01Who is responsible
David Smith, trading as VoiceIQ and based in California, United States, operates voiceiq.dev and is the controller of the personal information described in this policy. Contact support@voiceiq.dev with any privacy question or request.
02What we collect
| Category | Examples |
|---|---|
| Account | Username, password hash, optional recovery email and its verification status, pending email changes, account role, public user ID, sign-up and sign-in timestamps. |
| Profile | Profile picture, display name, tags and name effects, online presence, and messages you post in member chat. |
| Voice content | Uploaded recordings, model names and settings, your confirmation that you have the voice owner's permission, text you submit for speech, generated audio, saved history, favourites, selected voice, speed and volume settings. |
| Billing | Credit balances, usage and reservation records, payment transaction references, subscription status and billing periods, customer identifiers, fulfilment records. Card details are entered on Stripe's page and never reach our servers. |
| Referrals | Referral codes and links, which account referred which, sign-up and first-generation timestamps, eligibility checks and reward records. |
| Technical and security | Request logs, timestamps, network information, moderation and audit records. Our sign-up abuse control stores a keyed hash derived from your network address, not the address itself. |
| Support | Support tickets you open, including their subject, topic, messages and status, and anything else you send us when you ask for help. |
We do not ask for, and you should not send us, sensitive information such as government IDs, health details or payment card numbers. Voice recordings can be considered biometric data in some places; we use them only to build and run the model you asked for, as described below.
03Why we use it, and the legal basis
| Purpose | Legal basis where one is required |
|---|---|
| Running your account and the features you use | Performing our agreement with you. |
| Building voice models and generating speech | Performing our agreement with you. Where local law treats voice as biometric data, your consent, which you give when you confirm authorisation at model creation. |
| Fulfilling purchases and maintaining credits | Performing our agreement with you; legal obligations for payment records. |
| Sending verification and password-recovery email | Performing our agreement with you. |
| Preventing fraud, abuse and duplicate rewards | Our legitimate interest in keeping the service safe and fair. |
| Investigating errors and improving reliability | Our legitimate interest in operating the service well. |
| Responding to requests and legal duties | Legal obligation; legitimate interest. |
We do not use your recordings, text or audio to train general-purpose models for other customers, and we do not use your information for behavioural advertising. We do not make decisions about you using automated processing that has legal or similarly significant effects.
04What other members can see
Visible to signed-in members: username, display name, profile picture, role, join date, model count, public user ID, tags and name effects, whether you are online, and anything you post in member chat.
Models you submit to the public database may be reviewed and, if approved, listed for other members to use. Private models are restricted in the application, but staff and our service providers may process related records to operate the service. Do not put confidential information in public or community content.
Your recovery email address is never shown to other members. Staff-facing views may show a verified-email checkmark without the address. Masking an address in settings is a display convenience only: we and our providers still process the full address for authentication, email delivery, recovery and support. Saved history is available only through your own signed-in account and is never published. Referral participants can see their own reward status and counts, but the referral feature never discloses the other person's email address.
05Service providers and other disclosures
| Provider | What they do for us | What they receive |
|---|---|---|
| Fish Audio | Voice-model creation and speech generation | Your recordings, model settings and the text you generate |
| Supabase | Authentication and database | Account, profile, credit and community records |
| Vercel | Hosting and file storage | Request logs, uploaded files, generated audio |
| Resend | Account email delivery | Your email address and the message content |
| Stripe | Card payments and subscriptions | Payment details you enter on Stripe's page, under the Stripe Privacy Policy |
| Coinbase and blockchain data services | Exchange rates and transaction confirmation for crypto payments | Public transaction identifiers and amounts |
Each provider receives only what its function needs and is bound by its own privacy commitments. If our model-notification integration is enabled, model titles, identifiers, visibility and authorisation status are also sent to a private administrative Discord channel used by staff.
We may also disclose information when the law requires it, to address security or abuse, to protect the rights and safety of members and others, or as part of a business transfer, in which case the new operator must honour this policy. Providers may process information outside your country. Where the law requires safeguards for international transfers, such as standard contractual clauses, we rely on them. Ask us if you would like details of the safeguards relevant to your data.
06Cookies and browser storage
VoiceIQ itself sets no cookies. Sign-in sessions and preferences are kept in your browser's local storage, which stays on your device:
- your sign-in token, so you stay signed in between visits;
- light or dark theme, whether the online panel is open, the typing-sound switch, and which announcement you have already seen;
- unsent drafts, so a reload does not lose your text;
- on My Models, whether the Studio was open, cleared when the tab closes.
