WorkVoice

Document №01 · The Policy

Privacy
Policy

Your conversations never leave your phone. The rest of this document explains, in plain English, what that promise actually entails.

Effective 5 May 2026 Version 1.0 Reading time: 6 min

In one paragraph

WorkVoice is built so that the things you say into the microphone — the half-finished sentences, the rehearsed answers, the wobble before a job interview — stay on your device. We do not record audio to our servers. We do not transmit transcripts. The only data we receive is the kind that lets the App Store work and the app keep running: a subscription receipt, a crash log when something breaks, a pseudonymous identifier so we can tell one anonymous user from another. That is the entire arrangement.

What we collect

WorkVoice collects three categories of information, and nothing outside them.

Audio & transcripts

When you use a practice session, your voice is captured by Apple's SFSpeechRecognizer and converted to text on your device. The audio buffer is discarded the moment the session ends. The resulting transcript is stored locally in SwiftData on your iPhone — nowhere else. We never see it. We have no servers configured to receive it.

Subscription & receipt data

If you subscribe, the App Store generates a transaction receipt and shares it with our subscription provider, Adapty, so we can verify that your subscription is active and unlock premium features. This receipt does not contain your name, email, or payment information — only an opaque identifier and the product you purchased.

Diagnostics

If the app crashes or throws an unhandled error, anonymous diagnostic data may be sent to help us reproduce the bug. This includes the iOS version, device model, and a stack trace. It does not include the contents of your sessions.

What we do not collect. Real names, email addresses, contacts, photos, location, browsing history, advertising identifiers, or anything from other apps on your device.

On-device processing

The defining technical decision in WorkVoice is that the AI runs on your phone, not on a server. Speech recognition uses Apple's on-device SFSpeechRecognizer. Feedback generation uses Apple's Foundation Models framework on iOS 26 devices, which executes a 3-billion-parameter language model entirely within the secure enclave of your iPhone.

This is not a marketing claim — it is a structural property of the app. There is no API endpoint we could turn on later to start collecting your conversations, because no such code path exists. If you'd like to verify, you can put your iPhone in Airplane Mode and complete a full practice session offline.

"The audio buffer is discarded the moment the session ends. The transcript is stored locally on your iPhone — nowhere else."

How we use the data we do receive

The narrow categories above are used for the following purposes:

  • To deliver the service. A subscription receipt is the basis on which we can confirm you are entitled to use the premium features.
  • To fix what is broken. Diagnostics are read only when we are investigating a specific crash or regression.
  • To respect Apple's platform rules. Some data flows through Apple's standard StoreKit and App Store Server APIs, which we do not control.

We do not use any of this information to profile you, sell to you more aggressively, or build advertising audiences. We do not run ads.

Sharing & third parties

Three parties are involved in keeping WorkVoice running:

Apple

Apple operates the App Store, the StoreKit subscription system, and the iOS frameworks (Speech, Foundation Models) that the app depends on. Their privacy policy governs the data flowing through those systems and is available here.

Adapty

Adapty is our subscription infrastructure provider. They process subscription receipts to determine whether your account is active. Their privacy policy is available here.

Sentry (optional, future)

If we add crash reporting in a future release, it will be Sentry, with their default settings to scrub personally identifying values from stack traces. We will update this document if and when that happens.

That is the complete list. We do not share data with advertisers, data brokers, or analytics platforms.

Subscription & billing

All purchases are processed by Apple through the App Store. We never see your credit card, banking details, or full Apple ID — only an opaque identifier confirming you have an active entitlement.

You can manage, pause, or cancel your subscription at any time in Settings → Apple ID → Subscriptions on your iPhone, or directly within WorkVoice via Settings → Manage Subscription. Cancellation takes effect at the end of the current billing period.

Your rights

Because nearly all of your information stays on your device, exercising privacy rights is unusually direct:

  • Access. Open the app and you have full access — there is no separate copy held by us.
  • Deletion. Delete the app, and the local database is removed by iOS along with it. To erase the subscription record on Adapty's side, write to us at the address in §12.
  • Portability. A future export feature is on the roadmap; until then, please request export by email.
  • Opt-out of diagnostics. iOS-level analytics can be disabled in Settings → Privacy & Security → Analytics & Improvements.

If you are a resident of the EU, the United Kingdom, California, or another jurisdiction with extended privacy rights, those rights apply in addition to the above and you can invoke them by emailing us.

Retention

Local session data lives on your device until you delete it manually or remove the app. Subscription records are retained by Adapty for the duration of your subscription plus a period required by Apple for refund and tax-audit purposes (typically up to seven years). Diagnostic data, if collected, is retained for ninety days.

Children

WorkVoice is intended for users sixteen years of age or older and is not designed for children. We do not knowingly collect data from children under thirteen. If you believe a child has used the app, contact us and we will assist.

International users

WorkVoice is operated from Azerbaijan. The on-device architecture means that the great majority of your data does not cross any border at all — it stays on your phone. The narrow categories that do flow through our subscription provider may be processed in the United States and the European Union under their standard agreements.

Changes to this policy

If we materially change how this policy works — for instance, if we add a feature that involves new data flows — we will update the version date at the top, and notify you in-app before the change takes effect. Past versions will be linked from this page.

Contact

This policy, like the app itself, is maintained by a one-person studio. Privacy questions, deletion requests, and general queries reach me directly at asif.safarov@digitup.az. I aim to reply within two business days.

A note on style. This policy is written in plain language on purpose. If anything reads ambiguously, that is a defect — please tell me, and I will rewrite it.