Privacy Policy
Daily Speaking ยท Last updated: July 23, 2026
This Privacy Policy explains how Daily Speaking ("Daily Speaking", "the App", "we", "us", or "our") collects, uses, stores, and shares information when you use the Daily Speaking iOS app and related custom lesson services.
Daily Speaking is designed as an account-free English speaking practice app. Most app activity stays on your device. Data is sent to our cloud services only when you submit a custom lesson request, upload study materials, upload or record an optional voice sample, or make an in-app purchase.
- Who is responsible
- Quick summary
- Data stored on your device
- Data sent to our servers
- Voice samples
- In-app purchases
- Service providers
- Legal bases under the GDPR
- Data retention and deletion
- Your privacy rights
- Security
- Contact
1. Who is responsible
The data controller for the Daily Speaking app is the operator of Daily Speaking.
Daily Speaking
Contact email: xh.shi0507@gmail.com
If you need additional controller information for a legal privacy request, contact us by email and describe your request.
2. Quick summary
- No account is required. The App does not ask you to create an account.
- Most app data stays on your device. Your nickname, profile picture, progress, favourites, local lesson state, and credit balance are stored locally.
- Custom lesson requests are cloud processed. When you submit a custom lesson request, the request content and selected attachments are uploaded so the lesson can be generated and delivered.
- Voice samples are optional. A voice sample is uploaded only if you provide one and confirm consent in the App.
- Payments are handled by Apple. We do not receive your payment card number, bank details, or Apple ID password.
- No advertising tracking. The App does not use third-party advertising SDKs, cross-app tracking, or Apple's Advertising Identifier (IDFA).
- We do not sell personal data. We do not sell your data and do not use it to build advertising profiles.
3. Data stored on your device
The following information is stored locally on your device and is not uploaded to us during normal lesson practice:
- Optional nickname and optional profile picture selected in the App
- Practice history, progress, favourites, completed lessons, and daily goal settings
- Unlocked lesson state for this device
- Lesson-credit balance used by the App interface
- Cached audio or lesson data needed for playback and app performance
- A randomly generated device identifier
Deleting the App may delete locally stored data from your device, depending on your iOS and browser storage behavior.
Random device identifier
The App creates a random device identifier such as dev_... the first time it runs. This identifier is stored
locally and used to associate custom lesson requests and generated lessons with the same device. It is not your Apple ID,
it is not an advertising identifier, and it is not intended to identify you in the real world. It may reset if local app
storage is cleared or the App is deleted and reinstalled.
Microphone access
If you choose to record a voice sample, the App may request microphone permission. Microphone access is used only to make the recording you choose to create. The recording is uploaded only if you attach it to a custom lesson request and provide the required consent.
4. Data sent to our servers
Data is sent to our cloud services when you submit a custom lesson request. Depending on what you enter or attach, this may include:
- The selected lesson scenario, CEFR level, tone setting, request prompt, structured answers, and extra notes
- Any free-text information you type into the custom lesson form
- Study materials you choose to upload, such as PDF, Word, PowerPoint, Markdown, text, or similar supported files
- File metadata, including file name, file size, content type, upload path, and upload time
- An optional voice sample, only if you provide one and confirm consent
- Your random device identifier
- Purchase confirmation information needed to grant custom lesson credits
- Generated lesson content, delivery status, processing notes, and limited diagnostic information if generation fails
Operational email notification
When you submit a custom lesson request, an automated operational email may be sent to the operator email address so the request can be monitored and manually corrected if generation fails. This email may contain request details, attachment metadata, and processing status information. The email is delivered through Gmail.
Generated lesson audio
Custom lesson audio generated by the service may be stored in Firebase Storage and streamed by the App. Do not include sensitive secrets in lesson prompts or uploaded materials, because generated lesson output may reflect information you provided in your request.
5. Voice samples
Voice samples are optional. The App works without a voice sample.
- A voice sample is uploaded only if you record or select one and confirm the consent checkbox before submitting.
- The voice sample is used only to prepare, test, or generate a personalised voice experience for your custom lesson.
- The voice sample may be processed by Fish Audio for voice generation or voice personalisation.
- We do not use your voice sample to identify you.
- We do not sell your voice sample.
- You can remove the voice sample before submission.
- You can withdraw consent for future processing by contacting us.
If you withdraw consent after a custom lesson has already been generated, we will stop further optional processing of the voice sample and will delete or anonymise the sample where technically and legally possible. Generated lesson output that has already been delivered may remain available unless you ask us to delete the related custom lesson data.
6. In-app purchases
Custom lesson credits may be sold through Apple in-app purchases. Apple processes the payment. We do not receive your payment card number, bank account details, Apple ID password, or full Apple account information.
