI routes, including account-mode analysis and
live-question workflows with OpenAI GPT-OSS model identifiers such as
openai.gpt-oss-20b-1:0 and openai.gpt-oss-120b-1:0. Groq may still be used
if backend workflow routing is explicitly configured for a Groq model. This may
include transcript text and, in some flows, live transcript excerpts while a
recording session is still in progress.
For normal managed AI requests, transcript text, selected context, prompts, and AI output are handled on a zero-retention basis for readable request content by our backend and configured provider routes. That means the content is transmitted only to service the request and is not retained as readable backend content after fulfillment. Raw audio is handled locally or by Apple speech/transcription services where those services are used; it is not stored by our backend as a readable account record. We do, however, retain limited security, subscription, diagnostic, performance, and usage/accounting metadata such as token counts, workflow labels, timestamps, processing duration, and derived cost.
Our app and backend code do not add Bedrock prompt cache checkpoints for these managed requests, and Bedrock model invocation logging for raw request or response bodies is disabled for these managed requests. If a Groq route is explicitly configured, it is configured for zero data retention for normal managed requests.
5.2 On-device and Apple-assisted processing
Depending on the feature and your device capability:
- Transcription may run on-device or with Apple speech / transcription services.
- Live-question AI normally uses Voice of Self managed account-mode processing.
- If Apple Intelligence is enabled in app settings and available on your device, live-question requests may retry on-device as a fallback after the managed AI request fails.
5.3 How to limit or avoid AI processing
Voice of Self does not currently offer a user-selected custom AI provider or bring-your-own API key mode. You can reduce or avoid off-device AI processing only by:
- Avoiding live questions or other AI-connected features
- Deleting local journal content or your backend-linked account where applicable
We do not use your personal content to train our own models. Managed AI providers process data under their own API terms, privacy policies, and service settings.
6. How Do We Handle Sign-In And Social Login Features?
Voice of Self currently supports:
- Email and password
- Google Sign-In
- Sign in with Apple
If you use Google or Apple sign-in, we receive only the limited account information needed to authenticate and operate your account. We do not currently support Facebook, X, or other general social-media login systems.
Third-party sign-in providers control their own processing of your data under their own policies.
7. Is Your Information Transferred Internationally?
Yes. Depending on the feature you use and the provider involved, your information may be processed in countries other than your own, including the United States, AWS regions used for managed AI processing, regions used by Firebase / Google infrastructure, and other regions where our service providers operate. If you export or share files, transfer and storage locations also depend on the apps and storage destinations you choose.
If you are in the EEA, UK, or Switzerland, these countries may not always have privacy laws identical to those in your jurisdiction. Where applicable, we rely on the safeguards, contractual commitments, or transfer mechanisms offered by our service providers under their terms and data-processing commitments.
8. How Long Do We Keep Your Information?
We keep personal information for as long as reasonably necessary for the purposes described in this policy, unless a longer period is required by law.
8.1 Local data
Local journal data remains on your device until you delete it, remove the app,
or otherwise clear it yourself. Copies may also remain in exported .vos
files, Files/iCloud locations, email drafts, sent-mail folders, or device
backups until you delete those copies too.
8.2 Recordings
Recordings may be retained locally for playback, transcript repair, or re-transcription.
- If
Keep Recordingsis enabled, recordings may remain until you delete them. - If
Keep Recordingsis disabled, recordings are intended to be removed after they are no longer needed, generally around 24 hours later, although removal may be delayed if the recording is still needed for transcript completion, transcript repair, or until the cleanup routine next runs.
8.3 Backend-linked account data
Backend-linked records remain until you delete your account, ask us to delete applicable data, or we remove the records for fraud, safety, security, legal, or service-operation reasons. These records may include:
- Firebase Authentication account records
- RevenueCat customer and event records synced to our backend
customers/{uid}profile records- Manual entitlement overrides
- Extra usage grants
- Usage aggregates and usage-event records tied to your account
- User-owned Cloud Storage objects stored under your user prefix
8.4 Diagnostic, security, and platform log records
Operational, security, anti-abuse, and deletion-request records may persist for as long as reasonably necessary to detect incidents, enforce limits, document requests, and satisfy legal or compliance obligations. These records are intended to be limited in content and are not intended as a journal archive. They may contain identifiers, timestamps, request metadata, status codes, model or workflow labels, error names, file paths, or other technical context.
Firebase / Google platform logs for backend functions are handled by Cloud Logging according to the project’s configured Google/Firebase retention settings. Under standard Firebase / Cloud Logging defaults, Cloud Functions for Firebase logs are automatically deleted after 30 days unless custom retention or export settings are configured. Our backend code is designed not to log raw journal text, raw audio, or raw AI output.
8.5 Zero retention for managed-AI content
For normal managed account-mode AI requests, transcript text, selected context, prompts, and AI response content are handled on a zero-retention basis for readable request content by our backend and configured provider routes. They are transmitted only to service the request and are not retained as readable backend content after fulfillment. Raw audio is handled locally or by Apple speech/transcription services where those services are used, not stored by our backend as a readable account record.
