In one paragraph
WorkVoice is built so that the things you say into the microphone — the half-finished sentences, the rehearsed answers, the wobble before a job interview — stay on your device. We do not record audio to our servers. We do not transmit transcripts. The only data we receive is the kind that lets the App Store work and the app keep running: a subscription receipt, a crash log when something breaks, a pseudonymous identifier so we can tell one anonymous user from another. That is the entire arrangement.
What we collect
WorkVoice collects three categories of information, and nothing outside them.
Audio & transcripts
When you use a practice session, your voice is captured by Apple's SFSpeechRecognizer and converted to text on your device. The audio buffer is discarded the moment the session ends. The resulting transcript is stored locally in SwiftData on your iPhone — nowhere else. We never see it. We have no servers configured to receive it.
Subscription & receipt data
If you subscribe, the App Store generates a transaction receipt and shares it with our subscription provider, Adapty, so we can verify that your subscription is active and unlock premium features. This receipt does not contain your name, email, or payment information — only an opaque identifier and the product you purchased.
Diagnostics
If the app crashes or throws an unhandled error, anonymous diagnostic data may be sent to help us reproduce the bug. This includes the iOS version, device model, and a stack trace. It does not include the contents of your sessions.
On-device processing
The defining technical decision in WorkVoice is that the AI runs on your phone, not on a server. Speech recognition uses Apple's on-device SFSpeechRecognizer. Feedback generation uses Apple's Foundation Models framework on iOS 26 devices, which executes a 3-billion-parameter language model entirely within the secure enclave of your iPhone.
This is not a marketing claim — it is a structural property of the app. There is no API endpoint we could turn on later to start collecting your conversations, because no such code path exists. If you'd like to verify, you can put your iPhone in Airplane Mode and complete a full practice session offline.
"The audio buffer is discarded the moment the session ends. The transcript is stored locally on your iPhone — nowhere else."
How we use the data we do receive
The narrow categories above are used for the following purposes:
- To deliver the service. A subscription receipt is the basis on which we can confirm you are entitled to use the premium features.
- To fix what is broken. Diagnostics are read only when we are investigating a specific crash or regression.
- To respect Apple's platform rules. Some data flows through Apple's standard StoreKit and App Store Server APIs, which we do not control.
We do not use any of this information to profile you, sell to you more aggressively, or build advertising audiences. We do not run ads.
Subscription & billing
All purchases are processed by Apple through the App Store. We never see your credit card, banking details, or full Apple ID — only an opaque identifier confirming you have an active entitlement.
You can manage, pause, or cancel your subscription at any time in Settings → Apple ID → Subscriptions on your iPhone, or directly within WorkVoice via Settings → Manage Subscription. Cancellation takes effect at the end of the current billing period.
Your rights
Because nearly all of your information stays on your device, exercising privacy rights is unusually direct:
- Access. Open the app and you have full access — there is no separate copy held by us.
- Deletion. Delete the app, and the local database is removed by iOS along with it. To erase the subscription record on Adapty's side, write to us at the address in §12.
- Portability. A future export feature is on the roadmap; until then, please request export by email.
- Opt-out of diagnostics. iOS-level analytics can be disabled in Settings → Privacy & Security → Analytics & Improvements.
If you are a resident of the EU, the United Kingdom, California, or another jurisdiction with extended privacy rights, those rights apply in addition to the above and you can invoke them by emailing us.
Retention
Local session data lives on your device until you delete it manually or remove the app. Subscription records are retained by Adapty for the duration of your subscription plus a period required by Apple for refund and tax-audit purposes (typically up to seven years). Diagnostic data, if collected, is retained for ninety days.
Children
WorkVoice is intended for users sixteen years of age or older and is not designed for children. We do not knowingly collect data from children under thirteen. If you believe a child has used the app, contact us and we will assist.
International users
WorkVoice is operated from Azerbaijan. The on-device architecture means that the great majority of your data does not cross any border at all — it stays on your phone. The narrow categories that do flow through our subscription provider may be processed in the United States and the European Union under their standard agreements.
Changes to this policy
If we materially change how this policy works — for instance, if we add a feature that involves new data flows — we will update the version date at the top, and notify you in-app before the change takes effect. Past versions will be linked from this page.
Contact
This policy, like the app itself, is maintained by a one-person studio. Privacy questions, deletion requests, and general queries reach me directly at asif.safarov@digitup.az. I aim to reply within two business days.