Privacy Policy

Effective 17 June 2026

VoiceInbox is a voice-first email client. We built it so you can talk to your inbox without handing over a copy of it. This policy explains what data we touch, why, and how to take it back.

1. Who we are

VoiceInbox is operated by Reel Works. You can reach us at support@voiceinbox.app. Postal address available on request.

2. What we collect

2.1 Account & device data

2.2 Connected email accounts

When you connect Gmail, iCloud, Outlook, Yahoo, or another IMAP account, we store:

These credentials are stored on your device in the iOS Keychain (and optionally synced through iCloud Keychain on your own Apple account). They never sit on our servers.

2.3 Email content

When you ask VoiceInbox to summarize, rewrite, translate, or draft a reply, the relevant message body — or your dictated input — is sent to our voice and language sub-processors (see §4). It is used only to produce the result you asked for and is not retained by us or those sub-processors for training.

We do not keep persistent copies of your messages on our servers.

2.4 Voice recordings

2.5 Usage analytics

We collect anonymous, aggregated product events (e.g. "tab opened", "trial started") to understand how features are used and to find crashes. We do not include message bodies, subjects, recipient lists, or attachments in analytics.

2.6 Google user data & Limited Use

When you connect a Gmail account, VoiceInbox requests a single Google API scope — https://mail.google.com/ — which is used over standard IMAP and SMTP to read your messages and folders, mark them read or flagged, move or delete them, detect new mail for notifications, and compose and send replies and new emails on your behalf. We access this data only to provide the app's user-facing email features (reading, organizing, summarizing, composing, and sending email by voice).

VoiceInbox's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. We do not use Google user data for advertising, do not sell it, and do not use it to train generalized AI/ML models. Email content sent to our language sub-processors (for example, OpenAI) is used solely to produce the result you requested and is not retained for training.

3. How we use the data

We do not sell your data and we do not show ads.

4. Sub-processors

An up-to-date list of named sub-processors is available on request via support@voiceinbox.app.

5. Where data lives

6. Retention

7. Your rights (GDPR / UK GDPR / CCPA)

You may at any time:

Email support@voiceinbox.app to exercise any of these rights. We respond within 30 days.

8. Children

VoiceInbox is not directed at children under 16 and we do not knowingly collect personal data from anyone under that age. If you believe a child has provided personal data, contact us and we will delete it.

9. Security

No system is perfectly secure. Report suspected vulnerabilities to support@voiceinbox.app.

10. International transfers

Where personal data leaves the EEA (for example, when a sub-processor is based in the US), we rely on Standard Contractual Clauses or another transfer mechanism approved by the European Commission.

11. Changes to this policy

We will publish material changes on this page and update the "Effective" date above. Where the change is significant we will notify you in the app or by email before it takes effect.

12. Contact

Reel Works (operator of VoiceInbox)
Email: support@voiceinbox.app