Privacy Policy

Last updated: July 8, 2026

Who we are

Loqitalk (“we”, “us”) is a communication assistant at loqitalk.com that helps you understand messages and reply in real conversations. This policy explains what data we handle, why, and what control you have over it. For anything privacy-related, contact support@loqitalk.com.

Data we store

  • Account data — your email address and a hashed password, managed by our authentication provider (Supabase).
  • Your content — sessions, the text of your conversation turns (including transcripts of voice input), generated replies and explanations, saved phrases, and documents you upload.
  • Settings — language, theme, and similar preferences. If you use your own AI key (opt-in tester feature), it is stored encrypted (AES-256-GCM) and never sent to your browser.
  • Usage records — technical metadata about each AI request (model, token counts, estimated cost, latency, error codes). We use this to enforce plan limits, show you your usage, and keep the service healthy. It does not include the content of your messages.
  • Billing status — your subscription plan and its state, mirrored from our payment provider. We never see or store your card details.

Data we process but do not store

Voice recordings and screenshots you attach are sent to our AI provider to serve that specific request (transcription or analysis) and are not saved on our servers. Only the resulting text — the transcript or the generated answer — is stored as part of your session history.

AI processing

Your requests are processed by OpenAI’s API under our platform account. Per OpenAI’s API terms, data sent through the API is not used to train their models. We do not sell your data or use it for advertising, and we do not train models on your sessions.

Payments

Paid plans are sold by Paddle, our merchant of record. Paddle handles checkout, card data, invoices, and applicable taxes under its own terms and privacy policy; we receive only your subscription status and a customer reference. Card numbers never touch our systems.

Sub-processors

We rely on a small set of infrastructure providers to run Loqitalk:

  • Supabase — database, authentication, and file storage.
  • Vercel — application hosting.
  • OpenAI — AI processing (transcription, answers, speech).
  • Paddle — payments, as merchant of record.
  • Cloudflare — domain, DNS, and routing of our support email.

Cookies

We use only strictly necessary cookies — the ones that keep you signed in. There are no advertising or cross-site tracking cookies, which is why you don’t see a cookie banner.

Retention and deletion

Your data is kept for as long as your account exists. Deleting your account (Profile → Privacy & data → Delete account) immediately and permanently removes your sessions, messages, documents, uploaded files, settings, and usage records, cancels any active subscription, and deletes the account itself. There are no backups of deleted accounts and no undo. Billing records may be retained by Paddle as required for tax and accounting purposes.

One narrow exception: to prevent free-trial abuse, we keep an irreversible cryptographic hash of your email address together with the Paddle customer reference after deletion (legitimate interest, GDPR Art. 6(1)(f)). The hash cannot be turned back into your email address or linked to any of your deleted content; it only lets us recognize that an email address already received its one free trial.

Your rights

You can access and correct your data in the app, delete your account yourself, and request a full export of your data by emailing support@loqitalk.com from your account email — we respond within 30 days, usually much sooner. If you are in the EU/EEA or UK, these rights are backed by the GDPR, including the right to lodge a complaint with your local supervisory authority.

Changes

If this policy changes in a way that matters, we will note it here with a new date and, for significant changes, tell you in the app or by email.