Privacy Policy
1. Who we are
Unvent is a browser extension that rewrites text you are composing, in place, in a tone you choose. Unvent is operated by Unvent ("we", "us", "Unvent"). We are the organisation responsible for your personal data under Singapore's Personal Data Protection Act (PDPA).
For any privacy question, access or correction request, or data-protection matter, you can reach our data-protection contact at jobuildsstuff@gmail.com. We will respond as required by law.
2. Your drafts are never stored
The text you ask Unvent to rewrite is processed in memory for the duration of the request and then discarded. It is never stored by Unvent, never written to a log, and never used to train shared AI models. Rewriting happens through a cloud AI model provider, which processes your text only to generate your rewrite and never uses it to train its models. The provider does not retain your text for any general purpose; it may retain inputs briefly and solely to detect abuse or enforce its usage policies, after which they are deleted, and never for any other use. Model names and providers are operational details that do not appear in the product.
2a. Unvent Flow: your voice never leaves your device
Unvent Flow (Flow Mode in the extension) captures your microphone only while you are actively speaking, and transcription happens on your device using your browser's built-in on-device speech recognition. No audio ever leaves your device. To sharpen the result, a feature called Flow+ sends the finished text transcript (never the audio) to Unvent's processor to be cleaned up, handled exactly like drafts under section 2: processed in memory, never stored, never logged, never used to train any model. Flow+ is on by default and you can turn it off anytime in the extension's settings; with it off, the transcript stays on your device and cleanup runs entirely on your device. The cleaned-up transcript is placed into the text field you are writing in and belongs to you; if you later ask Unvent to rewrite that text, it is handled like any other draft under section 2. Microphone access is granted by you through the normal browser prompt and can be revoked at any time in your browser's site settings. If your browser does not support on-device speech recognition, Flow Mode is simply unavailable; Unvent never falls back to cloud speech processing.
3. What we store
- Your account email address and your plan type.
- Your scheduled plan change and its effective date, if one is pending (used to apply a deferred downgrade at your next renewal). This is a status field only; it contains no draft text.
- Anonymous daily usage counts (numbers only, never any text).
- Your settings (tone, theme, the sites you've turned Unvent off on).
- Your Voiceprint: derived style settings only (e.g. typical sentence length, greeting style), never your actual text or any summary of it.
- Audience profiles you deliberately create and name (for example, "My manager" with a formality and length preference). These are configuration you write; they are stored in your browser and synced to your browser profile. When you rewrite for a chosen audience, a compiled descriptor is sent to the rewrite model together with your draft so the model can tailor the tone. That descriptor is never stored, logged, or used to train shared AI models: the same promise that applies to your drafts applies to your audience configuration.
- Your credit wallet balance and a ledger of credit grants, purchases, and usage (counts and timestamps only, never any text).
- Your membership status, including which Founding variant is active (Founding or Founding Plus), if applicable, alongside your Founding Member number and bonus-credit (drip) progress.
- Billing identifiers: an opaque Stripe customer identifier and an opaque Stripe subscription identifier, stored so we can manage your subscription. These are Stripe-generated references only; we do not store your card number, expiry, or any full payment-card data, and we do not store the email address that Stripe holds on its side.
- Founding and slot accounting: your Founding Member number (if any), the active Founding variant (Founding or Founding Plus), active-slot flag, a reclaim-window timestamp (up to 90 days after a lapse), a pending-slot flag (set briefly if the slot cap is full at the moment of payment), and reserved-slot counts used for slot-cap enforcement. The 500-slot cap is shared across both Founding variants. These are status and accounting fields only; they contain no draft text.
- Billing event processing log: a deduplication log of processed billing webhook events (event identifiers and timestamps only) used to prevent double-processing. Billing dispute and chargeback events received from Stripe may also be processed and recorded. No payment-card data or draft text is included.
- An internal administration log: a record of account-level actions we take on your account (for example, a credit grant or refund, a Founding status change, or an account freeze), including the type of action and the date and time. This log exists for our own accountability and abuse-response purposes, is never shown publicly, and contains no draft text.
- Shared cards (only if you choose to share one): see section 6 below. When you share a card we generate a public link that shows only non-text values (such as your persona type, your Founding Member number if you have one, and aggregate counts), never any text you wrote.
- Feedback you choose to send us via the feedback form.
Sign-in tokens are short-lived and stored only in hashed form; the raw token is never kept. We never store your drafts, your rewrites, the "Tune for…" context you type, or recipient names.
