Back to home

Privacy Policy

How VoiceCloner handles voice samples, generated audio, and anonymous usage data.

Last updated: 2026-07-29

Overview

VoiceCloner supports anonymous use and optional accounts. This policy explains what data is processed when you create a voice profile or generate speech.

Voice Data

  • Anonymous uploaded samples are sent to our voice technology provider solely to create the voice profile you request, and are not saved by VoiceCloner after the request.
  • Signed-in uploaded samples are stored in a private Cloudflare R2 bucket under a user-scoped profile path so you can use the profile from another browser. The database stores the object key and file metadata, not the audio bytes.
  • Voice profiles created anonymously expire after approximately 30 minutes. Signed-in profiles remain available until you delete them. Deleting a signed-in profile removes the R2 object and requests deletion from the provider.
  • Generated audio is streamed back to your browser. VoiceCloner does not save the generated MP3 in its own database or object storage.
  • The provider may process limited operational data under its own privacy and retention terms. Deletion requests can take time to propagate through provider systems and backups.

Do not upload a voice unless you own the rights to it or have the speaker's explicit permission.

Anonymous Usage and Security Data

To enforce free limits and prevent abuse, we derive a one-way keyed hash from network and browser signals such as your IP address and user agent. We store the hash, the one-time trial credit snapshot, lifetime credits consumed, clone-attempt counters, voice-session status, timestamps, and limited provider request or error identifiers. We do not store your raw IP address in our application database.

Cloudflare may process network, device, and security information to deliver the site, run Turnstile, and protect the service. Your browser may also store a language preference cookie.

Service Providers

We use:

  • ElevenLabs to create voice profiles and generate speech.
  • Supabase to host account, voice-profile, quota, and session metadata.
  • Cloudflare R2 to store source samples for signed-in voice profiles in a private bucket.
  • Cloudflare to host and secure the website, provide bot protection, and connect to the database.

We do not sell personal information. We may disclose information when required by law, to investigate abuse, or to protect users and the service.

Retention and Security

Anonymous voice profiles expire after approximately 30 minutes. Signed-in source samples remain in private R2 until the user deletes the profile. Anonymous quota, generation, and deleted-session metadata may be retained for up to 45 days for abuse prevention and operational troubleshooting, unless a longer period is legally required. Cloudflare and ElevenLabs maintain their own retention schedules.

We use encryption in transit, restricted secrets, rate limits, short-lived session tokens, and access controls. No internet service can guarantee absolute security.

Your Choices and Rights

You can delete signed-in profiles from your voice library, end anonymous sessions from the tool, and clear local browser data. Depending on your location, you may have rights to access, correct, delete, restrict, or object to processing of personal data. Contact us if you need help locating a record.

Changes and Contact

We may update this policy as the product or law changes. The date above identifies the latest version. Questions or privacy requests can be sent to support@voicecloner.org.