Legal
Last updated: 22 August 2026
This policy covers two separate things: the Sayelle app, and the Sayelle website (sayelle.app). They handle data very differently, so we describe each on its own.
1. Who controls your data
The data controller is DAVID HRDALO / ABN 56942727929, based in Brisbane, Queensland, Australia, trading as Sayelle. Contact: support@sayelle.app. This policy applies internationally where Sayelle is offered. Where local law gives you additional rights, those rights are not limited by this policy.
2. The Sayelle app
Sayelle performs speech and AI processing on your device:
• Speech you provide is processed on-device using WhisperKit for speech-to-text. Raw audio is processed transiently and is not retained or uploaded by Sayelle.
• Text-to-speech audio is generated on-device and is not stored after playback.
• AI language model files are downloaded to your device, may be updated, and run locally. Your conversation is not sent to a third-party AI provider for generation. Model-file hosts receive ordinary network request data, such as the requested file, IP address, and request time, when a download occurs.
• Microphone access is used solely to convert your speech to text, processed entirely on-device in real time.
• Explicit first-person self-harm or immediate-harm language is checked on-device before AI generation so Sayelle can show a fixed supportive response. Sayelle does not create, retain, or upload a separate risk label or safety score from this check.
Conversation text and account data: recognized speech is converted to text on-device. That text, text you type, tutor responses, and learning activity results are saved on your device. When you enable Cloud Sync, they are also synced to our backend so history and in-progress work can be resumed. When Cloud Sync is off, this learning data stays on your device and is not newly synced or restored. Raw microphone audio is not included in Cloud Sync.
The app uses a backend for account and subscription status and, when Cloud Sync is enabled, history and progress (
Supabase) tied to an account identifier. That account is created automatically and anonymously on first use. An anonymous account may not be recoverable if its local credentials are lost. You may link the same account to a platform identity provider for reliable recovery and cross-device access. On iPhone, Sign in with Apple provides an account-specific provider identifier; earlier versions may also have received the private relay email or email address you chose to share, while the current iPhone app does not request your name or email. Apple's handling of that sign-in is governed by
Apple's own privacy terms. On Android, Sign in with Google uses Android Credential Manager. Google provides a stable account identifier and email address and may provide basic profile claims such as a display name or profile image. Supabase authentication may retain those supplied claims in the account's authentication record. Sayelle uses identity-provider data for authentication, account recovery, cross-device access, and account security—not advertising—and does not request access to Google Drive, contacts, or other Google services. We do not receive your Apple or Google password. Google's handling of the sign-in is governed by
Google's Privacy Policy. Through that account, we store:
• The anonymous account identifier and, if you link an identity, the Apple or Google provider identity information supplied through Supabase authentication as described above.
• Your hearts and streak status.
• When Cloud Sync is enabled, which lessons, scenarios, and homework you've started or completed, associated progress, star ratings, and saved free-chat, lesson, scenario, and homework text histories, including tutor messages and activity results, so you can view history and resume work on another device.
• A server-generated last-active timestamp used only to identify abandoned anonymous accounts under the retention rules below.
• The version numbers and server timestamp for the Terms and Privacy Policy you accepted. We do not collect your date of birth for this.
• Your subscription status (active/inactive) — handled by
RevenueCat, which receives purchase/transaction data but not your payment details.
• If you enable notifications, a device push token used to send reminders (such as a streak at risk of resetting) and account alerts (such as a payment issue) — delivered via Apple Push Notification service on iPhone or Firebase Cloud Messaging on Android.
Sayelle may send you push notifications, such as streak reminders or payment-issue alerts, if you enable them in your device settings. Delivery uses Apple Push Notification service on iPhone or Firebase Cloud Messaging on Android; Apple's and Google's handling of that delivery is governed by the privacy policies linked above. You can disable notifications at any time in your device's system settings.
Free-tier users may also see ads via
Google AdMob after finishing a lesson or scenario (subscribers don't). Where required, Sayelle asks for regional advertising consent before requesting ads and provides a Privacy Choices control to revisit that decision. On iPhone, Apple's App Tracking Transparency permission is requested separately before any Apple-defined tracking. Platform settings and permissions may also limit advertising identifiers or personalization. Declining consent or a platform permission may result in limited or non-personalized ads. Google may process device identifiers, IP-derived approximate location, ad interactions, diagnostics, and performance data as described in Google's policies.
3. App data retention
• While Cloud Sync is enabled and your account is active, synced history and progress are kept so the history, resume, and cross-device features continue to work. Turning off Cloud Sync stops new learning-data sync and restore, but does not delete existing cloud copies; delete your account or data to permanently remove them. When Cloud Sync is enabled, you can delete an individual free-chat conversation in the app at any time; it is removed from the live backend when the device is online, or queued until it next connects. When Cloud Sync is off, deleting a conversation removes its local copy only.
• Deleting your account removes the account and associated app data from our live Supabase database. If you ask support to perform the deletion, we will action a verified request within 30 days.
