KoeDraft is built so the private path is the path of least resistance. Audio is ephemeral, history is off until you turn it on, and you can run the whole thing on-device so nothing ever leaves your phone.
Recordings are processed and discarded right away. Your voice is never written to permanent storage.
Your words are not saved to history unless you switch it on. Off is the starting state.
Choose local-only and nothing leaves your phone — transcription, cleanup, and translation all run on the device.
Nothing is sent or inserted automatically. You see the result and confirm before a single word lands.
The mic runs only while you are actively dictating. There is no always-on listening.
The Android keyboard uses the proper input method, never the accessibility service, to read or alter your screen.
For each one: the plain-language promise, and the technical fact behind it.
Your recording is processed, then immediately discarded.
Technical fact: audio is never written to object storage, backups, or logs. There is no audio file to leak.
Transcripts are saved only if you turn history on.
Technical fact: when enabled, history is stored encrypted, and you can delete any single session or wipe all history at any time.
We may record session counts, word counts, and your feedback ratings — never your actual words.
Technical fact: sensitive content is redacted from error logs, so your transcript text never appears in diagnostics.
Pick the balance of accuracy and retention that fits the moment.
Cloud processing runs on our managed keys — you never handle an API key, and nothing sensitive is ever exposed in logs or output.
On iOS your key sits in the system Keychain; on Android in the Keystore; on the managed backend in an encrypted field. KoeDraft uses it to call your provider, then leaves it where it belongs — out of sight.
Your data is yours to inspect, export, or erase — at any time.
Ephemeral audio, history off by default, and a fully on-device mode whenever you want it.