CapyTalk Privacy Policy
Last updated: 9 October 2026
In one paragraph: your voice never leaves your iPhone. So that the AI characters can reply and your sentences can be checked, what you say is sent as text to our server and on to Google's Gemini. Our server does not store conversation content. CapyTalk has no accounts and no ads, and the current version contains no analytics or tracking tools.
This policy covers the iPhone app CapyTalk, developed by the Taiwan-based team at Aicolab LLC (“we”). It was written against how the app and server actually work. If the way data flows changes, we will update this page first.
1. At a glance
| Data | Where it goes | Why | How long it is kept |
|---|---|---|---|
| Your voice | Nowhere. It stays on your iPhone, where the built-in speech recogniser turns it into text on the device | To turn what you say into text | Not kept. The app does not save recordings |
| Conversation text: each line you say or type, the recent lines of that conversation, plus the lesson, languages and level | Our server (hosted on Cloudflare), then Google's Gemini API. Some requests pass through a relay machine we operate in Taiwan | So the character can reply, and to produce corrections, notes and translations | Not kept by us. Google does not use it to improve its products, but keeps it for a limited period to detect abuse (currently published as 55 days) |
| Proof of purchase: the app purchase record signed by Apple | Our server | To confirm you bought the app and issue the app a pass that is valid for 24 hours | Discarded after verification. Only a salted hash remains |
| Usage counts: that hash, with daily and monthly conversation turns and translation counts | Our server database (Cloudflare D1) | To apply the daily and monthly limits | No automatic deletion period at present |
| Connection information, such as your IP address | Handled by Cloudflare while delivering the request | To deliver requests and block abuse | We neither read nor store it, and we keep no per-request logs that would contain it |
| Progress, name or nickname, conversation history, streaks, stickers, settings | Nowhere. They stay on your iPhone (and are included in your own iPhone backups) | To make the app work | Until you delete the app. Full conversations are kept for the 200 most recent only |
2. Data that stays on your iPhone
The following is stored only in the app's own folder and is never sent to us:
- Progress and stars for each lesson, your practice language, level and other settings
- The name or nickname you enter during setup (optional)
- A record of your 200 most recent conversations: what both sides said, the corrected sentences and notes, the time and length
- Totals (conversations, sentences, minutes talking, fixes), the dates you practised (used for streaks), and the stickers you earned
This data is included in your own iPhone backups (iCloud or a computer). That is Apple's backup feature and is controlled by your iPhone settings. The app has no cloud sync of its own. Deleting the app deletes this data.
Your name or nickname is only used to fill in example sentences in the lessons (for example “My name is …”). It is stored on your iPhone, but if you say that sentence in a conversation it is sent like any other conversation text (see section 4).
3. Microphone and speech recognition
The first time you use your voice, iOS asks for permission to use the microphone and speech recognition. The app only listens while you are speaking after you tap the mic.
The audio is handed to iPhone's built-in speech recogniser and turned into text on the device. We restrict recognition to on-device only: your audio is not sent to our server, and it is not sent to Apple's servers for recognition. The app does not save recordings to a file.
If your iPhone does not support on-device recognition for a language, the app asks you to type instead. It does not switch to uploading audio. You can decline both permissions and type throughout, and you can turn them off at any time in iPhone Settings.
The characters' voices are produced on the device by iPhone's built-in speech synthesis. No text is sent anywhere in order to generate speech.
4. AI conversations: where the text goes
Each time you send a line, the app sends the following to our server:
- The text of that line (the speech recognition result, or what you typed)
- The recent content of that conversation, up to 16 lines, both the character's and yours
- The lesson, your practice language, interface language and chosen level, and the goals already met in that conversation
- A pass that is valid for 24 hours (see section 5)
Two other features also send text. “How do I say…?” sends the sentence you type in your own language. “Show translation” sends the character's line you tapped.
The server adds the scene and character settings for that lesson and passes the text to Google's Gemini API to produce a reply, correction, note or translation, then returns the result to the app.
The route it takes
Our server runs on Cloudflare. Google rejects requests from data centres in some regions. When that happens, the request is forwarded to Google by a relay machine that we operate ourselves in Taiwan. The relay only forwards requests and does not store their content; its log records only the time, result code and duration of each forwarded request.
What Google receives and how it is handled
Google receives the conversation text and the lesson settings. Requests come from our server or relay, not directly from your iPhone, and we do not give Google your name, email address, Apple Account or any device identifier (we do not have them in the first place).
We use the paid service of the Gemini API. Under Google's Gemini API Additional Terms of Service, prompts and responses sent through the paid service are not used to improve Google's products.