4. Analytics
Product analytics are off by default. If you turn them on in Settings → Privacy, we collect anonymous, content-free usage events (for example, "a rewrite was applied") tied to a random per-device id, never your draft text and never the URLs or specific sites you visit. You can turn analytics off at any time, which deletes the random id. We do not use your data for advertising and we do not sell it.
Our website at unvent.app (separate from the extension) uses Google Analytics to understand how many people visit, which pages they view, the campaign parameters on links they followed, and whether they join the waitlist. Google Analytics sets cookies on your device and, as a measurement provider acting on our behalf, processes usage data including an approximate location derived from your IP address. It never receives your name or the content of anything you type. We do not use this data for advertising and we do not sell it. You can prevent it by blocking analytics cookies in your browser or with a content blocker, or by using Google's Analytics opt-out add-on.
5. Service providers
We use a small number of service providers to run Unvent, each processing data on our behalf, only as needed to operate the service, and under their own data-protection terms:
- a cloud hosting and database provider that runs our servers and stores the limited account data listed above;
- a cloud AI model provider that performs rewrites and never uses your text to train its models (see section 2);
- an email provider that delivers your sign-in links;
- an analytics provider (PostHog) in the extension, used only if you opt in (see section 4);
- Google Analytics on our website, used to measure visits and waitlist signups; it sets cookies and processes usage data (including approximate, IP-based location) on our behalf (see section 4);
- Stripe, our payment processor, if you subscribe to a paid plan (see below);
- Form hosting (Netlify): if you submit the feedback form at unvent.app/feedback, the category you pick, your message, and an optional email address are processed and stored by Netlify (our site host) and delivered to us. We use them only to fix problems and improve Unvent, review submissions as they arrive, and delete them within 12 months. You can ask us to delete your submission earlier by writing to jobuildsstuff@gmail.com.
Some of these providers may process data outside Singapore. Where data is transferred abroad, we take reasonable steps so that it remains protected to a comparable standard, as required by the PDPA. We keep a current list of these providers and will share their names on request at jobuildsstuff@gmail.com.
Payment processing (Stripe). If you subscribe to a paid plan, payments are processed by Stripe, Inc. Stripe acts as our payment processor and handles your card details directly on our behalf. We do not store your card number, expiry, CVV, or any full payment-card data on our servers. We do not store the email address that Stripe holds in its own customer record. Stripe operates under its own privacy policy and data-protection terms; see stripe.com/privacy.
6. Shareable cards (only when you share)
Unvent lets you collect persona and Founding Member cards. If you choose to share one, we generate a public link (in the form unvent.app/c/ plus a short code) and a small preview image for it. The shared page is cookieless and shows only the non-text values you chose to share: your persona type, your Founding Member number if you have one, and aggregate counts. It never shows any text you wrote, by design: the link encodes only fixed, numeric values.
A shared link is public and may stay accessible indefinitely; anyone with the link, and search or social-media previews, can see it. Sharing is entirely your choice and nothing is shared until you create a link.
7. Your rights & choices
You are in control of your data. Directly in the product, you can:
- Delete your Voiceprint: Settings → Privacy → "Delete my Voiceprint".
- Delete your account and all associated data: Settings → Privacy → "Delete account & data".
- Turn analytics on or off: Settings → Privacy (off by default; turning it off deletes the random id).
Under Singapore's PDPA you also have the right to access the personal data we hold about you, to correct it if it is inaccurate, and to withdraw your consent to our use of it (which may mean we can no longer provide parts of the service). Depending on where you live, you may have further rights, for example to access, correct, delete, or port your data, or to object to certain processing. To exercise any of these, email jobuildsstuff@gmail.com and we'll help.
If you are not satisfied with how we have handled your data, you may complain to Singapore's data-protection regulator, the Personal Data Protection Commission (PDPC), at pdpc.gov.sg. Users in the EU or UK may instead complain to their local data-protection authority.
8. Data retention & security
We keep the limited data listed above only while your account exists; deleting your account removes it. Some records we are required to retain for a short period for legal, accounting, or fraud-prevention reasons (for example, billing event logs) are kept only for as long as needed for those purposes and then deleted.
We protect your data with reasonable security measures, and data is encrypted in transit and at rest. If a data breach occurs that is likely to cause significant harm to you, or that meets the notification threshold under the PDPA, we will notify the PDPC and affected individuals as and when the law requires.
9. Children
Unvent is not directed to children under 13, and we do not knowingly collect personal data from anyone under 13. If you believe a child under 13 has used Unvent, contact us at jobuildsstuff@gmail.com and we will delete the data.
10. Changes
We may update this policy; we'll change the "Last updated" date above and, for material changes, give notice in the product.
11. Contact
Questions or requests: jobuildsstuff@gmail.com.