Legal / Privacy

Privacy Policy.

Effective 27 August 2026 · Last updated 27 August 2026 · All policies

This document describes how AURA actually behaves. It is not legal advice. A qualified lawyer should review it before App Store submission.

1. Who we are

AURA is made by Everyday Digital Solutions (“we”), reachable at Contact@auraclevoice.com and via everydaydigitalsolutions.com. Everyday Digital Solutions is the data controller for any processing described here.

Registered postal address: Everyday Digital Solutions, Tecfin Tower, 264–265, Phase 8B, Sector 74, Sahibzada Ajit Singh Nagar (Mohali), Punjab 140307, India. GSTIN 03IOMPS6720H1ZL.

2. The short version

AURA has no server and no account. We do not collect, receive, store, sell, or share any personal data. Everything AURA knows lives on your iPhone.

3. What AURA handles, and where it stays

WhatWhere it livesLeaves your device?Kept for
Voice audioMemory only, during a requestNoDiscarded the moment it becomes text. Never written to disk.
Conversation historyOn your deviceOnly the text of a request, and only if routed to a provider you connectedUntil you delete it, or not at all if history is switched off
Long-term memoriesOn your deviceNoUntil you delete them
API keysiOS Keychain, device-onlyOnly to the provider they authenticate, over HTTPSUntil you remove them
Settings and usage countsOn your deviceNoUntil you delete the app
LocationRead once, on demandOnly if answering requires a provider you connectedNever stored
Calendar and remindersRead via Apple’s frameworksNoNever stored
Diagnostic logsYour device’s system logNoRotated by iOS

4. What we never collect

No analytics, no advertising identifier, no crash-reporting service, no tracking, no fingerprinting, no email address, and no account.

Payments. There are none. AURA is free, with no subscription and no in-app purchase, so we hold no billing relationship with you and receive no payment information of any kind. If a paid tier is introduced in a future version, Apple would process it entirely and no card details would ever be entered into AURA or transmitted to us. See Pricing.

5. When data leaves your device

Only when you have connected your own API key and a request is routed to that provider, or when a web search runs.

What is sent: the text of your request, relevant recent conversation context, and any stored memories that apply. What is never sent: your audio, your API keys to anyone but the provider they belong to, or anything whatsoever to Everyday Digital Solutions.

6. Third parties

We have no sub-processors, because we process no user data. The parties below are your vendors — chosen, connected, and paid for by you. Data reaches them only if you connect them.

PartyWhen data reaches themWhat is sentYou contract with
Anthropic Only if you add an Anthropic key and a request routes to Claude Request text, recent context, applicable memories; web search runs on their side You, billed to your Anthropic account — privacy
Google Only if you add a Gemini key and a request routes to Gemini The same shape of data You, billed to your Google account — privacy
Apple On-device frameworks — no transfer Nothing privacy
GitHub, Inc. (GitHub Pages) Serving this website Standard server request logs kept by the host Us — privacy

This website is served by GitHub, Inc. on GitHub Pages. GitHub keeps standard request logs for delivery and security. We run no server of our own and neither receive nor have access to those logs. The app never contacts this website.

7. Apple’s own processing

Speech recognition and on-device answering use Apple frameworks running locally on your iPhone. Nothing is transferred. If Apple’s Private Cloud Compute is enabled in a future version, those requests would go to Apple under Apple’s privacy terms and the app would label such answers as such. It is disabled today.

8. Permissions, and why each is needed

These are the exact words the app shows you. Every permission is optional, each is requested in context rather than at launch, and all can be revoked in iOS Settings at any time.

PermissionWhat the app says
Microphone“AURA uses the microphone only while you are talking to it, so it can hear your request. Audio is transcribed on your iPhone and is not stored.”
Speech Recognition“AURA converts your speech to text on your iPhone so it can understand and answer your request.”
Location (when in use)“AURA uses your location only when you ask a question that needs it, such as where you are or the weather nearby. Your location is used for that answer and not stored.”
Calendar“AURA reads your calendar so it can tell you what’s coming up and whether you’re free. It never changes or deletes your events.”
Reminders“AURA reads and creates reminders so you can add things to your list by voice and ask what’s outstanding.”
NotificationsFor alerts you ask AURA to schedule.

