Legal

Privacy Policy

Effective date: July 28, 2026 · Applies to the Lingua mobile app, version 1.0.0-beta.1 and later.

The short version

1. Who we are

Lingua is a dictionary and learning app for the indigenous and regional languages of the Philippines. This policy explains what data the app handles, what stays on your device, and what we store when you choose to use online features.

2. Data that stays on your device

Most of what Lingua does happens only on your phone. The following data is stored locally and is never sent to us unless you take one of the actions described in section 3:

3. Data we receive when you use online features

The app has three optional online features. Each one sends data to our sync service only when you use it.

3.1 Publishing a contribution to the community

When you agree to publish a word or recording, the app shows a consent notice first. If you confirm, we receive and store:

Published entries become part of the shared community dictionary. Other users of the app can see them and, if signed in, listen to the audio. You choose how the app credits your name.

3.2 Signing in to an account

Sign-in is optional. Every feature of the app works without it. If you sign in, we receive and store:

3.3 Password reset

If you use an email-and-password account and request a reset, we send a one-time code to your email through Resend, an email delivery service. The code expires after 20 minutes.

We also process IP addresses briefly to limit repeated sign-in and registration attempts. This protects accounts from abuse. We do not use IP addresses to track you or build a profile.

4. What we do not collect

5. Permissions the app asks for

Microphone. Lingua asks for microphone access only to record pronunciation clips that you add to your dictionary. Recordings are saved on your device. The app uploads a recording only when you publish that entry to the community. If you deny microphone access, every other feature still works.

6. Services we rely on

We do not sell your data. We do not share it with anyone for advertising. We use a small number of services to run the app's online features:

ServiceWhat it doesWhat it handles
CloudflareHosts our sync service, database, and audio storageAccount data, published contributions, private sync snapshots
AppleSign in with AppleVerifies your identity; shares your account identifier and email (or private relay email) with us
GoogleGoogle Sign-InVerifies your identity; shares your account identifier, email, and name with us
ResendSends password reset emailsYour email address and the one-time reset code
Hugging FaceHosts the optional AI model fileYour device downloads the model file directly from their servers; standard connection data (such as your IP address) is visible to them during the download

The Learn tab also links to outside news sites and language resources. When you open a link, it opens outside the app, and that site's own privacy policy applies.

7. How long we keep data

8. Your choices and rights

Delete data on your device

Delete the app. This removes the dictionary, your local words and recordings, your learning activity, and the AI model from your device.

Delete your account

Go to Profile, then Settings, and request account deletion. This removes your account, your private sync snapshot, your sign-in identities, and your confirmations and flags from our servers. You can also email us and we will delete your synced data for you.

Remove a published contribution

Delete the entry in the app and it will be removed from the community dictionary on the next sync. If you no longer have the device you published from, email us with a description of the entry and we will remove it.

Access and correction

You can email us to ask what data we hold about your account, to correct it, or to receive a copy.

We answer requests at vinceaustria54@gmail.com within 2 to 3 working days. These rights are available to everyone, including rights under the Philippine Data Privacy Act of 2012 and, where it applies, the GDPR.

9. Security

All communication between the app and our servers uses encrypted connections (HTTPS). Passwords are stored only as salted hashes. Session tokens are stored in your device's secure storage. Access to audio recordings on our servers requires a signed-in session. Sign-in attempts are rate-limited to protect accounts.

10. Children

Lingua is suitable for all ages. The app does not require an account, does not show ads, and does not track users. If you believe a child has published personal information to the community dictionary, email us and we will remove it.

11. Changes to this policy

If we change this policy, we will update this page and the effective date at the top. If a change meaningfully affects how we handle your data, we will also say so in the app's release notes.