Privacy Policy
Last updated: September 14, 2026
Data controller
VoxForge is operated by VoxForge. For data protection enquiries: .
1. What data we collect
- Account data: email address, username, password (stored only as a bcrypt hash), profile information and account settings.
- Voice data: audio you record or preview while using the Service. Live voice changing in the desktop app is processed locally on your device; audio is only transmitted to our servers when you explicitly save a recording or upload a sound.
- Usage data: feature usage counts (e.g., AI generations), log data such as IP address, browser type and pages visited, collected for security and analytics.
- Payment data: billing is handled by our payment processor Waffo Pancake. We never receive or store your full card details.
2. How we use data
- To provide the Service: authenticating you, syncing your voices, soundboard and recordings across devices.
- To process subscriptions and comply with tax and accounting obligations.
- To communicate service updates, security notices, and (with your consent) product news.
- To detect and prevent abuse, fraud and violations of our Acceptable Use Policy.
3. AI models & voice data
We do not use your voice recordings, voice clones or custom voice parameters to train AI models, and we do not sell them to third parties. Recordings are stored only for your own playback and export and are deleted when you delete them or close your account.
VoxForge's voice capabilities are powered by third-party AI model providers. For current information about underlying technology, contact .
4. Data sharing
We share data only with: (a) our payment processor Waffo Pancake for billing; (b) an email delivery provider for transactional email; (c) infrastructure providers that host the Service; and (d) authorities where required by law. We do not sell your personal data. Community voices you explicitly choose to publish (name, description and effect parameters) are visible to other users — audio samples are not published automatically.
5. Data retention
| Data type | Retention period | After expiry |
|---|---|---|
| Account data | While account is active | Deleted within 90 days of account deletion |
| Voice recordings & sounds | Until you delete them or your account | Permanently deleted |
| Billing records | As required by applicable law | Archived or deleted per legal obligation |
| Security & access logs | 12 months | Permanently deleted |
6. Cookies
| Type | Purpose | Can be disabled |
|---|---|---|
| Essential | CSRF protection, login sessions | No — required for Service to function |
| Preferences | UI language, theme settings | Yes — resets on each visit |
| Analytics | Anonymous page-view statistics | Yes — no advertising or cross-site tracking |
The desktop app uses a session token stored locally rather than browser cookies. See our Cookie Policy for full details.
7. Your rights (GDPR/CCPA)
You may request access, correction, export, deletion or restriction of your personal data, and you may withdraw consent for optional processing at any time. We respond to verified requests within 30 days. If you are located in the EEA, you have the right to lodge a complaint with your local data protection authority.
8. Children
The Service is not directed to children under 13 (or the equivalent minimum age in your jurisdiction), and we do not knowingly collect their data.
9. Security
We use HTTPS in transit, password hashing (bcrypt), and least-privilege access controls. In the event of a data breach that affects your rights, we will notify you and the relevant authority within 72 hours of discovery. No method of transmission is 100% secure, but we work continuously to protect your data.
10. Changes & contact
We will notify you of material changes by email or in-app notice. For any privacy request or question, contact our privacy team at .