PRIVACY · EFFECTIVE JULY 29, 2026
What we do with your voice.
Buna is a voice dictation product for Android, iPhone, iPad, Mac, the Buna keyboard, and the web. This policy explains the information Buna processes, why it is needed, and the choices available to you.
1. Voice and audio
When you start dictation, Buna records your microphone only for that dictation. On Android, live audio may be streamed securely to Google Cloud Speech-to-Text. A completed or fallback recording may also be sent through Buna's Firebase-hosted transcription service and processed by Google Cloud services, including Vertex AI/Gemini. If those services are unavailable, Buna may use OpenAI as a transcription or text-processing fallback.
A short-lived audio file is created in the app's private cache while you dictate and is deleted after the request finishes or is canceled. Longer fallback recordings may be placed temporarily in a private Cloud Storage path and are deleted when processing finishes. Buna does not keep a library of your audio and does not use your voice for advertising.
2. Transcripts and text
Successful dictations are saved to your private Buna history so you can recover, copy, and sync them across signed-in devices. History is stored in Google Firestore in the United States until you delete individual items or delete your account. Custom vocabulary and snippets are primarily stored on your device; vocabulary hints you choose may be sent with a transcription request to improve recognition.
Buna does not sell your transcripts, use them for advertising, or use them to train a Buna-owned model.
3. Android Accessibility service
The optional floating assistant uses Android Accessibility to detect when a visible editable field has focus and to insert your finished dictation into that field. Existing field text is read on-device only at the moment Buna appends your dictation. Password, payment, and other sensitive fields are ignored. Existing field text, focused-app information, and screen contents are not stored in your Buna account or sent to Buna's servers by the Accessibility service.
4. Account information
Buna uses Google sign-in through Firebase Authentication. We process your Firebase user ID, email address, and display name when available. We do not receive your Google password. This information is used to authenticate you, sync your history and settings, prevent abuse, provide support, and apply the correct usage allowance.
5. Usage and diagnostics
Buna records the seconds and number of dictations used in each billing period, selected language and product surface in broad categories, subscription status, and content-free operational diagnostics such as request identifiers, timing, model/provider name, character counts, and bounded error codes. Raw audio, transcript text, authentication tokens, payment credentials, and focused-field contents are excluded from production logs.
On iOS, Buna uses Firebase Crashlytics (a Google service) to collect crash reports and related diagnostics — stack traces, device model, operating system version, an app-installation identifier, and app performance signals — from the app and its keyboard extension, so crashes can be found and fixed. Crash reports never contain what you said, typed, or translated. This data is not used for advertising or cross-app tracking.
Buna does not include advertising SDKs and does not use your information for cross-app tracking or targeted advertising.
6. Payments
For Android customers outside countries where Google Play Billing is unavailable, Google Play processes subscription payment details and RevenueCat validates and synchronizes purchase status. Buna and RevenueCat receive a pseudonymous Buna user ID, product and purchase identifiers, plan, subscription status, renewal or expiration dates, and limited device/technical information needed to operate and prevent fraud. Buna does not receive your full card or Google Play payment credentials.
For customers whose Google Play storefront is Ethiopia, where Google Play Billing is unavailable, Buna may offer a 30-day prepaid pass through Chapa. Buna sends Chapa the email address and, when available, a payment-safe first name needed for checkout and a transaction reference. Buna stores the selected plan, amount, currency, transaction reference, status, and access expiration. Chapa, not Buna, receives and processes your card, bank, or mobile-money payment credentials. Chapa passes do not renew automatically.
Purchases on Apple platforms are processed by Apple. Eligible web or Mac purchases may be processed by Stripe. Buna stores only the plan and entitlement information required to grant access and prevent duplicate subscriptions across providers.
7. Service providers and security
Buna uses service providers including Google/Firebase/Google Cloud, RevenueCat, Chapa, Apple, Stripe, and, for configured fallback processing, OpenAI. They process data to provide services to Buna under their own security and privacy obligations. Buna encrypts data in transit using HTTPS or TLS and restricts stored account data with authenticated access controls.
8. Retention and deletion
Transcripts remain in your account until you delete them. Account, entitlement, usage, referral, and payment-status records are retained while your account is active and as needed for security, fraud prevention, legal, tax, and transaction-record obligations. Temporary audio is deleted as described above.
You can delete individual transcripts from History. You can delete your account and associated stored Buna data in the app under Settings → Delete account. If you cannot access the app, email hello@bunavoice.com from the address linked to your account. Backups and records that must be kept for legal or fraud-prevention purposes may take additional time to age out or may be retained only for the required period.
9. Children, changes, and contact
Buna is not directed to children under 13, and we do not knowingly collect personal information from children under 13. We may update this policy as Buna changes; the effective date above identifies the current version.
