Back to home
Privacy-first by design

Privacy Policy

PageVoice lets you convert PDFs to audio anonymously or sign in with an existing account during the shutdown grace period. This page explains how your data is handled in each case.

Last updated: August 16, 2026Your privacy, our priority

Privacy in plain language

You can convert PDFs without an account during the shutdown grace period. New account registration and subscription sales are closed. If you already have an account or had a PageVoice Plus subscription, we store the account and subscription details described below. We also record limited operational metrics to measure usage, enforce limits, and improve reliability. PageVoice does not keep a server-side document library, but documents and audio can remain in your browser as explained below.

No tracking cookiesTemporary server processingMinimal data collection

Temporary processing only

PDFs are held temporarily on our servers while text is extracted, then removed after the processing request completes. A browser-local copy can remain on your device.

Transparent infrastructure

We list the providers that may process account, document, payment, or speech data and describe the role each one performs.

Browser-local storage

Preferences use localStorage, documents use IndexedDB, and generated speech uses the browser Cache API. Clearing only localStorage does not remove documents or cached audio.

What we collect — and what we don't

The service is designed to be minimal. Here is what we store depending on how you use it.

Anonymous users

No account or email is required. Requests still generate limited operational records, including a shortened one-way hash of the requesting IP address, as described below.

Account holders

Firebase stores your user ID, email address, account timestamps, subscription plan, usage and quota information, and any legacy balance field. For subscribers, we also store the Lemon Squeezy customer and subscription identifiers and current subscription status needed to provide access and billing management.

Documents and audio in your browser

PageVoice stores the PDF, extracted text, and document metadata in IndexedDB on your device so the reader can work locally. Generated audio is cached in the browser Cache API, is configured with a 24-hour expiry, and is removed when PageVoice next performs cache cleanup or when you or the browser clear site data. Browser eviction can happen sooner.

Privacy-preserving service analytics

We do not use tracking cookies, marketing pixels, fingerprinting, or behavioural profiling. We record limited operational events such as file size, page count, language, voice, model, text length, endpoint, and pseudonymous identifiers such as a shortened one-way hash of the requesting IP address or an HMAC-derived user identifier for signed-in activity. Filenames, document text, raw IP addresses, email addresses, and raw Firebase user IDs are not included in these analytics events. Event-level data is retained according to our configured Google Cloud and BigQuery retention settings and only for as long as needed for service operations, security, billing analysis, and reliability. Aggregated statistics may be retained for longer.

How the service works

Every conversion follows the same short-lived sequence. Here's what happens from upload to audio playback.

Step 1

PDF processing

Your PDF is held temporarily on our servers while we extract its text, then removed after the processing request completes. The PDF and extracted text are also stored in IndexedDB on your device so the local reader can continue to display them.

Step 2

Audio generation

We stream generated audio to your device instead of placing it in a PageVoice server-side audio library. Your browser can cache the audio through the Cache API for playback, subject to the expiry and cleanup behaviour described above.

Step 3

Authentication (optional)

If you choose to sign in, Firebase Authentication manages your session. PageVoice stores the account fields described above in Firestore; Firebase may also retain authentication-provider information needed to operate your sign-in method.

Step 4

Payment processing (optional)

PageVoice Plus subscriptions are handled by Lemon Squeezy as Merchant of Record. We do not receive or store your full payment card details, but we store the billing identifiers and subscription status needed to provide access and open the billing portal.

Step 5

Operational metrics

Limited service events are written to Google Cloud logs and exported to BigQuery so we can measure usage and costs, enforce limits, prevent abuse, and troubleshoot reliability. These events exclude filenames and document text.

Third-party service providers

Google Cloud (TTS & Document AI)

Hosts backend processing and operational logs and may provide Document AI text extraction and text-to-speech synthesis. Firebase account services also run on Google infrastructure.

Cloudflare

Proxies API requests and applies security and rate-limit controls.

Firebase (Authentication & Firestore)

Manages user sign-in and stores the PageVoice account, usage, and subscription fields described in this policy on Google Cloud infrastructure.

Inworld and Amazon Web Services (AWS)

May receive extracted text and voice settings to generate speech through Inworld TTS or Amazon Polly.

Modal, DeepInfra, and Replicate

May receive extracted text and voice settings when configured specialist speech models are selected or used as a fallback.

Lemon Squeezy

Acts as Merchant of Record for PageVoice Plus subscriptions, handling checkout, payment processing, tax collection, subscription management, and refunds.

Provider handling

We send each provider only the data needed for its role. Provider handling is governed by the applicable service agreement, data-processing terms, and privacy policy; PageVoice does not make broader retention or model-training promises than those arrangements support.

Data security

We protect every stage of the workflow, whether you use the service anonymously or with an account.

  • HTTPS/TLS encryption protects every upload and audio stream.
  • Processing happens inside isolated, access-controlled environments.
  • Temporary server files are deleted after each processing request completes.
  • Authentication tokens are transmitted securely and verified server-side.
  • Payment card data is handled entirely by Lemon Squeezy; it never touches our servers.
  • Rate limiting safeguards the platform against abuse.
  • We enforce a 16MB upload cap to keep processing fast and predictable.

Your rights

  • Clear localStorage to remove saved preferences, or clear all PageVoice site data in your browser to remove preferences, IndexedDB documents, and Cache API audio together.
  • Request deletion of your PageVoice account and associated account data by emailing [email protected]. Cancelling a PageVoice Plus subscription and deleting a PageVoice account are separate actions.
  • Request a copy of the personal data we hold about your account, usage, and subscription.
  • Lodge a complaint with your local data protection authority if you believe your rights have been violated.

Legal basis

  • Performance of the service you request, including the temporary handling needed to process a PDF and generate speech.
  • Legitimate interest in measuring service usage, preventing abuse, and maintaining reliability with limited operational metrics.
  • Contractual necessity for creating and operating an optional account and PageVoice Plus subscription.
  • Legal obligations that apply to payment, tax, accounting, consumer-rights, or data-protection records.

International transfers

  • Some providers operate globally. Where required, international transfers rely on applicable safeguards such as Standard Contractual Clauses or another valid transfer mechanism.
  • Firebase stores account data on Google Cloud infrastructure and its location and transfer arrangements are governed by the applicable Firebase and Google Cloud terms.
  • Processing remains temporary regardless of location.
  • We review provider roles and contractual safeguards as part of operating the service.

Children's privacy

The service is not intended for children under 16. We do not knowingly collect personal information from children. If you believe a child has created an account, please contact us at [email protected] so we can remove it.

Keeping this document current

We update this policy whenever the service changes. The latest version will always live on this page with a refreshed "Last updated" date. Registered users will be notified of material changes by email.

Data controller and contact

Kodkvarteret AB, Råbygatan 11 B, 223 61 Lund, Sweden, is the data controller for PageVoice. For privacy questions or requests, email [email protected].

Privacy by design, every time

Convert your PDFs to audio with a short-lived document pipeline and transparent, limited operational metrics.