Privacy & Cookies Policy
Last Updated: January 20, 2026
At Voysee, your privacy is our priority. This Privacy & Cookies Policy explains how we collect, use, store, and protect your personal information when you use our website or app. It also outlines your rights under applicable laws including the General Data Protection Regulation (GDPR) in the EU and the California Consumer Privacy Act (CCPA/CPRA) in the U.S.
For any questions, contact us at: privacy@voysee.io
1. Information We Collect
Voysee collects various types of personal and usage data to operate effectively and provide you with the best possible experience. This section details the categories of data we may collect directly or indirectly.
a. Automatically Collected Data (Technical & Usage Information)
When you access or use our platform (website or app), we automatically collect certain technical information, including:
- IP address
- Device type and identifiers
- Browser type and version
- Operating system and version
- Language preferences
- Referring and exit URLs
- Date/time of access
- Clickstream behavior and user interaction data
- App crash logs, performance diagnostics
- Network and carrier information
- Audio playback data (tracks played, duration, completion rates)
b. Location Data
Location data is central to how Voysee works. We collect location information to deliver relevant audio content about nearby attractions and points of interest.
Types of Location Data We Collect:
| Type | Description | When Collected |
|---|---|---|
| Approximate Location | Based on IP address, Wi-Fi networks, or cell tower data | Automatically when using the Service |
| Precise Location | GPS-based coordinates from your device | Only when you grant location permission |
| Background Location | Location updates while the app runs in the background | Only with explicit permission; can be disabled in device settings |
How We Use Location Data:
- To detect your proximity to points of interest and trigger relevant audio content
- To recommend nearby attractions and audio guides
- To improve content relevance and service quality
- To analyze aggregate movement patterns (anonymized) for service improvement
Your Control Over Location Data:
- You can grant or revoke location permissions at any time through your device settings
- You can choose between "While Using the App" or "Always" location access
- Disabling location services will limit or prevent core app functionality
- We do not sell your location data to third parties
c. Cookies and Browser Storage
We use cookies, local storage, and similar technologies to keep Voysee secure, remember your preferences, and, if you allow it, measure site usage with Google Analytics.
Types of Tracking Technologies We Use:
- Session cookies — maintain login sessions
- Consent cookie and local storage — remember your analytics choice and website settings
- Optional analytics technology — Google Analytics only after you choose to allow analytics on the website
- SDKs and local storage (mobile app only) — in our mobile apps for analytics and authentication
Essential functionality remains on regardless of this choice. You can manage your privacy choices at any time using the controls below or through your browser settings.
d. Information You Provide to Us
When you interact with Voysee, you may voluntarily provide us with:
- Account and Profile Data: full name, email address, password (encrypted), username, display name, profile photo, home city, country, preferred language
- Content Preferences: favorite categories (history, art, nature, architecture, etc.), preferred audio length, topics of interest, saved locations, bookmarked content
- Listening Data: audio guides played, listening history, favorites, playlists, ratings, reviews
- Communication Data: support requests, feedback, surveys, email or in-app communication logs
e. OAuth & Third-Party Integrations
We offer sign-in with external services. When you connect these, we may receive the following:
Google Account Integration:
- Basic profile: name, email address, user ID
- Authentication tokens
Facebook Login:
- Name and profile ID
- Email address (optional)
Apple Sign-In:
- Apple ID-linked email (may be randomized)
- Authentication token
Use of third-party login is optional, and any permissions requested will be disclosed at the time of use.
f. Mobile Number & Two-Factor Authentication (2FA)
If you provide your mobile number, we may use it to:
- Enable SMS-based authentication or account recovery
- Notify you of critical account-related activity
We do not use your number for marketing or share it with third parties.
g. Payment & Transactional Data
If you choose to access paid features or make purchases through Voysee, we may collect and process certain payment and billing-related information. This includes:
- Billing details, such as full name, billing address, and contact information
- Payment method, such as the last four digits of a credit/debit card (if provided), payment provider used (e.g., Stripe, Apple Pay, Google Pay)
- Transaction metadata, including: Transaction IDs, Subscription plan details, Purchase timestamps, Payment status, Applicable taxes or currency used
Important: All payments are securely processed through PCI-DSS-compliant third-party payment processors (such as Stripe, Apple Pay, or Google Pay). We do not store or have direct access to full credit card numbers, CVV codes, or other sensitive financial information on our servers at any time.
We may retain limited payment-related metadata for the purpose of:
- Fulfilling our contractual obligations
- Managing subscriptions and invoices
- Detecting fraud or abuse
- Complying with legal, tax, and regulatory requirements
All transactional data is stored and processed in accordance with applicable data protection laws, including GDPR, CPRA/CCPA, and local jurisdiction requirements.
h. User-Generated Content
If you interact with Voysee via reviews, ratings, or community features, we may collect:
- Your username or display name
- Ratings and reviews of audio content
- Comments and feedback
- Uploaded content (e.g., profile images)
Information shared in public features may be visible to other users or the public.
i. Sensitive Personal Data
We do not intentionally collect or process sensitive data such as:
- Health information
- Biometric identifiers
- Political opinions
- Religious beliefs
Unless explicitly provided by you with affirmative consent (e.g., for accessibility preferences such as audio playback speed or captioning needs).
