Vozport — Privacy Policy
PortuguêsLast updated: September 29, 2026
1. Who is responsible (data controller)
Vozport is provided by 68.216.024 Victor Rosa Lima (MEI), Brazilian company registration (CNPJ) 68.216.024/0001-16, address Rua João Antônio Morato do Amaral, 225, Santa Rita, Piracicaba/SP, CEP 13423-258, Brazil ("we"). Privacy contact (also for the data protection officer role under the LGPD): contato@vrosa.com.br.
2. Data we process and why
- Your speech and typed text (to translate). Each spoken segment (up to 60 seconds; longer speech is split automatically) or typed text (up to 500 characters) is sent to our server and, through OpenRouter, to AI providers for speech recognition, translation and synthetic voice (section 4). It is processed in memory only to produce the translation and is discarded after the response. We do not store audio, transcripts or translations on our servers or in our logs, unless you turn on "Help improve the AI" (section 3); the only exception is the voice cache below.
- Voice cache (phrases many people say). To answer faster, when several different people ask for exactly the same short translated phrase, we may keep the synthesized voice of that phrase and reuse it for everyone. A phrase is only kept after at least 3 different people (devices) have produced it, and the stored audio is linked to no one: we do not record who said it, and the phrase is found only through a keyed code (HMAC). Phrases with data that identifies or allows contacting someone are left out: long numbers (any run of 3 or more digits, or 4 or more digits in total — such as phone, document, card or booking numbers), e-mail addresses, links and @handles, as well as long texts. Short numbers (a table, a time) and names only get in if the exact same phrase comes from at least 3 different people, so a detail of a single person does not. Before a phrase is kept, it is also checked by an AI classifier (Jev, from TypeSafe, through OpenRouter), which receives only the text of that phrase — never who said it — and answers whether it could identify or locate a person; if it could, or if the check fails, the phrase is not kept. To count different people we keep, for up to 30 days, keyed counters that do not reveal who they are. So that a thumbs-down on the voice can remove a bad audio, the technical link between a translation and the cached phrases used in it is kept for 30 minutes only. The audio is deleted automatically after 75 days without use, and after at most 180 days in any case.
- Conversation context. Your conversation history stays on your device (you can clear it in Settings). To keep the translation consistent, up to the last 6 exchanges are sent along with each request and are not stored.
- Anonymous ID. There are no accounts. When you install the app, RevenueCat creates a random anonymous ID. We use it to know whether you have a subscription, to count your usage and to link the usage statistics. It does not contain your name, e-mail or phone number.
- Device identifier (fraud prevention). To count the free phrases per device (so that reinstalling the app does not reset them), the app sends a device identifier: on Android, the Android ID (a number specific to this app on your device); on iPhone/iPad, a random identifier that the app saves in the device's Keychain. Our server keeps only a keyed hash of it, never the identifier itself. It is not used for advertising or statistics and is not shared.
- IP address. Used for security and to apply limits (per-minute limits and a daily limit of free phrases per network, against automated abuse) and, in the usage statistics, to estimate your approximate location (country/city). The limit counters keep only a keyed hash of the address, and our application logs do not record it.
- Technical data. Platform, app version, the languages and mode you chose, response times, errors and the AI models used — never the content.
- Subscription. RevenueCat receives the anonymous ID and the subscription status and history from Apple or Google (product, dates, trial, renewal) to unlock the app. Payment is handled by Apple or Google: we never see your name, e-mail or card.
- Usage statistics (can be turned off). Sent to PostHog, linked to the anonymous ID: app events (e.g. screens viewed, buttons tapped with all text masked, translation completed, response times, errors, purchase steps), device and app information (device type, operating system, app version, language, time zone, screen orientation) and approximate location derived from the IP address. On a sample of app sessions, a session replay records the screens with all text and fields masked and the conversation, full-screen and typing areas blocked. Statistics never contain audio, transcripts, translations or typed text. To stop them (in the app and on our server): Settings › Privacy and data › "Send anonymous usage stats".
- Data saved on your device. Your settings, conversation history, usage counters and the statistics identifier are saved on the device. The app also keeps on your device the audio and text of recent translations, to play them again faster and offline; you can delete them in Settings, and "Delete my data" deletes them too. They are removed when you clear the conversation or uninstall the app (the Keychain identifier on iPhone/iPad may remain on the device).
- Messages to us. If you write to us, we use your e-mail address and message only to answer you.
3. "Help improve the AI" (optional, off by default)
- What is saved: only if you turn it on, after each successful translation we save the audio you sent and a record with the transcript, translation, languages, mode, AI models used, response times, app version, platform, your anonymous ID and the version of your consent.
- Why: to evaluate and train our translation and speech AI models. We do not sell this data.
- Where: in object storage from Tigris Data on Fly.io's infrastructure (United States), accessible only to us.
