Privacy Policy

Last updated: September 14, 2026

Data controller

VoxForge is operated by VoxForge. For data protection enquiries: .

1. What data we collect

2. How we use data

3. AI models & voice data

We do not use your voice recordings, voice clones or custom voice parameters to train AI models, and we do not sell them to third parties. Recordings are stored only for your own playback and export and are deleted when you delete them or close your account.

VoxForge's voice capabilities are powered by third-party AI model providers. For current information about underlying technology, contact .

4. Data sharing

We share data only with: (a) our payment processor Waffo Pancake for billing; (b) an email delivery provider for transactional email; (c) infrastructure providers that host the Service; and (d) authorities where required by law. We do not sell your personal data. Community voices you explicitly choose to publish (name, description and effect parameters) are visible to other users — audio samples are not published automatically.

5. Data retention

Data type Retention period After expiry
Account data While account is active Deleted within 90 days of account deletion
Voice recordings & sounds Until you delete them or your account Permanently deleted
Billing records As required by applicable law Archived or deleted per legal obligation
Security & access logs 12 months Permanently deleted

6. Cookies

Type Purpose Can be disabled
Essential CSRF protection, login sessions No — required for Service to function
Preferences UI language, theme settings Yes — resets on each visit
Analytics Anonymous page-view statistics Yes — no advertising or cross-site tracking

The desktop app uses a session token stored locally rather than browser cookies. See our Cookie Policy for full details.

7. Your rights (GDPR/CCPA)

You may request access, correction, export, deletion or restriction of your personal data, and you may withdraw consent for optional processing at any time. We respond to verified requests within 30 days. If you are located in the EEA, you have the right to lodge a complaint with your local data protection authority.

8. Children

The Service is not directed to children under 13 (or the equivalent minimum age in your jurisdiction), and we do not knowingly collect their data.

9. Security

We use HTTPS in transit, password hashing (bcrypt), and least-privilege access controls. In the event of a data breach that affects your rights, we will notify you and the relevant authority within 72 hours of discovery. No method of transmission is 100% secure, but we work continuously to protect your data.

10. Changes & contact

We will notify you of material changes by email or in-app notice. For any privacy request or question, contact our privacy team at .