Welcome to TapVoice
TapVoice is a privacy-first Apple Watch app that lets you ask questions and get instant voice responses. We believe your privacy is fundamental, and we've built TapVoice with this principle at its core.
What Information We Collect
Good news: We collect minimal information, and none of it is personally identifiable.
No voice recordings
Your speech is processed locally and never stored
No personal data
We don't know who you are
No usage analytics
We don't track how you use the app
No cookies or tracking
We don't use any tracking technologies
No account creation
No login required
Information We Do Collect
App usage data
Basic statistics like how many questions you ask (stored locally on your device)
Language preference
Your chosen language for speech recognition (stored locally)
Subscription status
Your current plan level (managed by Apple)
How Your Data is Protected
Local Storage Only
All your data stays on your Apple Watch and iPhone. We use:
- Core Data for question history (stored locally)
- UserDefaults for app settings (stored locally)
- No cloud storage - Nothing goes to our servers
Voice Processing
When you speak to TapVoice:
- Your voice is processed locally on your Apple Watch and converted to text
- Text is sent to Google Gemini API for fast response generation (3-4 seconds)
- OpenAI API creates premium voice audio from the response (2-3 seconds)
- Voice recordings are not stored by TapVoice
- Your questions are not saved to any cloud service by TapVoice
Legal Basis for Processing (GDPR)
For EU users, we process your data based on:
- Legitimate Interest - To provide AI responses to your questions
- Consent - When you choose to use voice features and web search
- Contract Performance - To manage your subscription via Apple App Store
Data Controller: Miika Kettunen, Finland
Contact: tapvoiceai@gmail.com
Third-Party Services
Google Gemini API
- We use Google's Gemini 2.5 Flash model for ultra-fast text response generation
- Your question text is sent to Google Gemini for processing
- Question text may trigger real-time web searches via Google's grounding API
- No search history is stored on our servers
- Only your question text (converted from voice on-device) is sent to Google
- Google's privacy policy applies to this data
- We don't store your questions on our servers
OpenAI API (Voice Generation)
- We use OpenAI's TTS (text-to-speech) API for premium voice responses
- Only the AI-generated answer text is sent to OpenAI for voice synthesis
- Your original questions are not sent to OpenAI
- OpenAI's privacy policy applies to answer text processed for voice generation
- We don't store voice recordings on our servers
OpenAI Privacy Information
Google Gemini Data Processing Agreement (DPA)
CRITICAL: Only text is sent to Google Gemini for AI responses.
GDPR Compliance: We use Google Cloud's Gemini API with EU data processing compliance.
- Voice Processing: Your voice is processed locally on your Apple Watch and converted to text
- Data Transfer: Only the converted text of your question is sent to Google Gemini
- Data Controller: TapVoice (Miika Kettunen) determines the purposes for processing your question text
- Data Processor: Google processes only your question text on our behalf according to our instructions
- Security Standards: Google Cloud maintains ISO 27001, SOC 2/3 certification with encryption at rest and in transit
- Data Retention: Google may retain inputs/outputs for abuse detection, then securely deletes them
- No Training Use: Your question text is not used to train Google's models
- International Transfers: Text data transfers use Google Cloud's GDPR compliance mechanisms including SCCs
Reference: Google Cloud Data Processing and Security Terms - https://cloud.google.com/terms/data-processing-addendum
OpenAI Data Processing Agreement (DPA)
CRITICAL: Only AI-generated answer text is sent to OpenAI for voice synthesis.
GDPR Compliance: We have implemented OpenAI's Data Processing Addendum (DPA) to ensure EU compliance.
- Voice Processing: Your voice is processed locally on your Apple Watch and converted to text
- Data Transfer: Only AI-generated answer text (not your questions) is sent to OpenAI for voice generation
- Data Controller: TapVoice (Miika Kettunen) determines the purposes for processing answer text
- Data Processor: OpenAI processes only answer text on our behalf for voice synthesis
- Security Standards: OpenAI maintains SOC 2 Type 2 certification with AES-256 encryption at rest and TLS 1.2+ in transit
- Data Retention: OpenAI may retain text inputs/outputs for up to 30 days for abuse detection, then securely deletes them
- No Training Use: Answer text is not used to train OpenAI's models
- International Transfers: Text data transfers to US use Standard Contractual Clauses (SCCs) for GDPR compliance
DPA Reference: OpenAI Data Processing Addendum (February 15, 2024)
Apple Services
- App Store - Handles subscription payments
- WatchConnectivity - Syncs data between your iPhone and Apple Watch
- Apple's privacy policies apply to these services
Subscription and Payments
Payment Processing
- All payments are processed by Apple App Store
- We never see your payment information
- Apple handles all billing and subscription management
- Subscription data is managed by Apple's systems
Available Plans
- Free Trial - 10 questions total (lifetime limit)
- Starter - 100 questions/month (€2.99/month)
- Pro - 300 questions/month (€6.99/month)
- Max - 500 questions/month (€12.99/month)
Your Rights
GDPR Rights (EU Users)
If you're located in the European Union, you have the following rights under GDPR:
- Right to Access - Request information about what personal data we process
- Right to Rectification - Request correction of inaccurate personal data
- Right to Erasure - Request deletion of your personal data
- Right to Restrict Processing - Request limitation of processing your data
- Right to Data Portability - Request your data in a structured, machine-readable format
- Right to Object - Object to processing of your personal data
- Right to Withdraw Consent - Withdraw your consent at any time
Important: Since TapVoice stores all data locally on your device and doesn't collect personally identifiable information, exercising most of these rights simply involves deleting the app or clearing its data in iOS Settings.
Access and Control
- Delete your data - Clear app data in iOS Settings
- Export your data - Contact us for a copy of your local data
- Opt out - Stop using the app anytime
- GDPR complaints - Contact your local data protection authority if needed
Data Retention
- Local data - Stored until you delete the app
- No server data - We don't store anything on our servers
- Apple data - Subject to Apple's retention policies
Children's Privacy
TapVoice is not intended for children under 13. We don't knowingly collect information from children under 13.
Changes to This Policy
We may update this Privacy Policy occasionally. We'll notify you of any changes by:
- Posting the new policy in the App Store
- Updating the "Last updated" date above