- For how long: until you delete it, and at most 3 years. We also keep a record of your choice (version, date and platform of the consent) to prove it.
- Bonus: while it is on, your daily usage limit is 10% higher (in the free plan, 28 free phrases instead of 25). Saying no does not change anything else.
- Other people: recordings may include the voice of the person you are talking to. Only turn it on if they agree.
- Withdraw and delete: turn it off at any time in Settings › Privacy and data (nothing new is saved after that). "Delete my training data" withdraws your consent and deletes everything saved (audio and records). The app keeps working normally.
4. Service providers (processors)
- OpenRouter (United States): routes each request to the AI providers.
- AI providers, through OpenRouter: Google (translation and some voices), Fish Audio (voice), xAI (speech recognition and some voices), NVIDIA, Deepgram, OpenAI and Alibaba Cloud/Qwen (speech recognition, depending on the language), and infrastructure providers that host open models (such as Gemma), chosen by the lowest response time; and TypeSafe (Jev), which checks whether a phrase could identify someone before it enters the voice cache (section 2). They process the content only to produce the result, under their own terms, which may include temporary retention for security and abuse prevention. Some voices use free variants offered by the provider, whose terms may allow the provider to use the text to be spoken (the translation) to improve its own services. The list may change as models change; this page will be updated.
- Speechify (United States): synthetic voice for part of the translations, called directly by our server (not through OpenRouter); it receives only the text to be spoken, under the same conditions as the providers above.
- RevenueCat (United States): subscription management.
- Apple and Google: payments and subscriptions, under their own privacy policies.
- PostHog (United States): usage statistics.
- Fly.io (United States): server hosting; Upstash (via Fly.io): temporary counters, cache and consent records; Tigris Data (via Fly.io): storage for "Help improve the AI" and for the voice cache.
We do not sell or rent personal data, do not share it for advertising, do not use advertising identifiers (IDFA/AAID) and do not track you across other apps or websites.
5. How long we keep data
- Audio and text for translation: only while the request is being processed (seconds).
- Conversation history: only on your device, until you clear it or uninstall the app.
- Limit counters: per-minute counters for about 1 minute; daily counters (including the per-network free-phrase limit) for about 36 hours; free-phrase counters (per anonymous ID and per device hash) until about 13 months after the last use.
- Cached subscription status: up to 24 hours.
- Voice cache: the synthesized audio of a repeated phrase is deleted after 75 days without use (at most 180 days in any case); the keyed counters of different people expire after 30 days; the link between a translation and the cached phrases it used, after 30 minutes.
- Technical metadata of each translation, for your ratings (models, languages, timings, estimated cost, plan; no content): 7 days — only if usage statistics are on.
- Usage statistics: up to 24 months; session replays: up to 90 days.
- "Help improve the AI" data: until you delete it, and at most 3 years; the consent record, for as long as needed to prove your choice.
- Application logs (pseudonymous ID and technical data, no content and no IP): a few days.
- Support messages: for as long as needed to answer you and meet legal obligations.
6. International transfers
The providers above may process data outside your country, mainly in the United States. We rely on the safeguards allowed by the LGPD (such as standard contractual clauses) and the GDPR (such as the EU Standard Contractual Clauses).
7. Legal bases
Performance of the contract (translating, providing the free plan and the subscription), legitimate interests (security, fraud and abuse prevention — including the device identifier and IP address — and product statistics, which you can turn off at any time), consent ("Help improve the AI", which you can withdraw at any time) and compliance with legal obligations.
8. Your rights (LGPD / GDPR)
You may ask for confirmation and access, correction, anonymisation, blocking or deletion, portability, information about the entities we share data with, withdrawal of consent and objection, and you may complain to the data protection authority (ANPD in Brazil, or your EU/EEA authority). Many of these you can do yourself in the app: turn off statistics, delete the "Help improve the AI" data and clear the conversation. For anything else, write to contato@vrosa.com.br. Because there is no account, include the anonymous ID shown in the app (Settings › About) so we can find your data. We answer within the legal deadlines (15 days under the LGPD; one month under the GDPR).
9. Security
Encrypted connections (HTTPS/TLS) only, short-lived access tokens, identifiers stored as keyed hashes, rate limits, and no content in our logs.
10. Children
The app is not directed to children under 13 and we do not knowingly collect their data. If you believe a child has used the app, write to us and we will delete the related data.
11. Changes
We will update this page and the date above when this policy changes, and tell you in the app about material changes.
12. Contact
68.216.024 Victor Rosa Lima (MEI), Brazilian company registration (CNPJ) 68.216.024/0001-16, address Rua João Antônio Morato do Amaral, 225, Santa Rita, Piracicaba/SP, CEP 13423-258, Brazil — contato@vrosa.com.br