Privacy Policy
Last updated September 6, 2026On-device by default
Local transcription never leaves your Mac. No audio, no text — turn the network off and it still works.
Signing in is the one exception. From then on the app asks our servers whether your first week or your subscription is still active. That question carries no audio and no transcripts — see Device identifier below for what it does carry.
Cloud transcription
Cloud transcription is opt-in. It runs during your first week and on Premium. Audio is sent over an encrypted connection to Kazhy Cloud, which passes it to Together AI for speech recognition and discards it immediately afterwards. Kazhy stores neither your audio nor your transcripts. Which service hears it is a setting we control: today it is Together AI. Groq and OpenRouter are the alternates we can switch to, on the same terms.
AI styles
When a style is active, your transcript goes to Kazhy Cloud, which passes it to Cerebras for processing and returns the result. Kazhy stores neither the transcript nor the result. If you wrote your own style, we keep a fingerprint of its prompt — a hash, not the words — and how long it is, so we can count how many different styles are in use. Styling only happens while a style is turned on.
Device identifier
When you sign in, Kazhy sends a salted SHA-256 hash of your Mac's hardware identifier. The identifier itself never leaves your computer — only the hash does.
We store it for one reason: to remember that this Mac has already had its free first week, so that a second account on the same machine doesn't start another one. It isn't used for analytics, advertising, or linking your activity, and it isn't shared with anyone.
Account
Signing in (Google or Apple) stores your account id, email, and subscription status so Premium can sync across your devices. We don't sell or share your data.
The website
When you download the app, we write one row: the moment, where the link came from, the country, whether the machine was a Mac, and whether it looked like a robot. To tell one download from two by the same person, that row carries a hash of your IP address and browser string mixed with the day it happened. The address itself is never stored, and because the day goes into the hash, the same computer tomorrow is a different value that cannot be linked to today's. So we can say how many people downloaded Kazhy yesterday, and we cannot say whether any of them came back.
While you are on the site, your browser remembers which page sent you here, so that a download can be counted against it. That note is kept by the browser, travels with the download link when you use it, is gone when you close the tab, and nothing else sends it anywhere.
Analytics
A cloud request writes one row in our own database: your account id, how many seconds of audio it carried, how many words came back, which language was asked for and which was detected, which service and model served it, what it cost us, how long it took, and the country it came from.
It also sends one event to PostHog, an analytics service hosted in the EU, carrying a hash of your account id, the seconds, the country, and whether the request was one slice of a longer dictation.
Neither carries what you said. We keep the word count and the language because they tell us whether the product works for the languages people actually speak. We never keep the words. On-device transcription records nothing at all.
While the app is running it sends one small message a few times a day: a random identifier for this installation, the app version, your interface language, and four numbers: how many dictations you made that day, how many of them ran in the cloud, how many on your Mac, and how many used a style. Each message replaces the day's earlier one rather than adding to it, so the day ends with one row. We add the country Cloudflare reports for the request and whether it looked like a robot. It carries nothing you said, no length, no spoken language, and no vocabulary.
The identifier is a random value generated on your Mac. It is not derived from your hardware, your account, or anything about you. It is kept in the app's own settings on your Mac, and it is gone when those settings are reset. It exists so we can tell whether people come back after a week, which is a question about the product and not about you. You can turn these messages off in Settings.
How long we keep it
Records of cloud transcription and styling are deleted a year after they are made.
The rows recording downloads of the app are deleted a year after they are made.
The daily usage rows are deleted a year after they are made.
The hash that marks a Mac as having had its free week is kept for good, because forgetting it would hand the same Mac another one. Payment records live longer, because tax rules require it.
Seeing it, or having it deleted
Write to [email protected] and ask. There is no button for this and we are not going to pretend otherwise: one person reads that address and goes and looks. You will get an answer, and if you ask us to delete your records we will, except the hash that marks this Mac as having had its free week — removing that would hand the same Mac another one, so we keep it.
Contact
Questions about your data — [email protected].