• A device push token is removed when you disable notifications, sign out on that device, or delete your account, whichever happens first.
• An anonymous account that has not opened Sayelle for 12 months is automatically deleted with its associated app data. Accounts linked through Sign in with Apple or Sign in with Google are not automatically deleted merely for inactivity.
• Deleted database records may remain temporarily in encrypted, provider-managed disaster-recovery backups until the applicable backup cycle expires. Backups are isolated from normal product use and are used only for disaster recovery.
• Purchase and transaction information held by Apple, Google Play, or RevenueCat is subject to their legal and operational retention requirements. Deleting a Sayelle account does not cancel an App Store or Google Play subscription.
4. The Sayelle website
Our hosting provider may receive ordinary network and technical request data, such as IP address, browser type, requested page, timestamps, and security logs, when you visit the website. We do not currently use website advertising or analytics trackers. Our
support form also collects a small amount of information so we can respond to you:
•
What we collect: your email address, topic, the message you type, and a name only if you choose to provide one.
•
Why: solely to read, respond to, and keep a record of your support request.
•
How it's sent: submissions are transmitted using
Resend, an email-delivery service, to our support inbox.
•
Retention: we keep support correspondence for as long as needed to resolve your request and for a reasonable period afterward (up to 24 months) for reference, then delete it.
•
Who can access it: our support team, and the service providers that process it on our behalf — currently Resend (email delivery) and our website/email hosting providers. These providers handle information under their contracts and privacy terms.
•
Overseas processing: Resend and our hosting providers may process and store data outside Australia, including in the United States. Where applicable, transfers are handled under provider terms and legally recognised safeguards; submitting the form is not treated as a waiver of your privacy rights.
5. Why we process data and our legal bases
• Provide the service and subscription: account, progress, history, sync, hearts, streaks, and entitlement processing is necessary to perform our contract with you or to take steps you request before entering that contract.
• Advertising: consent is used where required for device storage/access, personalization, or tracking. You can withdraw consent through Privacy Choices and iOS settings without affecting processing that occurred before withdrawal.
• Security and service operation: we rely on our legitimate interests in securing, debugging, preventing abuse, and maintaining Sayelle, balanced against your rights.
• Support: we process information to respond to your request and for our legitimate interest in maintaining support records. Where the request concerns a contract, processing may also be necessary to perform that contract.
• Legal obligations: we process or preserve limited information where required by tax, consumer, court, law enforcement, or regulatory obligations.
6. Sharing, processors, and international transfers
We do not sell conversation transcripts. We disclose data only to service providers needed to operate the relevant feature, to Apple or Google for the app-store, purchase, advertising, or sign-in services you use, when you direct us to, or where legally required. Our current and planned providers and their purposes are listed on the Service Providers page. Data may be processed in Australia, the United States, and other locations used by those providers. We require providers receiving personal data from Sayelle to protect it to the same or an equivalent standard as described in this policy and required by applicable law. Some providers, including app-store operators for their own account and transaction services, may instead act as independent controllers under their privacy terms and applicable law. For transfers from the EEA or UK to a country without an adequacy decision, we rely on recognised contractual safeguards where required. You may contact us for information about safeguards applicable to your data.
7. Your privacy rights
Depending on where you live, you may have rights to be informed, access a copy, correct inaccurate data, delete data, restrict or object to processing, receive portable data, and withdraw consent. You may also complain to your local privacy or data-protection authority. There is no solely automated decision in Sayelle that produces a legal or similarly significant effect about you.
Delete your app account under Profile → Account Settings → Delete All Data (for guests) or Delete Account (when signed in). Use the app export for available learning history. For another request, or if you cannot access the app, email support@sayelle.app or use the
Support page. We may verify your identity before acting. We respond within the period required by applicable law and aim to respond within 30 days; any legally permitted extension will be explained. See
Account & Data Deletion.
8. Teenagers and children
Sayelle is intended for people aged 13 and older and is not intended for children under 13. If local law requires parental authorisation above age 13, a teenager may use Sayelle only with that authorisation. We instruct learners not to provide real personal details during practice. If you believe a child under 13 has used Sayelle, contact support@sayelle.app so we can investigate and delete the account and associated data where appropriate.
9. Security and data breaches
We use access controls, encryption in transit, database row-level security, least-privilege service access, and deletion procedures designed to protect personal data. No system is completely secure. We assess suspected breaches and notify affected people and regulators where applicable law requires it.
10. Changes to this policy
If our data handling changes, this policy will be updated. We will provide reasonable advance notice in the app or through another appropriate channel for material changes and request consent again where the law requires it.
11. Contact and complaints
Questions, requests, or complaints: support@sayelle.app. Please put “Privacy” in the subject line. We aim to acknowledge complaints promptly and respond within the period required by applicable law; we aim to respond within 30 days. If you are not satisfied, you may contact the Office of the Australian Information Commissioner or the privacy/data-protection authority where you live. Users in the EEA and UK may contact Sayelle directly at this address; details of any formally appointed local representative will be published here.