We do retain limited account, subscription, security, diagnostic, performance, and usage/accounting metadata, such as token counts, workflow labels, timestamps, processing duration, and derived cost. This metadata is used to enforce access limits, prevent abuse, operate the service, understand reliability and cost, and keep the service financially viable; it is not a record of what you said.
8.6 Direct contact data
Direct emails or website messages may remain until we no longer need them for follow-up, service-related replies, or legal/business recordkeeping, unless you ask us to delete them sooner and we are not legally required to keep them.
9. How Do We Keep Your Information Safe?
We use commercially reasonable technical and organizational measures, including where applicable:
- iOS file protection for local app-managed files
- Local app data stored inside the app sandbox with platform-level file protection
- TLS for network transport
- Firebase App Check and related access-control or app-integrity protections on backend traffic
- Data-minimization practices intended to avoid storing raw journal content on our backend when it is not needed as a persistent record
No system can guarantee absolute security. Local-first storage may reduce some backend exposure compared with persistent server storage, but it does not eliminate risk if your unlocked device, exported files, backups, email account, or third-party provider accounts are compromised.
10. What Are Your Privacy Rights?
Depending on where you live, you may have rights to:
- Access personal information we hold about you
- Correct inaccurate personal information
- Request deletion of personal information
- Object to or restrict some processing
- Withdraw consent where processing depends on consent
- Receive a portable copy of some data where applicable
- Ask about automated decision-making and request human review where applicable law grants that right
Because journal content is stored locally on your device after processing, you already control much of that data directly. For backend-linked account data or direct-contact data, contact us using the details below.
We do not currently use solely automated decision-making to make legal or similarly significant decisions about you in the sense used by privacy law. However, automatic entitlement, rate-limit, integrity, and safety checks may still enable, disable, delay, or block some app features.
If you are in the EEA, UK, Switzerland, Canada, or another jurisdiction that grants it, you may also have the right to complain to your local privacy or data protection regulator.
If processing depends on your consent, you can withdraw that consent at any time. This does not affect the lawfulness of processing before withdrawal or processing based on another lawful basis.
11. Advertising, Tracking, And Campaign Measurement
Voice of Self may be promoted through paid or organic campaigns on third-party platforms such as Meta, Instagram, TikTok, Apple Search Ads, Google, or similar services. We may choose campaign settings inside those platforms, such as region, language, placement, keyword, interest, app-category, campaign objective, budget, schedule, creative, and similar platform-provided targeting or optimization settings, where lawful.
For clarity, advertising Voice of Self on external platforms is different from showing ads inside the app. Voice of Self is not an ad-supported app: we do not display third-party ads, sponsored placements, ad-network content, or paid promotions inside the Voice of Self app.
If you see, click, view, save, share, comment on, install from, or otherwise interact with a Voice of Self ad on one of those platforms, the platform may process information about that interaction under its own terms and privacy policy. We may receive campaign reports from those platforms, such as impressions, clicks, installs, video views, engagement, spend, and other aggregated or campaign-level performance information.
We may use non-sensitive campaign links or parameters, such as UTM parameters, referral source, landing-page path, and aggregated platform reports, to understand whether a campaign is working. Website hosting, browser, and security systems may also receive ordinary request metadata such as IP address, user agent, request time, and the page requested.
Today, the Voice of Self app and website do not include Meta Pixel, TikTok Pixel, Google advertising tags, third-party ad SDKs, server-side conversion APIs, or similar ad-tracking code. We do not currently upload customer lists, account email addresses, support email addresses, device advertising identifiers, app activity, website activity, journal text, raw audio, transcripts, AI outputs, or similar user data to ad platforms for custom audiences, lookalike audiences, retargeting, attribution, or conversion measurement.
If we later add a website pixel, app event SDK, server-side conversion API, custom audience upload, retargeting audience, lookalike audience, or similar advertising measurement tool, we will treat that as a material advertising-data practice. Before activating that tool, we will update this policy and App Store privacy disclosures, use legally required cookie or tracking consent controls, and comply with Apple App Tracking Transparency where the iOS app tracks users across other companies’ apps or websites.
We will not intentionally send journal text, raw audio, transcripts, AI outputs, live-question content, direct-message text, children’s data, or other sensitive app content to Meta, TikTok, Google, Apple Search Ads, or similar ad platforms for targeting or campaign measurement. We also will not upload direct-contact lists or account email addresses for custom-audience advertising unless we have a lawful basis, required notice, and any required consent.
12. Controls For Do Not Track Features
Some browsers offer a Do Not Track (“DNT”) setting. Because there is no consistent industry standard for recognizing and enforcing DNT signals, we do not currently respond to them.
13. Do United States Residents Have Specific Privacy Rights?
If you live in a US state with a privacy law that applies to us, you may have rights to know, access, correct, delete, or obtain a copy of certain personal information, and to opt out of some kinds of processing where applicable.
