← Back to Pawdio

Privacy Policy

Last updated: March 2026

Overview

Pawdio is a macOS dictation application that processes your voice entirely on your device. We are committed to protecting your privacy. This policy explains what data we collect, how we use it, and your rights.

Audio Data

Your audio is never sent to any server. All speech-to-text processing happens locally on your Mac using the Whisper model. Audio is held in memory only during transcription and is immediately discarded afterward. We cannot hear you, and we never will.

Transcription History

Your transcription history is stored in an encrypted SQLite database on your Mac at~/Library/Application Support/Pawdio/. The encryption key is derived from your machine's hardware identifier and stored in your macOS Keychain. Only the Pawdio application, running under your user account, can access your transcription data.

Account & Payment Data

The free tier does not require an account. If you purchase a paid plan, you must create an account with your email and password. Your account is managed by Supabase, which stores your email address and a hashed version of your password. We do not have access to your plaintext password.

Payment processing is handled by Stripe. We do not store your credit card number, billing address, or other payment details. Stripe's privacy policy governs how they handle your payment data. We receive only your email address and subscription status from Stripe.

License Verification

Your license token is stored securely in your macOS Keychain. License verification uses an RSA-signed token that can be validated offline using the embedded public key. However, the app performs a periodic token refresh (approximately every 6 hours while running) to keep your subscription status current. This request includes only your authentication token — no voice, text, or transcription data is ever sent.

Network Requests

Pawdio makes the following network requests:

  • One-time model download — On first launch, the AI transcription model (approximately 150 MB) is downloaded from Hugging Face. No personal data is transmitted.
  • Sign in / sign up — When you create an account or sign in, your email and password are sent to Supabase over HTTPS. This is required for paid plans.
  • Periodic license refresh — Approximately every 6 hours while running, the app refreshes your license token. Only your authentication token is sent — no voice, text, or usage data.

After the initial model download, all transcription happens entirely on your device. No audio or transcription data is ever transmitted.

Analytics & Telemetry

The Pawdio desktop application does not collect analytics, telemetry, crash reports, or usage statistics that leave your device. Features like streaks, word counts, and all-time usage are tracked locally on your Mac and are never transmitted to us or any third party. The app has no tracking pixels, no cookies, and no third-party analytics SDKs.

Website & Cookies

The Pawdio website (this site) does not use analytics or tracking cookies. However, if you purchase a paid plan, the Stripe checkout process may set cookies that are necessary to complete your payment securely. These cookies are governed by Stripe's Privacy Policy. We do not set any first-party cookies on this website.

Data You Can Delete

You can delete all your transcription history at any time from the Settings window. You can also delete Pawdio's data directory entirely by removing~/Library/Application Support/Pawdio/. Uninstalling Pawdio removes the application but does not automatically delete your data directory.

Your Rights (GDPR / CCPA)

If you are located in the European Economic Area (EEA), United Kingdom, or California, you have additional rights regarding your personal data:

  • Right to access — You can request a copy of any personal data we hold about you.
  • Right to deletion — You can request that we delete your personal data. Since Pawdio stores data locally on your device, you can delete it yourself at any time from Settings or by removing the Pawdio data directory.
  • Right to rectification — You can correct any inaccurate personal data.
  • Right to portability — You can request your data in a portable format.
  • Right to restrict processing — You can request that we limit how we process your personal data in certain circumstances.
  • Right to object — You can object to processing of your personal data.
  • Right to opt-out of sale (California) — We do not sell your personal information to third parties.
  • Right to non-discrimination (California) — We will not discriminate against you for exercising any of your CCPA rights.
  • Right to lodge a complaint (EEA/UK) — You have the right to lodge a complaint with your local data protection supervisory authority if you believe your data has been processed unlawfully.

Legal basis for processing (GDPR): We process personal data based on (a) your consent when you provide an email for payment, (b) contractual necessity to deliver the service, and (c) legitimate interest in preventing fraud.

Data controller: Drew Howlett, operating as Pawdio, located in Illinois, United States. To exercise any of these rights, contact us at getpawdiohelp@gmail.com.

Data Retention

Transcription data is stored locally on your device indefinitely until you delete it. Payment records are retained by Stripe according to their retention policy. We retain your email address and subscription status only for the duration of your subscription. After cancellation, we delete your email within 30 days.

Third-Party Services

Pawdio uses the following third-party services:

  • Supabase — Account authentication and subscription management. Supabase receives your email and hashed password. See Supabase's Privacy Policy.
  • Stripe — Payment processing. Stripe receives your email and payment details. See Stripe's Privacy Policy.
  • Hugging Face — One-time AI model download on first launch. No personal data is transmitted.
  • Google — If you choose to sign in with Google, you are redirected to Google's authentication service, which shares your email address and name with us. See Google's Privacy Policy.
  • Apple — If you choose to sign in with Apple, you are redirected to Apple's authentication service, which shares your email address (or a relay address) with us. See Apple's Privacy Policy.

International Data Transfers

Pawdio is operated from the United States. If you are located outside the United States, please be aware that information processed by Stripe (payment data) or transmitted during the one-time model download from Hugging Face may be transferred to and processed in countries outside the European Economic Area (EEA), including the United States. These transfers rely on Standard Contractual Clauses (SCCs) approved by the European Commission, or other appropriate safeguards as required by applicable law. By using Pawdio, you acknowledge these transfers. Your transcription data, however, never leaves your device.

Data Breach Notification

In the unlikely event of a data breach affecting your personal data, we will notify the relevant supervisory authority within 72 hours of becoming aware of the breach, as required by the GDPR. If the breach is likely to result in a high risk to your rights and freedoms, we will also notify you directly without undue delay. Because Pawdio stores transcription data locally on your device, a server-side breach would be limited to payment-related data held by Stripe.

Children's Privacy

Pawdio is not intended for use by children under the age of 13. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us at getpawdiohelp@gmail.com and we will promptly delete such information. In the European Economic Area, the minimum age may be higher (up to 16) depending on your country of residence.

Minimum Age

You must be at least 13 years old to use Pawdio. In jurisdictions where the minimum age for processing personal data is higher (such as 16 in certain EU member states), you must meet that higher age requirement. If you are under the applicable minimum age, you may not use Pawdio or provide any personal information.

Changes to This Policy

We may update this privacy policy from time to time. When we make changes, we will update the “Last updated” date at the top of this page. For material changes that significantly affect how we handle your personal data, we will notify you through the application or by email if you have an account. Your continued use of Pawdio after changes constitutes acceptance of the updated policy.

Contact

If you have questions about this privacy policy or wish to exercise your data rights, contact us at getpawdiohelp@gmail.com.