2. Legal Basis for Processing (GDPR & UK GDPR)
If you are located in the EEA or UK, our legal bases for processing your personal data include:
- Performance of a Contract — to provide the services you request, including delivering location-based audio content.
- Consent — where you have given explicit permission, particularly for precise location access and marketing communications.
- Legitimate Interests — for analytics, security, fraud prevention, improving services, and enhancing content recommendations.
- Legal Obligation — when we must comply with the law.
3. Use of Your Information
We collect and process your personal data for the following purposes, in accordance with applicable data protection laws:
a. Service Delivery & Core Functionality
- To create, authenticate, and maintain your user account
- To deliver location-aware audio content based on your proximity to points of interest
- To enable you to save, bookmark, and organize audio guides and listening history
- To personalize content recommendations based on your preferences and listening behavior
b. Service Improvement
- To analyze user behavior and improve the functionality, performance, and design of our platform
- To develop new audio content and features based on aggregated insights and usage trends
- To troubleshoot errors, conduct debugging, and ensure system integrity and security
- To improve location detection accuracy and content triggering
c. Communication
- To send you transactional notifications, including account updates, security alerts, or feature changes
- To provide user support, respond to your inquiries, and manage data subject requests
- To send optional service-related communications, such as new content alerts, feature updates, or relevant recommendations (you can opt out at any time)
d. Analytics & Research
- To perform internal analytics, including usage trends, engagement metrics, and listening patterns
- To conduct aggregated and anonymized research that helps us understand user preferences, improve content, and support strategic decision-making
- To analyze anonymized location patterns to identify popular areas and improve content coverage
e. Legal, Security & Compliance
- To comply with applicable laws, regulations, and legal obligations
- To detect, investigate, and prevent fraud, abuse, unauthorized access, and violations of our Terms of Service
- To protect our rights, property, users, and partners
We do not sell, rent, or lease your personal data to third parties under any circumstances.
Any third-party service providers we use (e.g., analytics, cloud hosting, or payment platforms) are contractually bound to use your data only as instructed by us, and in compliance with relevant privacy regulations.
4. Cookies and Tracking Technologies
a. What Are Cookies?
Cookies are small text files that are downloaded to your device when you visit a website or use an app. They are widely used to make digital platforms work efficiently, recognize returning users, and enhance your experience by personalizing content and remembering preferences.
On the website, we also use local storage to remember preferences and analytics consent. In our mobile apps, we use SDKs and local storage for app-specific functionality.
b. Types of Cookies and Technologies We Use
We use the following categories of cookies and similar technologies:
| Type | Purpose |
|---|---|
| Strictly Necessary | Required for essential platform functionality such as authentication, secure login, consent preference storage, and page navigation. The website or app cannot function properly without these. |
| Functional | Enable personalization and remember user preferences, such as language settings, audio playback preferences, or saved login details. |
| Performance/Analytics | Help us understand how users interact with our services through Google Analytics on the website. These analytics tools remain disabled until you choose to allow them. |
Google Analytics may set its own cookies only after you allow analytics. Other third-party services you choose to use remain subject to their own privacy policies.
c. Managing Your Cookie Preferences
You are in control of your cookie settings and browser storage. You may:
- Choose whether to allow optional analytics through the privacy banner shown when you first access the website
- Revisit your choice at any timethrough the Privacy & Cookies controls on the site and in this policy
- Adjust your browser settings to refuse or delete cookies (note that this may affect functionality)
d. Do Not Track (DNT) Signals
Some browsers offer a "Do Not Track" feature. We currently do not respond to DNT signals, as there is no consistent industry standard for compliance.
5. Data Retention
We retain personal data only for as long as is necessary to fulfill the purposes outlined in this Privacy Policy, including but not limited to:
- Providing and maintaining access to our services
- Fulfilling contractual obligations and user requests
- Complying with applicable legal, regulatory, and tax requirements
- Resolving disputes and enforcing our terms, rights, and policies
Specific Retention Periods:
| Data Type | Retention Period |
|---|---|
| Account Data | Duration of account + 30 days after deletion request |
| Location Data (precise) | 90 days (then anonymized or deleted) |
| Listening History | Duration of account (unless you delete it) |
| Payment Records | As required by tax/legal obligations (typically 7 years) |
| Analytics Data | Anonymized and aggregated; retained indefinitely |
When you delete your account, we initiate the permanent deletion of associated personal data from our active systems within 14 days, unless:
- We are legally required to retain certain information (e.g., for tax, fraud prevention, or regulatory compliance); or
- Limited data must be retained to protect against legal claims, enforce agreements, or fulfill residual business obligations in accordance with our data retention policy.