13.1 Categories of personal information we may process
Depending on how you use the service, we may process categories such as:
- Identifiers, such as email address, Firebase user ID, provider identifiers, and IP address
- Customer-record information, such as contact details and direct contact submissions
- Commercial information, such as subscription status, entitlements, and purchase-related metadata
- Internet or network activity information, such as request metadata, app version, device/browser characteristics, and security logs
- Audio or electronic information, such as recordings, transcripts, AI outputs, and related content created through the app and stored locally after processing, or transiently transmitted only to service managed AI requests
- Inferences or derived records, such as summaries, reflections, milestones, relics, and other structured outputs generated from your content
- Sensitive personal information, to the extent you choose to include it in recordings, transcripts, direct messages to us, or related content
These content categories are included here for privacy-law transparency. They do not mean that we retain a backend archive of what you said; normal managed AI request content is handled on a zero-retention basis as described above.
Audio recordings may contain your voice, but we do not use recordings, transcripts, photos, images, or other content to identify people, create biometric identity templates, create voiceprints, perform speaker recognition, scan face geometry, or verify identity.
13.2 Sale, sharing, and sensitive information
We do not sell personal data. We do not currently share personal data from our app or website for targeted or cross-context behavioral advertising. We use sensitive personal information only as needed to provide the service, secure it, comply with law, or for other purposes permitted by applicable law.
If we add a practice that qualifies as sale, sharing, targeted advertising, or cross-context behavioral advertising under an applicable law, we will provide the legally required notice and opt-out or consent mechanism.
13.3 Exercising your rights
To exercise applicable rights, contact us using the details in Section 15.
13.4 Verification, authorized agents, and appeals
We may ask for information needed to verify your identity before responding to an access, correction, deletion, or similar privacy-rights request. Where applicable law allows, you may use an authorized agent to submit a request on your behalf, and we may ask for proof of that authorization.
If we deny a request and applicable law gives you an appeal right, you may
appeal by emailing voiceofselfapp@gmail.com or by using the other contact
details in Section 15.
13.5 Consumer health data note
Some U.S. laws use terms such as “consumer health data” for information that can identify or imply a person’s physical or mental health status, even outside traditional healthcare. Voice of Self is not healthcare, but entries, transcripts, reflections, or direct messages you choose to provide may include or imply health, mental-health, mood, grief, relationship, identity, or similar sensitive information.
We do not sell that information, use it for targeted advertising, share it for cross-context behavioral advertising, or use it to train our own models. We use it only as described in this policy: to provide features you request, operate and secure the service, respond to support you initiate, comply with law, and protect users or the service. If an applicable law requires a separate consumer health data notice, consent flow, or rights process for a market where Voice of Self is offered, we will provide the required notice or control before or with that processing.
We do not currently disclose personal information to third parties for their own direct-marketing purposes.
14. Do We Make Updates To This Policy?
Yes. We may update this Privacy Policy from time to time. The current version and effective date are published in the hosted legal manifest and surfaced in the app when a new acceptance is required.
15. How Can You Contact Us About This Policy?
If you have questions or comments about this Privacy Policy, you may contact us at:
- Email:
voiceofselfapp@gmail.com - Telephone:
+48 73 2099027 - Mailing address:
Aleksander Jałtuszyk, Skrytka Pocztowa 59, UP Warszawa 93, 02-800, Warszawa - Support page:
/apps/VoiceOfSelf/support/ - Country: Poland
16. How Can You Review, Update, Or Delete Data?
16.1 Local app data
You can delete local journals, transcripts, recordings, exports, and related
content directly on your device. Standard .vos exports can include
transcripts, episodes, AI notes, relics, and optionally settings. Removing the
app may remove some local app data, but it may not remove copies in export
files, Files/iCloud locations, email drafts, sent-mail folders, or device
backups.
16.2 Backend-linked account data
The app includes an in-app delete-account flow. When completed, it is intended to immediately remove backend-linked records we control:
- Your Firebase Authentication account
- Your RevenueCat customer record associated with your app user ID
- Backend-linked account records such as
customers/{uid} - RevenueCat extension event records associated with your user
- Manual entitlement overrides
- Extra usage grants
- Usage records and usage-event records tied to your account
- Any user-owned Cloud Storage objects stored under your user prefix, if such objects exist
If a backend, storage, or provider deletion step cannot be completed after retrying, the app may leave your sign-in account in place, tell you which cleanup steps still need a retry, and let you try the delete-account flow again later instead of silently finalizing account removal while cleanup is still incomplete.
Deleting your account does not remove journals, transcripts, recordings, or other content that already exists only on your device. Deleting your account also does not automatically cancel an App Store subscription, and it does not necessarily remove transaction records, provider-side logs, platform logs, or legally required records kept by Apple, RevenueCat, Google, email providers, or other third parties under their own obligations.
16.3 Direct contact data
To request review, correction, or deletion of backend-linked data or direct-contact data, contact us using the details in Section 15. If you contacted us by email, you may also need to delete copies from your own mailbox, sent-mail folder, or other email systems you used.