Privacy policy
Voice recordings are personal data almost everywhere. This document says what happens to yours in language you can check against what we actually do.
Draft pending legal review. [VERIFY: delete this box once a lawyer has signed off. Publishing a placeholder policy is worse than publishing none.]
Who we are
[VERIFY: legal entity, registered address, and the data controller's identity and representative where required]
What we collect
[VERIFY: account data, submitted audio, derived features, payment data via the processor, usage logs. Be specific about the audio — it is the sensitive one]
Why we process it, and on what basis
[VERIFY: map each category to a lawful basis. Do not use legitimate interest as a catch-all]
How long we keep it
[VERIFY: state the retention period for each category. This must match what /security/ says, word for word]
Whether we train on submitted audio
[VERIFY: answer in one word first. This is the question people came here to answer]
Who else receives it
[VERIFY: name every sub-processor with what it does and where. 'Trusted partners' is not disclosure]
Where it is stored and transferred
[VERIFY: regions, and the transfer mechanism for any cross-border flow]
Your rights
[VERIFY: access, correction, deletion, portability, objection, complaint — and how to actually exercise each one, not just that they exist]
Children
[VERIFY: your minimum age and how you handle a submission that appears to involve a minor]
Automated decision-making
[VERIFY: state that a verdict is a probability, that it must not be the sole basis for a decision, and what a person can do to contest one]
Security
[VERIFY: point to /security/ rather than restating it, so the two cannot drift apart]
Changes to this policy
[VERIFY: how you notify, how much notice, and where old versions live]
Contact and complaints
[VERIFY: your DPO or privacy contact, and the supervisory authority a person can complain to]
Questions about this document: legal@aivoicedetctor.com
Reviewed