Privacy

Privacy Policy

Short, and written to be read.

Last updated: September 7, 2026

What we collect

  • Email address — only when you sign up for the Free + email or Pro tier. Anonymous tier collects no email.
  • Device token — a randomly-generated key stored in your OS keychain (Windows Credential Manager / macOS Keychain). This token identifies your device locally and with our backend. It is never linked to third-party ad profiles.
  • Transcription metadata — timestamps (received, transcribed, discarded), audio duration, and detected language per call. Stored for quota tracking and the privacy receipt you see in the UI. No audio content. No transcript text.
  • Usage analytics — opt-in only (default-off in the EU). If you consent, PostHog receives anonymised event counts (e.g. "recording started"). No keystrokes. No transcript content.
  • Android keyboard — what you type on the phone never leaves the phone. Only dictation audio is sent, during dictation, and it is discarded the same way as on desktop.

What we do not collect

  • Audio recordings — your voice audio is processed inside a single HTTP request lifecycle and deleted before the handler returns. It is never written to disk, never stored in a database, never logged.
  • Transcript content — by default we keep no copy of what you dictated: the text Whisper returns is sent to your desktop and discarded on the server. (You can opt in to 14-day account history in Settings — it's off by default; see Data retention below.)
  • Typing history — Lytly does not observe your keyboard, clipboard, or any other app's content. The only text we ever touch is what Whisper returns from your explicit voice recording.
  • Screenshots or screen content — Lytly never captures your screen. The "context awareness" pattern used by some competitors is explicitly out of scope for Lytly.

Third-party services

Lytly uses a small, auditable set of sub-processors:

  • Groq (primary STT) — audio bytes are sent to Groq's Whisper API for transcription. Per Groq's ToS, audio is not retained after processing. Groq is SOC 2 Type II certified.
  • OpenAI (fallback STT) — used automatically if Groq is unreachable. Same retention commitment applies.
  • Transform Mode providers (Cerebras, Groq, Fireworks AI, OpenRouter) — only when you use the optional Transform Mode (off by default), the text of your transcript is sent to one of these fast-inference LLM providers to rewrite it. No audio is ever sent, and nothing is sent when Transform Mode is off.
  • Telegram (Pro payments) — if you buy Pro through the @LytlyBot Telegram bot, Telegram processes the Stars payment. Only used if you choose that purchase path.
  • Fly.io (hosting) — our backend runs on Fly.io infrastructure in the US-East (Ashburn, Virginia) region. Fly.io is SOC 2 certified.
  • Cloudflare (CDN + landing pages) — Cloudflare proxies lytly.app. Standard Cloudflare privacy policy applies to edge traffic metadata.
  • PostHog (analytics) — only if you opt in. Data is anonymised before transmission. You can revoke consent at any time from the Lytly settings panel.

Data retention

We keep account data (email, device tokens, transcription metadata) for as long as your account is active.

If you delete your account via the Lytly settings panel, all personal data — including email, device tokens, and metadata history — is deleted within 30 days of the request. Anonymised aggregate statistics (total transcription counts with no user linkage) may be retained for product analytics.

Lytly keeps no transcript-history file on your device — transcripts persist only if you opt in to account history (below). Lytly's "wipe everything" button immediately clears all local Lytly data (settings, consent choices, and your sign-in token), locally.

Optional account history — off by default. If you turn on "Save transcripts to my account history" in Settings, your transcripts are stored on your account for 14 days (then deleted) to power cross-device history. This is opt-in: with it off — the default — nothing you dictate is stored on our servers. You can turn it off anytime in Settings.

Contact

Privacy questions, data deletion requests or concerns: [email protected]

We aim to respond within 5 business days. For EU / UK GDPR requests we respond within the statutory 30-day window.