Payment-provider pages set their own cookies and security technologies. Referral links carry an invite code in the page address, which we use to attribute sign-ups. Blocking or clearing browser storage signs you out and may stop features working; it does not delete anything saved on our servers. We honour the Global Privacy Control signal where applicable law gives it effect.
07Direct cryptocurrency payments
When you pay with cryptocurrency we link the order, network, exact amount and the transaction ID you submit to your account, so we can verify the payment and prevent duplicate delivery. Transactions and wallet addresses are visible on public blockchains, and the operator of our receiving wallet can see transfers to it. We query Coinbase for exchange rates and blockchain data services for confirmations. Never send us private keys or recovery phrases; we will never ask for them.
08Retention and deletion
How long we keep things
| Data | Kept until |
|---|---|
| Account and models | You delete them or your account is deleted. |
| Generation history | By capacity, not time. Free 100 entries and 20 favourites; Plus 500 and 100; Premium 1,000 and 250; staff 1,000 with no favourite limit. Oldest non-favourited entries are removed first. |
| Chat messages | You or staff delete them, or your account is deleted. |
| Support tickets | Until your account is deleted or you ask us to remove them. Only you and VoiceIQ staff can read a ticket. |
| Payment and credit records | As long as needed for accounting, tax, dispute and fraud-prevention duties, typically several years. |
| Referral records | As long as needed to prevent duplicate rewards and resolve balance disputes. |
| Security and audit logs | A limited period appropriate to their purpose. |
Deleting your data
You can delete private models yourself in My Models. To delete your whole account and associated data, email support@voiceiq.dev from the address on your account. Public models and related records may need staff review first.
We aim to respond within 30 days, or sooner where the law requires. We may need to verify your identity, and we will explain any lawful refusal, necessary extension, or records we must keep. After a valid request we remove or de-identify your information from active systems unless retention is needed for a legal obligation, an open payment dispute, or a proportionate fraud or abuse-prevention purpose. We assess those exceptions individually and keep only what the purpose needs. Payment providers may retain transaction records under their own obligations.
09Your rights and choices
Depending on where you live, you may have the right to:
- access the personal information we hold about you and receive a copy;
- correct inaccurate information;
- delete your information, subject to the exceptions above;
- object to or restrict certain processing, or ask for portability of data you provided;
- withdraw consent where processing relies on it, without affecting earlier processing;
- complain to your local data-protection authority.
To exercise any of these, email support@voiceiq.dev. We may need to verify your identity and will explain any lawful limits. An authorised agent may make a request for you, subject to proof of their authority. We will never discriminate against you for exercising a privacy right. You can also edit your profile, change your recovery email and choose model-sharing options directly in the app.
10Regional notices
California
Where the California Consumer Privacy Act applies to our processing, you have the rights to know, access, correct and delete personal information, and to opt out of "sale" or "sharing" and limit the use of sensitive personal information. We do not sell or share personal information for cross-context behavioural advertising, and we do not use sensitive personal information for purposes that require a limit-use right. Operating in California alone does not mean every CCPA provision applies; rights and exceptions depend on the applicable law.
European Economic Area, United Kingdom and Switzerland
The legal bases in section 3 apply. You may lodge a complaint with your national supervisory authority. International transfers to our United States providers rely on the safeguards described in section 5. Where local law sets the age of digital consent above 13, the age in section 12 is read as that local age.
11Security
We protect information with access controls, encrypted connections, hashed passwords, staff audit logs and provider-level safeguards, and we limit staff access to what moderation and support need. No online system is completely secure. If a security incident affects your personal information in a way that creates a risk to you, we will notify you and any required authority as the law requires. Help us by using a strong, unique password and keeping your recovery email verified.
12Children
VoiceIQ is intended for people aged 13 and over. Children under 13 must not create an account or submit personal information, and we do not knowingly collect personal information from them. If you believe a child under 13 has provided personal information, contact support@voiceiq.dev so we can investigate and take appropriate steps, including account closure and deletion where required. Members aged 13 to 17 use VoiceIQ with a parent or guardian's agreement, as set out in the Terms of Service.
13Changes to this policy
We update this policy when our practices change. The effective date at the top always shows the current version, and we give additional notice, for example by announcement or email, when a change is material or the law requires it.