Google logs prompts and responses and keeps them for a limited period, solely to detect and prevent violations of its use policies. Google's published guidance currently gives this period as 55 days, during which only authorised Google staff may look at the data to review abuse. The period is set by Google, and we cannot delete content on your behalf once it has been sent.
What our server keeps
It does not store conversation content. The database holds only the counts described in section 5. Server logs record technical information only: the request path, status code and error code, and whether each conversation turn succeeded and how long it took. They contain no conversation content and nothing that identifies you. When the AI service fails, the error message it returned is logged. These logs are kept for up to 7 days.
Please do not say sensitive details such as ID numbers, addresses, phone numbers or card numbers in a conversation. Conversations are for practice, and the characters do not need your real personal details.
5. Proof of purchase and usage counts
CapyTalk has no accounts. To confirm that the person using AI conversations bought the app, the app sends the purchase record signed by Apple to our server. It contains the app's identifier, the purchase date, the app version, verification data that Apple uses to tie the record to your device, and a transaction identifier that stands for “this Apple Account bought this app”. It does not contain your name, email address or payment details.
After verifying Apple's signature, the server turns the transaction identifier into a salted hash and discards the record itself. Everything after that refers only to the hash, and we cannot use it to find out who you are. The server returns a pass that is valid for 24 hours; the app keeps it in memory only and uses it for later requests.
The only things stored alongside that hash in the database are your daily and monthly conversation turns and daily translation counts, used to apply the usage limits.
There is also a site-wide daily spending total that is not tied to anyone.
6. What we don't do
- No registration, no accounts, no sign-in
- We do not collect your name, email address, phone number, location, contacts or photos
- We do not upload or store your audio
- No ads and no advertising SDKs
- The current version contains no analytics or tracking tools and does not track you across other apps or websites, so you will not see a tracking permission prompt
- We do not sell your data or use it for marketing
If we add usage statistics later, we will update this page before that version is released.
7. Third parties that help us provide the service
- Apple: App Store purchases and refunds; speech recognition and speech synthesis on your iPhone (both run on the device). Apple Privacy Policy
- Cloudflare: hosts our server and database. Cloudflare Privacy Policy
- Google: the Gemini API, which generates the characters' replies, corrections, notes and translations. Google Privacy Policy
When the app connects to our server, Cloudflare handles your IP address as any internet service does. We have configured the server not to keep per-request logs (the kind that include IP addresses and headers), and our code neither reads nor stores your IP address.
8. Retention and deletion
- Data on your iPhone: until you delete the app. Full conversations are kept for the 200 most recent only; older ones remain as totals.
- Usage counts on our server: no automatic deletion period is set at present. They contain no conversation content.
- Server logs: up to 7 days, then deleted automatically.
- Text sent to Google: kept by Google for a limited period to detect abuse (currently published as 55 days). The period is set by Google.
To delete the data on your iPhone, delete the app.
The counts on our server are tied only to a hash. We hold nothing that links to your name, email address or Apple Account, so at present we cannot find and delete one person's counts from an email request alone. If you have such a request, write to us and we will explain what is possible.
9. Where data is processed
Our team and the relay machine are in Taiwan. Cloudflare and Google operate data centres in many regions, so your requests may be processed outside your own country.
10. Children and age
CapyTalk is not designed for children, and we do not knowingly collect personal data from children. AI conversations use Google's Gemini API, and under Google's terms that service is for users aged 18 or over. If you believe a child has provided personal data to us, please contact us.
11. Your rights
Depending on where you live (for example under Taiwan's Personal Data Protection Act or the EU's GDPR), you may have the right to access, correct or delete your personal data, or to object to or restrict our processing. You can:
- Turn off microphone and speech recognition permissions in iPhone Settings; the app switches to keyboard input
- Delete the app, which deletes all the data on your device
- Write to us with any other request or question
We process the data above because it is necessary to provide the features you bought (conversation text, proof of purchase) and on the basis of our legitimate interest in preventing abuse and controlling costs (usage counts). If you are in the European Economic Area, the United Kingdom or Switzerland, you may also complain to your local data protection authority.
12. Security
Connections between the app and our server are encrypted (HTTPS). The purchase identifier is stored only as a salted hash, and the server does not store conversation content. No system can be guaranteed to be completely secure. If an incident affecting your data occurs, we will explain it on this page.
13. Changes and change log
When this policy changes, we will update this page and the date at the top.
- 9 October 2026: removed the description of offer codes. The released version does not include that feature, and the server does not assign a code to anyone.
- 8 October 2026: first version, written against the app and server of CapyTalk test build 0.1.0.
14. Contact
If you have any questions about this policy, email wupeiwen2001@gmail.com. Responsible entity: Aicolab LLC (team based in Taiwan).