Where feasible, we will anonymize or aggregate data that is retained for research, statistical, or operational purposes so it is no longer personally identifiable.
6. Your Rights
If You Are in the EU/UK (GDPR)
You have the right to:
- Access your personal data and obtain a copy
- Correct inaccurate or incomplete data
- Delete your data ("right to be forgotten")
- Restrict or object to processing
- Withdraw consent at any time (including location permissions)
- Receive a copy of your data in a portable format (data portability)
- Lodge a complaint with your local Data Protection Authority
If You Are in the United States
Depending on your state of residence (e.g., California, Virginia, Colorado), you may have the right to:
- Know what categories of personal data we collect and why
- Access or request a copy of your personal data
- Request deletion of your data
- Opt out of the sale or sharing of personal data
- Correct inaccurate data
- Limit use of sensitive personal data (including precise geolocation)
Exercising Your Rights
To exercise your rights:
- In-App: Use the Privacy Settings section in your account settings
- Email: Contact us at privacy@voysee.io
- Account Deletion: Request via app settings or email
We will respond to your request within the timeframe required by applicable law (typically 30 days for GDPR, 45 days for CCPA).
We will not discriminate against you for exercising your privacy rights.
7. Children's Privacy
Voysee is not intended for children under 13 (or 16 where required by law, such as in the EU). We do not knowingly collect data from minors.
If you believe a child has submitted data to us, please contact us immediately at privacy@voysee.io, and we will take steps to delete such information.
8. Third-Party Services and Links
Our platform may link to third-party services (e.g., for login, analytics, maps, or attraction websites). We do not control their data practices.
Third-Party Services We May Use:
| Service | Purpose | Privacy Policy |
|---|---|---|
| Google Maps / Apple Maps | Map display and navigation | Google / Apple |
| Firebase | Analytics and crash reporting | Firebase Privacy |
| Supabase | Backend and authentication | Supabase Privacy |
| Stripe | Payment processing | Stripe Privacy |
Please review their privacy policies for more information on how they handle your data.
9. Data Security
We are committed to protecting your personal data and employ industry-standard technical and organizational safeguards to help ensure its integrity, confidentiality, and availability. These security measures include, but are not limited to:
- Encryption: All data is encrypted in transit (using HTTPS/TLS) and at rest using strong encryption standards
- Access Controls: Access to personal data is strictly limited to authorized personnel based on role and necessity, following the principle of least privilege
- Authentication & Authorization: We use secure authentication protocols, including OAuth 2.0 for third-party sign-in (e.g., Google, Apple), and may employ multi-factor authentication (MFA) where applicable
- Network & Infrastructure Security: Our systems are hosted on secure, monitored cloud infrastructure with firewall protection, intrusion detection, and regular vulnerability scanning
- Security Audits: We conduct periodic internal audits and code reviews to identify and mitigate potential security risks
- Monitoring & Incident Response: We maintain real-time monitoring and an incident response plan to address any unauthorized access, data breaches, or security anomalies
Location Data Security:
Given the sensitive nature of location data, we implement additional safeguards:
- Location data is encrypted both in transit and at rest
- Precise location data is retained for limited periods before anonymization
- We minimize location data collection to what is necessary for service functionality
While we strive to use commercially acceptable means to protect your information, no method of transmission over the Internet or electronic storage is completely secure. As such, we cannot guarantee absolute security, but we take all reasonable steps to mitigate risks and respond swiftly to potential threats.
If you believe your account or data may have been compromised, please contact us immediately at privacy@voysee.io.
10. International Transfers
Your information may be transferred to—and processed in—countries outside your jurisdiction, including the European Union, United States, and other locations where our service providers operate.
For EU/UK Residents:
When we transfer personal data outside the EEA or UK, we implement appropriate safeguards, including:
- Standard Contractual Clauses (SCCs) approved by the European Commission
- Adequacy decisions where applicable
- Additional technical and organizational measures as needed
11. Changes to This Policy
We may update this Privacy & Cookies Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors.
- Changes will be posted here with a new "Last Updated" date
- If material changes are made, we will notify users via email or in-app notification
- Your continued use of the Service after changes constitutes acceptance of the updated policy
We encourage you to review this policy periodically.
12. Contact Us
If you have questions, concerns, or wish to submit a data request:
Voysee Privacy Team
Email: privacy@voysee.io
General Support: support@voysee.io
Website: https://www.voysee.io
Data Protection Officer:
For GDPR-related inquiries, you may also contact our Data Protection Officer at: dpo@voysee.io
EU Representative:
If required under GDPR Article 27, details of our EU representative will be provided upon request.