9. Your rights and choices

Because there is no server, you exercise every right locally and immediately, without asking anyone:

  • View and delete any memory, or delete all of them, in Settings → Privacy → Memory.
  • Switch memory off, so nothing new is remembered.
  • Switch conversation history off, or delete all of it.
  • Remove an API key in Settings → Connect a Provider.
  • Revoke any permission in iOS Settings → Privacy & Security.
  • Delete the app. That removes conversations, memories, settings, and Keychain entries. Everything. There is no server-side copy, because there is no server.

You also hold the statutory rights of access, rectification, erasure, portability, restriction, objection, and non-discrimination. Stated honestly: we hold no data to which they could apply. If you connect a provider, you become that provider’s data subject for the requests you send them, and exercise those rights with them directly. Any question: Contact@auraclevoice.com.

10. UK & EU (GDPR)

Everyday Digital Solutions is the controller. No processing of personal data by us occurs: the app has no server and transmits nothing to us. Processing on your iPhone happens under your sole control, on your device.

Where a lawful basis is ever needed: for this website, none is required, as it sets no cookies and runs no analytics. For app functionality you invoke, the basis is performance of the agreement between you and us under the Terms. No automated decision-making with legal or similarly significant effect takes place. You may lodge a complaint with your local supervisory authority; questions to us first are welcome.

[Whether an Art. 27 EU/UK representative is required to be confirmed before submission.]

11. California (CPRA/CCPA)

Categories of personal information collected: none. We collect, receive, and store no personal information from any user. We do not sell or share personal information and never have, so there is nothing to opt out of. The rights to know, delete, correct, opt out of sale or sharing, limit use of sensitive information, and non-discrimination all apply, and you exercise them on your device as described in section 9. No financial-incentive programs exist.

12. Children

AURA is not directed at children and collects nothing from anyone, child or adult. It is not designed for the App Store Kids Category. Generative output is not age-filtered by us: answers from your iPhone are subject to Apple’s model safety, and answers from a provider you connected to that provider’s. Parents sharing a device with children should use iOS Screen Time and Content & Privacy Restrictions.

On COPPA and the UK Age Appropriate Design Code: since no data is collected from any user, there is no verifiable-parental-consent mechanism to operate — there is nothing to consent to.

13. Security

  • API keys are stored in the iOS Keychain marked device-only, excluded from iCloud Keychain and from encrypted backups.
  • Keys are never redisplayed after entry and never written to logs.
  • Conversations and memories stay on the device, with no sync.
  • All provider traffic is HTTPS.
  • Logs never contain conversation content, credentials, or full request URLs.
  • No private or undocumented Apple APIs are used.
  • AURA refuses to store credentials as memories — passwords, PINs, card numbers, API keys and recovery phrases are rejected by policy, in code.

On-device data is protected by your iPhone’s own passcode and Data Protection. Set a passcode — it is the lock on everything AURA holds.

Responsible disclosure. Found a vulnerability? Email Contact@auraclevoice.com with the subject prefix [Security]. We will acknowledge, investigate, and credit you if you would like credit. This address is also published at /.well-known/security.txt.

14. This website

It sets no cookies. It loads no trackers, advertising pixels, analytics scripts, social embeds, or third-party fonts — the typefaces are served from this domain. There is therefore no consent banner, because there is nothing to consent to. If that ever changes, this page will say so first.

15. AI output and acceptable use

Answers are generated by AI and may be inaccurate, out of date, or incomplete. Verify anything that matters. AURA’s output is not professional advice and AURA is not an emergency service.

Every answer is labelled with where it came from — your device, or the named provider you connected. AURA never claims an answer came from your device when it did not. We do not train, fine-tune, or operate any model, and no user data is ever used for training by us.

Do not use AURA for unlawful purposes, to generate content that violates your chosen provider’s usage policies, or to harass, deceive, or harm others. To report problematic AI output, email with the [AI Report] prefix; see Support. Because output is generative and can include web results, the App Store age rating reflects unfiltered AI-generated content.

16. International transfers

None by us. If you connect a provider, that provider’s own transfer terms apply between you and them.

17. Changes

Changes are posted on this page with a new effective date.

18. Contact

Contact@auraclevoice.com, subject prefix [Privacy].