Privacy Policy

Last updated: March 2026

Our Commitment to Privacy

Clarity Talk is built on a foundation of privacy. We believe that your personal conversations are yours alone, and we've designed our entire system to ensure we never have access to your message content.

What We Don't Collect

  • Your messages or conversation content
  • Names or identifiers of people you communicate with
  • Analysis results or insights generated by the app
  • Screenshots or screen recordings
  • Location data

What We Do Collect

We collect only the minimum information necessary to provide our service:

  • Account information: Email address and name for account management and authentication
  • Payment information: Processed securely by Stripe; we never see your full card number
  • License and subscription data: To verify your subscription status and manage access
  • Usage metrics: Analysis counts, token usage, and aggregated performance data (no message content)
  • Device identifiers: A hashed device fingerprint to prevent abuse and enforce license limits
  • Audit logs: Authentication events and administrative actions for security monitoring

How Analysis Works

Your messages are sent from your device to our secure API server, which forwards them to the AI provider for analysis. Messages are processed entirely in-memory and are never stored on our servers or in any database. They are discarded immediately after the analysis response is streamed back to you.

A local anonymization feature is available that strips names and personal identifiers from messages before they leave your device.

Analysis results are stored only on your local device (and optionally synced via Apple CloudKit to your other devices). We do not retain copies of your conversations or analysis outputs on our servers.

SMS Reply Coach

If you opt into the SMS Reply Coach feature, the following additional data is collected:

  • Phone number: Stored in encrypted form. A one-way hash is used for lookups; we cannot read your plain-text phone number.
  • Forwarded messages: SMS messages you forward to our Twilio number are processed in real time and not stored after the AI recommendation is generated.

You can deactivate SMS Reply Coach at any time, which deletes your phone profile and all associated data.

Partner, Practice, and Firm Accounts

If you register as a partner, practice, firm, or forensic consultant, we additionally collect:

  • Business name, contact name, email, phone, and website
  • Professional specialties and regions served (consultants)
  • Stripe Connect account information for payouts
  • Case metadata (case names, numbers) — never case content

This information is used solely to administer your professional account and facilitate billing. It is never sold to third parties.

Data Sharing with Legal Firms

If you access ClarityTalk through a law firm's referral link, your conversation content and analysis results will be transmitted to and stored by the referring firm:

  • Conversation content you submit for analysis is encrypted with a firm-specific key and stored in our secure cloud storage
  • The referring firm has persistent access to this data for legal case purposes
  • You can see which firm you are linked to in your account settings
  • You may sever the link at any time, which stops future data transfers; data already transmitted remains with the firm
  • Historical data (from before the link was established) is only shared if you explicitly opt in

By using a firm referral link, you consent to this data sharing arrangement. ClarityTalk acts as a data processor; the firm is the data controller for your referred data and is responsible for its use in accordance with applicable law.

Third-Party Services

Clarity Talk relies on the following third-party services:

  • Anthropic: Provides the Claude AI model used for conversation analysis. Message content is sent to Anthropic's API for processing and is subject to Anthropic's Privacy Policy. Anthropic does not train on API inputs.
  • Stripe: Handles payment processing and partner payouts. We never see or store your full card number. Subject to Stripe's Privacy Policy.
  • Apple CloudKit: Syncs analysis metadata and non-sensitive app data across your devices. No message content is synced.
  • Twilio: Powers the SMS Reply Coach feature. Forwarded messages pass through Twilio's infrastructure. Subject to Twilio's Privacy Policy.
  • Vercel Analytics: Collects anonymous, aggregated web performance metrics on our website. No personal data or cookies are used for tracking.
  • Resend: Sends transactional emails (magic links, invitations, receipts). Your email address is shared with Resend solely for delivery purposes.
  • Neon (PostgreSQL): Hosts our account and billing database. All connections are encrypted via TLS. No message content is stored.

Cookies and Tracking

Our website uses essential cookies for authentication sessions only. We do not use advertising cookies or third-party tracking pixels. Vercel Analytics collects anonymous performance data without cookies.

Data Retention and Deletion

We retain your data only as long as necessary:

  • Account data: Retained while your account is active. Deleted within 30 days of account deletion request.
  • Payment records: Retained for 7 years as required by tax and financial regulations.
  • Audit logs: Retained for 90 days for security monitoring, then automatically purged.
  • Magic link tokens: Expire and are purged within 24 hours.
  • Message content: Never stored. Processed in-memory only.

Children's Privacy

Clarity Talk is not intended for use by anyone under 18 years of age. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us so we can delete it.

Data Security

We use industry-standard security measures to protect your account information. All data transmitted between your device and our servers is encrypted using TLS. Your payment information is handled by Stripe, a PCI-DSS Level 1 certified payment processor. API keys are stored in your device's secure keychain, never on our servers. Rate limiting and abuse detection protect against unauthorized access.

Your Rights

Regardless of where you live, you have the right to:

  • Access your account information
  • Request deletion of your account and all associated data
  • Export your account data in a portable format
  • Cancel your subscription at any time
  • Opt out of non-essential communications

For California residents (CCPA): You have the right to know what personal information we collect, request its deletion, and opt out of its sale. We do not sell your personal information.

For EU/EEA residents (GDPR): Our legal basis for processing your data is contractual necessity (to provide the service you signed up for) and legitimate interest (security and abuse prevention). You have the right to access, rectify, erase, restrict processing, and port your data. To exercise these rights, contact us at privacy@clarity.talk.

Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the new policy on this page, updating the "last updated" date, and where appropriate, notifying you by email.

Contact Us

If you have any questions about this Privacy Policy or wish to exercise your data rights, please contact us at privacy@clarity.talk.