Privacy Policy
Last Updated: October 15, 2025
1. Introduction
This Privacy Policy describes how Aura (the “App”) handles your information. We are committed to transparency about our data practices.
Key Point: We do not collect, store, or transmit any of your data. Your files are stored locally and/or in iCloud Drive. The App communicates directly with OpenAI for transcription and summarization.
2. Information We Do NOT Collect
The developer of this App does NOT collect, store, or transmit:
- Personal identification information (name, email, phone number, etc.)
- Audio recordings
- Transcriptions or summaries
- OpenAI API keys
- Usage statistics or analytics
- Device information
- Location data
- Crash reports or diagnostic data
- Any other personal or non-personal information
3. How the App Works
3.1 Data Storage
What’s stored where:
| Data Type | Location | Cloud Sync |
|---|---|---|
| Audio recordings | iCloud Drive directory | Yes (if iCloud Drive enabled) |
| Transcriptions & summaries | iCloud Drive directory | Yes (if iCloud Drive enabled) |
| OpenAI API key | Local app storage (plain text) | Never |
| App settings | Local app storage | Never |
Key points:
- We have no servers or backend infrastructure
- If iCloud Drive is enabled, Apple may access your audio and transcriptions
- Your API key never leaves your device
- The App communicates directly with OpenAI (we don’t act as intermediary)
3.2 Your API Key Security
- Stored locally in plain text (protected by OS sandboxing)
- Accessible by anyone with physical access to your unlocked device
- Permanently deleted when you uninstall the App
- We cannot access, view, or retrieve your API key
4. Third-Party Services
4.1 Apple iCloud Drive
The App stores audio recordings and transcriptions in iCloud Drive by default.
What this means:
- Apple encrypts your files in transit and at rest
- Apple controls the encryption keys and may access your files
- Anyone with your Apple ID credentials can access these files
- You can disable iCloud Drive for this App in device settings
Learn more:
- Apple Privacy Policy: https://www.apple.com/legal/privacy/
- iCloud Terms of Service: https://www.apple.com/legal/internet-services/icloud/
4.2 OpenAI
When you use transcription or summary features, the App sends data directly to OpenAI’s servers.
Data sent to OpenAI:
- Audio recordings (for transcription via SpeechToText API)
- Text content (for summary generation via GPT models)
- Your API key (for authentication)
Important:
- OpenAI may process, store, and use your data per their Privacy Policy
- Data practices vary by API plan (some plans opt out of training data usage)
- You’re responsible for understanding your OpenAI account settings
Learn more:
- OpenAI Privacy Policy: https://openai.com/policies/privacy-policy
- OpenAI API Data Usage Policies: https://openai.com/policies/api-data-usage-policies
- Manage your settings: https://platform.openai.com/account
5. Data Security
5.1 How Your Data is Protected
Local data (API key, settings):
- Protected by OS sandboxing (other apps can’t access)
- Vulnerable to physical device access if unlocked
iCloud data (recordings, transcriptions):
- Encrypted by Apple in transit and at rest
- Accessible via your Apple ID credentials
5.2 Your Responsibilities
Protect your device:
- Use lock screens and biometric authentication
- Never leave your device unlocked and unattended
- Keep your OS and the App updated
Protect your Apple ID:
- Use a strong password and enable two-factor authentication
- Review who has access to your iCloud (family sharing, etc.)
- Consider disabling iCloud Drive for this App if you prefer local-only storage
Protect your API key:
- Never share your API key
- Use API keys with usage limits
- Monitor your OpenAI usage regularly
- Rotate your key if compromised
6. Children’s Privacy
The App does not knowingly collect information from children under 13 years of age. The App is not directed at children, and we do not knowingly allow children to use the App.
If you are a parent or guardian and believe your child has provided information through the App, please note that since we don’t collect any data, no information has been transmitted to us.
7. Data Retention
By us (the developer): We do not retain any data because we do not collect any data.
On your device:
- Data persists until you delete it or uninstall the App
- You can delete individual items at any time
In iCloud Drive:
- Recordings and transcriptions persist in iCloud even after uninstalling the App
- You may need to manually delete files from iCloud Drive settings
- Data may persist in iCloud backups per Apple’s policies
By OpenAI: Subject to OpenAI’s data retention policies (see their documentation)
8. Your Rights and Control
Your local data:
- Access: View all recordings and transcriptions anytime in the App
- Delete: Remove individual items or clear your API key anytime
- Export: Access files via your device’s file system or iCloud.com
iCloud data:
- Control iCloud sync in device settings
- For data rights, contact Apple (see Apple’s Privacy Policy)
OpenAI data:
- Contact OpenAI directly for data rights
- See OpenAI’s Privacy Policy for details
9. International Data Transfers
By us: None (we don’t collect or transmit your data)
By Apple: iCloud data may be stored in various countries per Apple’s infrastructure (see Apple’s Privacy Policy)
By OpenAI: Data may be processed in the United States or other countries (see OpenAI’s Privacy Policy)
10. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. Any changes will be posted within the App with an updated “Last Updated” date. We encourage you to review this policy periodically.
Continued use of the App after changes constitutes your acceptance of the updated Privacy Policy.
11. Legal Compliance (GDPR & CCPA)
Our obligations: We do not collect or process your personal data, so GDPR and CCPA obligations do not apply to us.
Third-party data controllers:
- Apple (for iCloud data) and OpenAI (for API data) act as data controllers
- You’re responsible for understanding their compliance practices
- Contact them directly for data subject rights requests
12. Recording Laws
You are responsible for complying with all recording laws in your jurisdiction.
Many places require consent before recording conversations. Some require all-party consent. Always obtain proper consent before recording. We are not responsible for your compliance.
13. Analytics, Tracking & Advertising
We do not use any analytics, tracking, or advertising services. We do not collect crash reports or usage data.
14. Contact
For questions about this Privacy Policy, contact the developer through the App’s official repository or distribution platform.
Note: We cannot respond to data access or deletion requests as we don’t collect any data.
15. Summary
| What | Where | Who Has Access |
|---|---|---|
| We collect | Nothing | Nobody (we have no servers) |
| Audio & transcriptions | iCloud Drive (if enabled) | You, Apple, anyone with your Apple ID |
| API key | Local device only (plain text) | You, anyone with physical device access |
| Processing | Direct to OpenAI | OpenAI processes your audio/text |
Your responsibilities:
- Secure your device (lock screen, biometric auth)
- Secure your Apple ID (strong password, 2FA)
- Protect your API key (usage limits, monitoring)
- Comply with recording laws
- Understand third-party policies (Apple, OpenAI)
BY USING THIS APP, YOU ACKNOWLEDGE THAT YOU HAVE READ AND UNDERSTOOD THIS PRIVACY POLICY.