Privacy Policy
Last updated: December 27, 2025
1. Introduction
LegacyCast ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our voice-to-book platform.
2. Information We Collect
2.1 Information You Provide
- Account Information: Name, email address, and password when you create an account.
- Voice Recordings: Audio recordings you create containing your personal stories and memories.
- Text Content: Transcripts, edited chapters, and responses to follow-up questions.
- Payment Information: Billing details processed securely through Stripe (we do not store full credit card numbers).
- Photos and Documents: Any media you upload to include in your book.
2.2 Information Collected Automatically
- Device information (browser type, operating system)
- IP address and approximate location
- Usage data (pages visited, features used, time spent)
- Cookies and similar tracking technologies
3. How We Use Your Information
We use your information to:
- Provide our voice-to-book creation service
- Process audio transcriptions using AI technology
- Generate personalized follow-up questions
- Create and format your book content
- Process payments and manage subscriptions
- Send transactional emails (welcome, export ready, etc.)
- Improve our service and develop new features
- Respond to customer support requests
- Comply with legal obligations
4. AI Processing and Third-Party Services
To provide our service, we use the following third-party AI services:
- OpenAI (Whisper): For transcribing audio recordings to text. Audio is processed and not retained by OpenAI after processing.
- Anthropic (Claude): For generating follow-up questions, chapter outlines, and book content. Text is processed according to Anthropic's usage policies.
These services process your content to provide functionality but do not use your data to train their models without consent.
5. Data Storage and Security
- Audio Files: Stored encrypted on Cloudflare R2 with access controlled by signed URLs.
- Text Content: Stored in encrypted PostgreSQL databases.
- Payments: Processed and stored by Stripe (PCI-DSS compliant).
We implement industry-standard security measures including encryption in transit (TLS) and at rest, access controls, and regular security reviews.
6. Data Retention
- Active Accounts: Data is retained as long as your account is active.
- Deleted Projects: Project data is permanently deleted within 30 days.
- Deleted Accounts: All user data is permanently deleted within 30 days of account deletion.
- Backups: May be retained for up to 90 days for disaster recovery.
7. Your Rights
You have the right to:
- Access: Request a copy of your personal data.
- Correction: Update or correct inaccurate data.
- Deletion: Request deletion of your account and all associated data.
- Export: Download your data in a portable format.
- Objection: Object to certain processing of your data.
To exercise these rights, contact us at privacy@legacycast.com.
8. Cookies and Tracking
We use:
- Essential Cookies: Required for authentication and security.
- Analytics Cookies: To understand how you use our service (can be disabled).
You can manage cookie preferences in your browser settings.
9. Children's Privacy
LegacyCast is not intended for users under 13 years of age. We do not knowingly collect personal information from children under 13.
10. International Data Transfers
Your data may be processed in the United States and other countries where our service providers operate. We ensure appropriate safeguards are in place for international transfers.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email or through our platform. Your continued use after changes constitutes acceptance.
12. Contact Us
For privacy-related questions or concerns:
- Email: privacy@legacycast.com
- Support: support@legacycast.com