OVOZ · LEGAL & SUPPORT
Privacy notice — Ovoz
Effective: 2026-10-09. The operator is Burhan Çalık, based in Türkiye. Contact: [email protected].
You can record and listen without creating an account. A random Supabase identifier and session distinguish a connected guest. Where enabled, Google or Apple sign-in links your progress and purchases to an account; the authentication provider may supply an identifier, name and email address, including an Apple relay address. We do not receive your Google or Apple password. We do not ask for your candidate number or exam certificate. Clearing app data can remove a guest session and local history.
Device data: recordings, drafts, unfinished Mock Tests, notes, downloaded examiner clips, history, language and goal preferences are stored on your device. The microphone check discards its audio stream. Practice questions normally use bundled recordings, with your device's speech service as a fallback. Mock Test examiner clips and mouth animation timings are downloaded before a test. The examiner is a virtual illustration with a synthetic voice; your camera is not used and your face is not recorded. Device speech services may apply their own settings.
Cloud evaluation is optional. For a practice evaluation you request, your chosen audio goes to ElevenLabs for transcription; the question, transcript and timing/confidence measurements go to OpenAI for an estimated practice band and feedback. Practice does not assess pronunciation. When Mock Tests are available and you consent to start one, its completed answers are queued for evaluation, including while you continue the test. Mock audio also goes to Microsoft Azure Speech for pronunciation measurements. OpenAI receives the transcript, timing and acoustic measurements to assess the complete test and prepare feedback. Azure does not receive ordinary practice recordings. We do not create a voiceprint or use your voice to identify you. A one-minute warm-up and the explicitly labelled device-test walkthrough stay on your device and are not submitted for scoring.
Model requests use store:false. Provider safety, legal and retention obligations can still apply; this is not a promise of zero provider retention. We request deletion of returned ElevenLabs transcriptions and retry outstanding cleanup. Raw learner audio passes through the evaluation service but is not saved in our cloud storage. Limited transcript/acoustic work is saved privately so an interrupted evaluation can resume without repeating successful paid steps. Independent human review or research requires a separate, optional agreement; ordinary assessment consent does not authorise it.
Supabase operates our authentication, database, storage and evaluation functions. Audio passes through these functions on its way to the speech providers. Supabase stores accounts, consent, transcripts and measurements needed for evaluation and reports, practice and mock results, goal settings, allowance balances and operational records. Public storage contains only our examiner clips, not learner recordings. RevenueCat receives the Ovoz account identifier, purchase receipts and transaction/product/storefront/entitlement information to verify purchases, restore eligible access and prevent duplicate credits. Apple or Google handles store billing; we do not receive full card details. Learner audio and transcripts are not sent to RevenueCat.
Cloudflare hosts ovoz.app and these legal/support pages, provides DNS, HTTPS delivery and network protection, and may process your IP address, requested URL, browser information and request time for those purposes. If the app shows a Cloudflare Turnstile verification challenge, Cloudflare processes device/browser and interaction signals to protect anonymous sign-in against abuse. We do not send learner recordings or transcripts to Cloudflare for AI evaluation. These pages use no advertising trackers, analytics scripts or optional cookies added by Ovoz. Cloudflare's security processing and its own service retention rules still apply.
When platform device verification is enabled, signed integrity evidence and a hashed device reference protect one-time free allowances. Service providers may process data outside Türkiye or your country, including in the United States and other locations used by their infrastructure. Our current Supabase project is in Sydney, Australia. Evaluation consent is requested separately in the app, explains ElevenLabs, OpenAI and (for Mock Tests) Microsoft Azure, and can be withdrawn in Profile. Reading this privacy notice is not a request to accept it or agree to evaluation. Account, purchase, security and support processing is used to deliver the requested service, prevent abuse and meet applicable obligations; optional evaluation and notifications have their own choices. Contact us about applicable access, correction, deletion, consent-withdrawal or international-transfer questions.
One-time pack verification also records the product, store, purchase time, refund state and a hashed transaction fingerprint. Account and customer identifiers on this receipt are cleared when their accounts are deleted. The remaining limited financial record prevents duplicate, refunded or deleted purchases from issuing allowances again. A pending-purchase marker is stored securely on your device until verification and is removed by in-app data deletion.