To grant credits and prevent duplicate credit grants, we may receive and store purchase-related information such as product identifier, transaction identifier, original transaction identifier, purchase environment, purchase state, price label, and purchase time.
7. Service providers
We use service providers to operate the App, process custom lesson requests, generate lesson content, generate audio, and process purchases. These providers process information only as needed for the relevant service purpose.
| Provider | Purpose | Data involved |
|---|---|---|
| Google Firebase | Cloud database, file storage, backend functions, delivery of generated lesson data | Custom request data, uploaded materials, optional voice sample, generated lesson data, device identifier, processing metadata |
| OpenAI | Generating custom lesson dialogue, phrases, translations, and learning content | Request text and text extracted from uploaded materials |
| Fish Audio | Generating spoken lesson audio and optional personalised voice output | Lesson script text and optional voice sample if you provided consent |
| Apple | In-app purchase processing and purchase restoration | Payment and App Store transaction data handled by Apple; limited transaction confirmation data received by the App |
| Google Gmail | Operational email notifications for submitted custom lesson requests | Request details, attachment metadata, and processing status included in operational notifications |
8. Legal bases under the GDPR
If the General Data Protection Regulation (GDPR) applies to you, we rely on the following legal bases:
- Performance of a contract under Article 6(1)(b) GDPR: to provide the App, process purchases, generate custom lessons, and deliver purchased content.
- Consent under Article 6(1)(a) GDPR: to process an optional voice sample for personalised voice functionality.
- Legitimate interests under Article 6(1)(f) GDPR: to maintain service reliability, prevent abuse, debug failures, improve safety, and respond to support requests.
- Legal obligations under Article 6(1)(c) GDPR: to keep purchase, accounting, tax, or compliance records where required by law.
9. International data transfers
Some providers may process data outside your country or outside the European Economic Area. Where required, we rely on lawful transfer mechanisms such as adequacy decisions, Standard Contractual Clauses, provider data processing terms, or other safeguards made available by the relevant provider.
10. Data retention and deletion
- Local app data remains on your device until you delete it in the App, clear local storage, or uninstall the App.
- Custom lesson requests are kept while needed to generate, deliver, support, and display the custom lesson.
- Uploaded materials are kept only as long as reasonably needed to generate and support the related lesson, unless a longer period is required for security, legal, or dispute reasons.
- Voice samples are kept only as long as reasonably needed for the consented voice personalisation purpose, unless you request deletion earlier.
- Purchase records may be kept as long as needed for accounting, fraud prevention, customer support, legal compliance, and duplicate-credit prevention.
- Operational emails may be retained in the operator mailbox for support, debugging, and audit purposes.
You can delete a custom lesson request in the App under Custom / My Requests. You can also contact us to request deletion of server-side custom lesson data associated with your device identifier.
11. Your privacy rights
Depending on where you live, you may have rights to:
- Request access to personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data
- Request restriction of processing
- Object to processing based on legitimate interests
- Receive a copy of your data in a portable format
- Withdraw consent for optional voice sample processing
- Lodge a complaint with a data protection supervisory authority
Because the App does not use accounts, we may need your random device identifier or other request details to locate the relevant data. Contact us from the device used for the request where possible. We will respond to privacy requests within 30 days unless a different period is required or permitted by applicable law.
12. Analytics, advertising, and tracking
The App does not use third-party advertising SDKs, does not use the Apple Advertising Identifier (IDFA), and does not track you across other companies' apps or websites for advertising purposes. We do not sell personal data.
The App may rely on basic technical logs from service providers such as Firebase to operate cloud functions, diagnose errors, and protect the service from abuse.
13. Security
We use reasonable technical and organisational measures to protect the information processed by the App. Uploaded materials and voice samples are stored in Firebase Storage paths that are not publicly readable by the App. Data in transit is protected with HTTPS/TLS where supported by the relevant provider.
No online service can be guaranteed to be completely secure. You should avoid submitting information that is highly sensitive, confidential, or unnecessary for your learning request.
14. Children
Daily Speaking is not directed to children under 16. We do not knowingly collect personal data from children under 16. If you believe a child has provided personal data through the App, contact us and we will take reasonable steps to delete it.
15. Changes to this Privacy Policy
We may update this Privacy Policy when the App, service providers, legal requirements, or data practices change. The "Last updated" date at the top shows when this version became effective. Material changes may also be announced in the App where appropriate.
16. Contact
For privacy questions, data deletion requests, consent withdrawal, or other data protection requests, contact:
Daily Speaking
Email: xh.shi0507@gmail.com