Privacy

Privacy is the default, not a setting you have to hunt for.

KoeDraft is built so the private path is the path of least resistance. Audio is ephemeral, history is off until you turn it on, and you can run the whole thing on-device so nothing ever leaves your phone.

Ephemeral audio

Recordings are processed and discarded right away. Your voice is never written to permanent storage.

No transcript logging by default

Your words are not saved to history unless you switch it on. Off is the starting state.

Fully on-device option

Choose local-only and nothing leaves your phone — transcription, cleanup, and translation all run on the device.

Review before insert

Nothing is sent or inserted automatically. You see the result and confirm before a single word lands.

No background recording

The mic runs only while you are actively dictating. There is no always-on listening.

No accessibility-service misuse

The Android keyboard uses the proper input method, never the accessibility service, to read or alter your screen.

Data handling

The three kinds of data

For each one: the plain-language promise, and the technical fact behind it.

1 · Audio

Ephemeral

Your recording is processed, then immediately discarded.

Technical fact: audio is never written to object storage, backups, or logs. There is no audio file to leak.

2 · Transcripts

Optional, off by default

Transcripts are saved only if you turn history on.

Technical fact: when enabled, history is stored encrypted, and you can delete any single session or wipe all history at any time.

3 · Usage metadata

Counts, not content

We may record session counts, word counts, and your feedback ratings — never your actual words.

Technical fact: sensitive content is redacted from error logs, so your transcript text never appears in diagnostics.

Your choice

Privacy modes you can choose

Pick the balance of accuracy and retention that fits the moment.

  • Local only — everything runs on-device, no network involved at all.
  • Zero-retention cloud — cloud accuracy when you want it, with nothing kept server-side.
  • Standard cloud — managed cloud processing for the best accuracy tier.
  • History enabled — you opt in to keep transcripts, and you control how long they stay.
  • Team-managed — centrally set privacy policy for an organization. Roadmap
Credentials

Where your keys live

Cloud processing runs on our managed keys — you never handle an API key, and nothing sensitive is ever exposed in logs or output.

  • Stored encrypted — iOS Keychain, Android Keystore, or an encrypted field on the backend
  • Never written to logs
  • Never shown in the UI
  • Never exposed in error messages

One key, three safe homes

On iOS your key sits in the system Keychain; on Android in the Keystore; on the managed backend in an encrypted field. KoeDraft uses it to call your provider, then leaves it where it belongs — out of sight.

Control

You stay in control

Your data is yours to inspect, export, or erase — at any time.

  • Delete a single dictation
  • Delete all history
  • Delete your account and all data
  • Export your data
  • Clear the local cache
  • See a privacy label on every result — which engine ran, and what was stored
This page describes how the KoeDraft product behaves; it is not legal advice and is not a substitute for the formal privacy policy. Formal compliance certifications and tooling — such as GDPR request tooling, SOC 2, and HIPAA — are on the roadmap and are not claimed as complete.
Speak. Draft. Insert.

Dictate without giving up your privacy

Ephemeral audio, history off by default, and a fully on-device mode whenever you want it.