VoxDrop 隐私政策

最后更新:2026-09-03

VoxDrop(下称“本应用”)是一款由用户自行配置语音转写服务和可选 HTTPS Webhook 的录音工具。本政策说明哪些数据保存在设备上、哪些数据会发送到用户选择的接收方,以及用户如何授权和撤销这些操作。

1. 开发者不会接收你的数据

本应用没有开发者运营的后端服务器,不包含广告或分析 SDK。开发者不会接收、存储、出售或追踪你的录音、转写文本、热词、凭据或使用行为。

2. 发送到语音转写服务的数据

为完成语音转写,本应用会把以下内容通过 HTTPS 直接发送到你在设置中选择或填写的语音转写服务:

接收方可能是阿里云 Qwen3-ASR、火山引擎语音识别,或你自行填写的自定义 STT HTTPS 服务。授权页面会在发送前显示接收方名称和实际域名。服务可用性可能因 App Store 地区而异。

3. 发送到 Webhook 的数据

仅当你填写并授权一个有效的 HTTPS Webhook 后,本应用才会发送转写结果。JSON 请求包含:

如配置了 Webhook 密钥,该密钥会作为 Bearer 凭据发送到同一 Webhook。授权页面会显示 Webhook 的实际目标域名。

4. 明确授权与撤销

本应用不会仅因你填写了配置就发送数据。首次启用转写或 Webhook 前,会显示数据类型、用途和接收方,并要求你主动点按“授权并启用”。拒绝授权时不会发生对应的网络传输。

授权与当前服务商、域名和凭据绑定。修改其中任何一项后,旧授权自动失效。你可以随时在“设置 → 数据共享与隐私”中查看或撤销授权。

5. 第三方处理与保护

语音转写服务和 Webhook 接收方均由你选择,并按其公开的隐私政策、服务条款和你与其之间的账户关系处理数据。本应用仅允许其为完成你请求的转写或投递而接收必要数据,不授权其将数据用于广告、追踪或其他无关目的。

在授权前,请查阅所选接收方的隐私政策,并仅在其提供与本政策及适用法律相同或更高的数据保护时启用。对于自定义端点,其运营方和保护措施由你负责确认。

6. App Store 隐私披露

由于音频及用户内容可能被发送到用户选择的第三方服务,本应用在 App Store 中将其披露为用于“App 功能”的“音频数据”和“其他用户内容”。这些数据不会被开发者用于追踪或广告。

7. 本地存储、保留与删除

录音和转写文本保存在设备本地,直到你删除记录、触发所选自动清理期限或删除本应用。凭据仅保存在本机 iOS 钥匙串(Keychain)中。

第三方服务可能按照其条款保留请求数据。开发者无法访问或删除第三方保存的数据;如需删除,请使用相应服务商或 Webhook 运营方提供的账户工具或联系方式。

8. 传输安全

所有语音转写和 Webhook 地址必须使用 HTTPS。本应用不会向 HTTP 地址发送录音或转写文本。

9. 儿童隐私

本应用不面向 13 岁以下儿童,也不会有意收集其信息。

10. 政策变更与联系

如本政策有更新,将在本页面发布并修改顶部日期。如有疑问,请联系:voxdrop@yuruiz.com


VoxDrop Privacy Policy

Last updated: September 3, 2026

VoxDrop (the “App”) is a recording utility in which the user configures a speech-to-text service and an optional HTTPS webhook. This policy explains what remains on the device, what is sent to recipients selected by the user, and how permission can be granted or withdrawn.

1. The developer does not receive your data

The App has no developer-operated backend and contains no advertising or analytics SDK. The developer does not receive, store, sell, or track your recordings, transcripts, hotwords, credentials, or usage activity.

2. Data sent to a transcription service

To perform speech-to-text processing, the App sends the following directly over HTTPS to the service you select or enter in Settings:

The recipient may be Alibaba Cloud Qwen3-ASR, Volcengine speech recognition, or a custom STT HTTPS service you enter. Before anything is sent, the permission screen displays the recipient name and actual destination domain. Service availability may vary by App Store storefront.

3. Data sent to a webhook

Only after you enter and authorize a valid HTTPS webhook does the App send a transcript. The JSON request contains:

If configured, the webhook secret is sent as a Bearer credential to that same webhook. The permission screen displays the webhook's actual destination domain.

4. Explicit permission and withdrawal

Entering configuration alone does not cause the App to send data. Before transcription or webhook delivery is enabled for the first time, the App displays the data types, purpose, and recipient and requires you to affirmatively tap “Allow & Enable.” Declining prevents the corresponding network transmission.

Permission is bound to the current provider, domain, and credentials. Changing any of them invalidates the previous permission. You can review or revoke permission at any time under Settings → Data Sharing & Privacy.

5. Third-party processing and protection

Transcription services and webhook recipients are selected by you and process data under their published privacy policies, service terms, and your account relationship with them. The App permits them to receive only the data needed to complete your requested transcription or delivery and does not authorize advertising, tracking, or unrelated use.

Before granting permission, review the selected recipient's privacy practices and enable it only if it provides protection equal to or greater than this policy and applicable law. For a custom endpoint, you are responsible for confirming its operator and safeguards.

6. App Store privacy disclosure

Because audio and user content may be sent to a service selected by the user, the App discloses Audio Data and Other User Content for App Functionality on the App Store. The developer does not use this data for tracking or advertising.

7. Local storage, retention, and deletion

Recordings and transcripts remain locally on the device until you delete them, the auto-deletion period you selected expires, or you delete the App. Credentials are stored only in the on-device iOS Keychain.

A third-party recipient may retain request data under its own terms. The developer cannot access or delete data retained by that recipient; use the provider's or webhook operator's account controls or contact channel for such requests.

8. Transport security

All transcription and webhook destinations must use HTTPS. The App does not send recordings or transcripts to HTTP addresses.

9. Children's privacy

The App is not directed to children under 13 and does not knowingly collect their information.

10. Changes and contact

Updates will be posted on this page with a revised date. Questions may be sent to voxdrop@yuruiz.com.