Privacy

Privacy Policy

At SpeakToText, we believe that your voice, your thoughts, and your writings are private. Our software is engineered around the principle of Privacy-by-Design. This policy outlines our strict data handling limits, data ephemerality, and security commitments across our Website, Desktop Application (Windows & macOS), upcoming Mobile Applications (iOS & Android), and backend services.

Last updated: May 24, 2026

1. Our Privacy-by-Design Philosophy

We operate under a strict data minimization model. We do not want, collect, or store your private communications. Our product is designed to facilitate voice-to-text productivity while leaving the custody, ownership, and control of your transcripts completely in your hands.

This policy applies universally across all our deployment channels: our marketing website, our API infrastructure, our desktop application packages, our web browser extensions, and our upcoming mobile application suites.

2. Absolute Anti-AI Training Guarantee

YOUR DATA IS NEVER USED FOR AI TRAINING. We explicitly guarantee that your voice recordings, audio clips, parsed transcripts, edited texts, and summaries are never stored, logged, or used to train, fine-tune, or validate any proprietary or third-party AI, machine learning, or natural language processing models.

All speech-to-text processing (whether performed on local device hardware or passed securely to high-end ephemeral cloud nodes) is treated as a transactional, real-time operation.

3. Voice and Transcription Data Handling

Deliberate Capture: SpeakToText uses intentional, user-triggered voice capture. We do not engage in "always-on" background microphone recording. Audio capture occurs only when you explicitly invoke the recording action.

Local-First Processing & Ephemerality: Audio signals are processed in-memory. If local dictation models are selected, audio never leaves your device. If high-performance cloud processing is active, the audio file is streamed securely via encrypted TLS 1.3 connections, processed instantly, and immediately deleted from processing memory once the transcription is returned.

No Persistent Cloud History: We do not maintain a cloud database of your transcriptions, logs, or audio files on our servers. Your local dictation history, custom replacement rules, and configuration profiles are stored locally on your device in secure, encrypted application containers.

4. Information We Minimally Collect

Account Information: When you create a SpeakToText account, we collect your email address and authentication hashes. This data is stored securely in our databases to manage your license and handle account synchronization.

Subscription and Billing: Payment processing is isolated and handled entirely by Stripe (a PCI-DSS Level 1 compliant gateway). SpeakToText never stores, receives, or has access to your full credit card numbers or billing credentials.

Basic Telemetry & Diagnostics: The desktop application may transmit highly aggregated, non-identifying telemetry metrics (such as installation status, operating system version, and general error rates) to help us troubleshoot client-side build errors and crash reports.

5. Cookie & Tracking Policy

We use essential cookies to maintain secure active user sessions on our checkout portals and subscription dashboards.

We use Google Analytics 4 (GA4) with IP anonymization enabled on our marketing website to analyze navigation patterns, conversion events, and page responsiveness. We do not use advertising tracking, cross-site targeting cookies, or telemetry platforms that correlate your personal profile with external marketing networks.

6. SMS Messaging Privacy

If you opt in to receive SMS messages from SpeakToText, we use your mobile number and consent record only to send the account, billing, support, security, or product messages you requested.

We do not sell, rent, share, or transfer mobile numbers, SMS opt-in data, or text-message consent with third parties or affiliates for their own marketing or promotional purposes.

7. International Data Rights (GDPR & CCPA Compliance)

Regardless of your geographical location, we extend robust privacy rights to all users. If you are a resident of the European Economic Area (EEA) under GDPR, or California under CCPA, you retain:

• The right to access, export, or receive a portable copy of the minimal personal information we hold (primarily your email and license details).

• The right to request immediate rectification or complete erasure of your account data.

• The right to object to or restrict processing of your telemetry data.

To exercise any of these rights, contact us directly at support@speaktotext.org. We will respond to and fulfill all legitimate data rights requests within 30 days without charge.

8. Policy Revisions

As SpeakToText evolves, we may release new features or launch mobile and macOS applications. Any architectural changes that affect how data is handled will be updated transparently in this policy. We will notify you of any material changes by posting an update notice inside the app dashboards or on this webpage.

For any questions, concerns, or requests regarding this Privacy Policy, please contact our dedicated data privacy coordinator at support@speaktotext.org.