Privacy policy
Your recordings are yours.
Effective October 4, 2026 · Updated October 4, 2026 to cover text to speech and auto-tagging
unCued is an memorization app at uncued.app, run by Jason Sproule ("we"). This page explains what we collect, why, and the choices you have. We don't sell your data, show ads, or use analytics or tracking tools.
What we collect
- Account details: your email address and display name. If you use a password, we store only a secure hash of it, never the password itself.
- Google sign-in: if you continue with Google, we receive your Google account ID, email address, whether Google has verified that email, and your name. We don't receive your Google password, contacts, files, or anything else in your Google account.
- Your practice content: the audio you upload or record, its file name and length, the projects you create, any text you add, phrase chunks, settings, and practice progress.
- Text to speech: if you create audio from text, a record of how many characters you used and when, so monthly limits can be applied.
- Beta requests: if you request access, the name, email, and optional note you submit.
- Security records: sign-in events (including failed attempts), the IP address used for rate limiting to prevent abuse, and standard web server logs (IP address, browser type, pages requested, and time).
How we use it
- To create and secure your account and keep you signed in.
- To store, sync, and play back your recordings and practice data across your devices.
- To enforce plan limits, such as the free plan's five-minute upload length.
- To review beta requests and to contact you about your account when necessary.
- To protect the service from abuse and investigate problems.
unCued's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements. We use Google sign-in data only to sign you in and identify your account.
Who can see your content
Your projects, recordings, and text are private to your account. Audio is stored outside the public website and is only played back to you after we check that you own it. The administrator can see account details (name, email, plan, and sign-in method) to manage accounts, but the app gives the administrator no way to browse or play other users' recordings.
Services involved
- Hosting: the app and your data are stored on a server we rent from Hostinger.
- Google: handles sign-in when you choose "Continue with Google".
- ElevenLabs: if you use "Create audio from text" (a Premium feature), the text you enter is sent to ElevenLabs to generate the spoken audio, under ElevenLabs' privacy policy. Your name, email, and recordings are not sent. The generated audio is saved to your account like any other track.
- Anthropic (Claude): if you tick "Auto-tag delivery with Claude", the same text is first sent to Anthropic's Claude to suggest delivery tags, under Anthropic's privacy policy. Anthropic does not use API data to train its models. Your name, email, and recordings are not sent.
- Your browser's speech recognition: the optional speech comparison mode uses the speech recognition built into your browser. Depending on your browser, your voice may be sent to the browser maker (for example Google for Chrome, or Apple for Safari) to be transcribed, under their privacy policies. We don't receive or store that audio. If you don't use speech comparison, nothing is sent.
Cookies and local storage
We use one cookie, bh_session, to keep you signed in. It's essential, lasts up to 30 days, and is cleared when you sign out. The app also saves its files on your device so it can open quickly and work offline. We don't use advertising or tracking cookies.
How long we keep it
We keep your account and practice content until you delete it or ask us to delete your account. Recordings and projects you delete in the app are removed from our server. Expired sign-in sessions are removed automatically. Security records are kept only as long as needed to protect the service.
Your choices
- Download any track as a portable .byheart backup from within the app.
- Change your password or connect Google in Account settings.
- Ask for a copy of your data, for corrections, or for your account and everything in it to be deleted by emailing sproule.jason@gmail.com. We'll respond within 30 days.
- You can also remove unCued's access from your Google account at myaccount.google.com/connections.
Children
unCued isn't directed at children under 13, and we don't knowingly collect their personal information. If you believe a child has created an account, contact us and we'll delete it.
Changes
If we change this policy, we'll update this page and the effective date above. For significant changes, we'll let account holders know in the app or by email.
Contact
Questions or requests: sproule.jason@gmail.com