Privacy Policy & Google API Disclosure
Effective Date: March 2026 • Dedicated to creator confidentiality, Google OAuth compliance, and audio data privacy
1. Introduction & Privacy Commitment
Welcome to SynVoice (accessible at https://synvoice.io/, referred to as "SynVoice", "SynVoice.io", "we", "us", or "our"). We provide an advanced artificial intelligence voice synthesis and audio generation platform for creators, video producers, developers, and businesses.
We are dedicated to safeguarding your privacy and ensuring maximum transparency regarding how your information is collected, processed, stored, and protected when you use our website, developer APIs, and studio synthesis tools.
2. Google API Services & OAuth User Data Policy
Google OAuth Compliance & Limited Use Requirements
SynVoice allows users to sign in and authenticate using their Google Account via Google OAuth 2.0. When you authenticate with Google, SynVoice requests access to basic profile scopes (such as your verified email address, full name, and avatar picture).
SynVoice's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
- Strict Authentication Purpose: Data obtained via Google OAuth is used strictly to authenticate your identity, generate your user profile, prevent duplicate accounts, and safeguard your studio credits.
- No Third-Party Sharing or Sale: We never sell, rent, broker, or trade Google user data to data brokers, advertising platforms, or any unauthorized third parties.
- No Human Inspection: SynVoice personnel cannot view or inspect your Google credentials or private account data unless required for security investigations or with your explicit consent.
- No Foundation Model AI Training: Google user data is never used to train, retrain, or fine-tune public machine learning or foundation AI models.
3. Information We Collect
We collect only the minimum personal and operational data necessary to deliver voice synthesis tools:
- Account Profile Data: Full name, verified email address, hashed passwords (for email-based sign-in), generated API keys, and account credit balance.
- Third-Party Single Sign-On (SSO): Account identifiers, email address, and profile picture provided through authorized Google OAuth.
- Voice Synthesis & Prompts: Text scripts, transcriptions, chosen voice model identifiers, speech speed/stability settings, and temporary generated audio output files.
- Payment & Transaction Records: Transaction reference IDs, invoice summaries, and payment status from verified merchant gateways (e.g., Stripe). SynVoice never stores raw payment card numbers, CVVs, or bank credentials.
- Technical & Device Information: IP addresses, browser version, operating system, timestamp of access, and referral URLs collected for service security and DDoS protection.
4. Zero AI Model Training on User Content
🔒 Content Confidentiality Guarantee
SynVoice strictly maintains a zero-training posture. We do NOT use your entered scripts, book excerpts, voice cloning samples, or synthesized audio streams to train, fine-tune, evaluate, or improve any public or proprietary foundation artificial intelligence or large language models. Your creative works remain your intellectual property.
5. How We Use Collected Information
Your data is utilized solely for lawful purposes, including:
- Provisioning your user dashboard, studio workspace, and API access credentials.
- Executing text-to-speech audio rendering and streaming audio downloads.
- Maintaining accurate balance meters, usage quotas, and character accounting.
- Detecting and mitigating automated abuse, unauthorized API scraping, and security breaches.
- Transmitting critical service alerts, transaction receipts, and developer system notices.
6. Data Retention, Account Deletion & Revoking Access
We retain your personal data only as long as your account remains active or as required by statutory tax and regulatory obligations. Generated audio files are stored temporarily on secure cloud storage and may be cleared periodically by users from their studio history.
How to Request Account & Data Deletion:
You have the absolute right to have your personal data permanently erased. To request complete deletion of your SynVoice account, generation history, API credentials, and personal profile, send an email to cs@synvoice.io or jigargurmani@gmail.com with the subject line "Data Deletion Request". Requests are executed within 30 days.
Disconnecting Google Account Access: You can revoke SynVoice's access to your Google Account at any time directly through your Google Security Permissions Dashboard.
7. GDPR, UK GDPR & CCPA/CPRA Privacy Rights
Depending on your jurisdiction (such as the European Economic Area, United Kingdom, or California), you hold specific privacy rights:
- Right of Access: Request a full copy of the personal information we hold about you.
- Right to Rectification: Request correction of any inaccurate or incomplete details.
- Right to Erasure: Request the deletion of your personal records ("Right to be Forgotten").
- Right to Restrict Processing: Limit the scope of data processing in specified circumstances.
- Right to Data Portability: Obtain your data in a portable, structured, machine-readable format.
- Non-Discrimination: We will never discriminate against you for exercising any of your statutory privacy rights.
8. Data Security & Storage Architecture
We employ state-of-the-art administrative, technical, and physical security measures to protect your information:
- All data transmitted between your browser and our servers is secured via TLS 1.3 / SSL encryption.
- Stored credentials and sensitive tokens are cryptographically salted and hashed using industry-standard algorithms (Argon2 / Bcrypt).
- Access to databases and cloud storage clusters is restricted via role-based access control (RBAC) and multi-factor authentication (MFA).
9. Third-Party Service Providers & Sub-processors
We collaborate with trusted infrastructure partners to host our services and process payments:
- Google Cloud Platform & Google Identity Services: Infrastructure hosting and OAuth authentication.
- Payment Processors (e.g., Stripe): Secure PCI-DSS compliant credit card and payment processing.
- Cloudflare / DNS Providers: DDoS protection, edge routing, and SSL termination.
10. Children's Privacy (COPPA Compliance)
SynVoice is not intended for use by children under the age of 13 (or under 16 in the European Union). We do not knowingly solicit or collect personally identifiable information from children. If we discover that personal data from a child has been gathered without verified parental consent, we take immediate steps to delete the information.
11. Updates to This Privacy Policy
We may periodically update this Privacy Policy to reflect modifications to our platform features, integrations, or legal compliance standards. When updates occur, the "Last Updated" date at the top of this document will be amended accordingly. Continued use of SynVoice constitutes acceptance of the revised policy.
12. Contact Information & Developer Inquiries
If you have any questions, concerns, or requests regarding this Privacy Policy, your personal data, or our Google OAuth integration, please contact our Data Protection and Support team:
Application Name: SynVoice (https://synvoice.io)
User Support Email: cs@synvoice.io
Developer Contact Email: jigargurmani@gmail.com
Questions regarding Google OAuth or data compliance?
Contact Privacy Officer→