To prevent a new guest session from repeatedly receiving the eight-evaluation welcome allowance, the app sends an app-specific hash of a device marker. On Android this is derived from the identifier scoped to the app's signing key, device and operating-system user; on iOS a random marker is kept in this app's Keychain storage. Other platforms use an app-local random marker. Raw Android identifiers, advertising identifiers and device names are not sent. The server retains the hash, platform and claim date after account deletion, with the account link removed, so deleting or reinstalling the app does not normally create a new trial. This limited fraud-prevention record is not described as anonymous. These markers are separate from stronger platform integrity verification.
First-party events record steps such as onboarding, sign-in, an available offer being shown, a mock starting or completing, an estimate being produced, and a verified purchase. They use an account identifier and limited metadata such as screen, feedback language, product, store environment, outcome and processing time; event payloads do not contain recordings or transcripts. A score issue you choose to report is linked to its practice answer or Mock Test. Please avoid personal details in a feedback note. Purchase-cycle fingerprints prevent restores being counted as new sales and contain no account ID or raw store transaction identifier.
Optional reminders are off until you enable them and grant device permission. Reminder days, time and time zone are stored on the device. Practice reminders are scheduled locally. Where remote result updates are available and you enable them, Firebase Cloud Messaging and Apple Push Notification service receive a device push token and deliver a short result-ready message. Our private delivery register links the token, a random installation ID, platform and interface language to your account. Notifications contain no band, recording, transcript or feedback; an account identifier and result link allow the app to open only your result. Delivery records expire after two days and inactive device registrations after 90 days. You can turn notifications off in Profile or device settings. Disabling result updates in the app removes the registration; account deletion removes registrations and queued messages and cancels local notifications. Local result updates remain available when remote delivery is not configured.
Sharing creates a result image on your device after you choose to share. The preview contains estimated bands and the Ovoz brand, without your name, account identifier, audio or transcript. Nothing is posted automatically. The app you choose in the system share sheet receives the image under that app's privacy rules; copies shared elsewhere are outside Ovoz's deletion control. Temporary local share images are cleaned up by the app. Optional store review requests use Apple or Google's system interface and do not transmit recordings or transcripts.
Cloud retention follows the application's scheduled jobs: transcripts, acoustic details, detailed reports, quoted evidence and completed provider checkpoints are removed after 60 days; practice scoring-cache entries after 60 days; raw analytics events after 30 days; server error records after 14 days. Basic practice and Mock Test band summaries remain with the account until deletion; goal confidence uses only the most recent eligible tests within 90 days. Consent and allowance/financial records remain until deletion unless a legal obligation requires retention. Aggregate statistics contain no transcript. Device copies remain until removed. Limited spent-allowance totals and purchase fingerprints can remain without an account ID or raw store transaction identifier to prevent a restored, refunded or deleted purchase being credited twice. These fraud-prevention records are not described as irreversibly anonymous.
An optional real exam result contains only your Speaking band and exam date. It is used to review practice estimates and is treated as self-reported until verified. It does not automatically change your score or prove the system's accuracy. It is deleted with your account.
Withdraw cloud-sharing consent in Profile. You can still record and listen privately. Withdrawal prevents new submissions and further provider steps once recorded by the server; it cannot recall information already transmitted. Choose Profile → Account → Delete my data to request deletion of the account, practice and Mock Test data, and current device copies. Active processing or an unavailable provider can delay completion; the app shows deletion as pending so you can retry. Deleting your account does not cancel a store subscription. Cancel renewal through your store separately.
For an external deletion request, email [email protected] with subject “Delete my data”. Guest users should use the in-app action while their session is available; we may be unable to identify a guest after device data is erased. Do not email recordings, passwords, payment-card details or an exam certificate. We may ask for limited information to verify ownership before acting.
The app is intended for users aged 16 or older. It is not designed to collect children's data. Contact us if you believe a child has submitted personal data. We do not sell learner recordings, use them for advertising profiles, or send marketing messages without a separate choice.
Material changes to cloud-sharing practices will be reflected in this notice and, where appropriate, a new in-app consent request. Contact [email protected] to exercise rights or raise a privacy concern.