Privacy policy
Molvi records your voice. That is the whole product, so this page is specific about where those recordings go rather than generic about “your data”.
The short version. We keep the account you sign in with, your recordings, their transcripts and the reports built from them, and your subscription status. Recordings are transcribed and analysed by named third-party AI providers. No human at Molvi listens to your recordings as part of running the service, they are never shown to other users or used in marketing, and nothing is sold to anybody. We do not track you across other apps or websites. Delete your account in the app, under Profile → Delete account, and your recordings and reports go with it.
1. Who is responsible
The data controller is Molvi. Questions, requests and complaints go to hello@molvi.app.
2. What we collect
When you sign in
You sign in with Apple. From Apple we receive a stable account identifier, an email address (a private relay address if you chose “Hide My Email”), and your name if you chose to share it. We use the identifier and email to recognise you on your next sign-in, the name for the greeting in the app, and your device's language setting to pick the app's language the first time.
After sign-in the app keeps a session key in your device's secure storage (the iOS Keychain) so you do not have to sign in again. We never receive your password.
What you record
- the audio of each take, captured only while you are recording;
- the transcript produced from it;
- the report built from that transcript: highlights, notes, measures;
- timings that come with a take, such as its length and where the long pauses fell.
Subscription
Subscriptions are bought through the App Store. We receive your plan, whether an introductory price applies, when the current period ends, and purchase identifiers, via our subscription service RevenueCat. We never receive or store your payment details: Apple handles the payment.
Product analytics and diagnostics
Which screens were opened, which exercise was started or finished, how far a screen was read, and technical properties such as platform and app version. On our servers we also keep technical logs of requests and of each step of an analysis, so that we can find and fix what breaks.
3. What we deliberately do not collect
These are engineering decisions in the code, not intentions:
- No tracking. Molvi does not use the advertising identifier, does not ask to track you, and does not link your data with other companies' data for advertising.
- No automatic capture of what you tap. The usual analytics default records the text of whatever you tapped. In this app that text is fragments of your speech analysis, so automatic capture is switched off and every event is named by hand.
- No personal data in analytics properties. What describes a person to the analytics tool is language, plan and platform, not a name and not an email. One exception you choose: if you cancel or delete your account and type a reason into the optional “Something else” field, that text is stored with the event.
- No session recordings of your screen.
- No advertising trackers, no third-party ad pixels, no data sold or shared for marketing.
4. Why we are allowed to hold it
If you are in the EU, the UK, or somewhere with comparable law, the legal bases are:
- Performing our contract with you: for your account, recordings, transcripts, reports and subscription. Without these there is no service.
- Our legitimate interest: for product analytics, diagnostics and security logging, kept narrow as described above.
- A legal obligation: for billing and tax records.
- Your consent: for anything beyond the above, such as using one of your takes as an example. We ask, and no is a complete answer.
Voice recordings are personal data. They are not used to identify you biometrically: Molvi analyses what and how something was said, and never builds a voiceprint to recognise who is speaking.
5. Who else processes it
Molvi is a small operation and stands on other companies' infrastructure. Each one below acts as our processor, under contract, and only for the purpose named.
| Who | What for | What it sees |
|---|---|---|
| Apple | Sign in with Apple; App Store payments | Your Apple account and your purchase |
| RevenueCat | Managing App Store subscriptions | Your Molvi account number, purchase history, basic device and app data |
| Soniox | Speech-to-text | The audio of a take |
| OpenAI | Building the analysis | The transcript of a take |
| Google (Gemini) | Live prompts during timed exercises | Short fragments of audio from the take in progress |
| Cloudflare (R2) | Audio storage | Stored audio files |
| Supabase | The database | Your account, transcripts, reports and subscription status |
| Northflank | Running the backend | Everything the backend handles, as infrastructure |
| PostHog (EU) | Product analytics | Events as described in sections 2 and 3 |
| Pydantic (Logfire) | Error and performance monitoring | Technical logs of requests and analysis steps, which can include transcript text |
6. Where it is held, and for how long
Our servers and databases are hosted with the providers above; analytics are on PostHog's EU infrastructure. Some processors operate outside your country, so data may be transferred internationally, under the standard contractual protections those providers offer.
- Transcripts and reports are kept for as long as your account exists, because reopening an old report is a feature you are paying for. The audio file of a take may be removed sooner: the report is built from the transcript and does not need it.
- Billing records are kept as long as tax and accounting law requires.
- Analytics events are kept for up to 12 months.
- De-identified usage statistics — which exercises were done, when, and their numeric scores — stay after an account is deleted, with nothing left that says who you are. They are how we find out what in Molvi works.
- Texts you choose to leave. When you delete your account you can tick “Help Molvi: keep the texts, unnamed”. It is off unless you tick it. Then the transcripts and reports of your takes are kept after deletion, with names, places, organisations, contacts, dates and identifying numbers replaced by placeholders, and with no link to you or your account: no account ID, and only the month of each take. We use them to improve how Molvi analyses speech. Audio is erased either way. Because nothing ties these texts to you any more, we cannot find them later to delete them on request.
7. Your rights
You can ask us to show you what we hold, correct it, export it, delete it, or stop a particular use of it. Write to hello@molvi.app from the email address you sign in with, and we will answer within 30 days.
Deleting your account: in the Molvi app it is Profile → Delete account. We sign you out on every device and erase your recordings, transcripts, reports and profile. An App Store subscription is not cancelled by this: Apple bills it until you turn it off in your device's Settings → your name → Subscriptions, and the app reminds you before you confirm. What stays is what this page already names: billing records, for as long as the law requires, and de-identified usage statistics — plus the unnamed texts, only if you tick the box on the delete screen (section 6).
If you are in the EU or the UK you may also complain to your local data-protection authority.
8. Children
Molvi is not for children. See section 3 of the terms for the age rules. If we learn we are holding a child's recordings without the right consent, we delete them.
9. Security
Traffic is encrypted in transit. Audio sits in private object storage, reachable only through short-lived signed links. The session key on your device is kept in secure storage and can be revoked by signing out or deleting the account. Access to production systems is limited to the people who operate them. No system is perfect; if a breach affects you, we will tell you and the relevant authority as the law requires.
10. Changes
If we change this policy in a way that affects you, we will tell you in the app or by email before it takes effect. The date at the top always shows the current version.
11. Contact
Email: hello@molvi.app
molvi