Last Updated: [DATE]
This Privacy Policy describes the personal data we collect and process to provide the Unumo real-time translation platform and related services ("Services"), including the Unumo website at https://unumo.ai, applications, translation rooms, and associated features. It applies to all users of our Services: registered users ("Hosts") and unregistered participants ("Guests").
---
[LEGAL ENTITY NAME] ("Unumo," "we," "us," or "our") is the controller of personal data processed through the Services.
Contact: [CONTACT EMAIL] Address: [ADDRESS]
---
The rest of this policy is the detailed version of these four points, plus standard information about accounts and billing.
---
3.1 Account Information (Hosts only). Name, email address, password, language preferences, and billing information when you top up your prepaid balance. Payment card details are handled by our payment processor; Unumo does not store full card numbers.
3.2 Session Metadata. When a Room is created or joined, we process technical session information: Room identifier, participant display names as entered, languages selected, connection timestamps, and session duration. This metadata does not include the content of what was said.
3.3 Session Content — Session-Scoped Only. While a Room is live, the session's text log (recognized speech and translations) is processed in the working memory of Unumo's servers for two purposes only: displaying to each participant their own transcript, and delivering requested transcript copies by email. Session log entries are stored in server working memory encrypted with a key held only by the session's participants — Unumo's servers cannot decrypt the stored log. Decryption occurs on participants' devices, or momentarily on our servers when a participant requests email delivery and their application provides the session key for that single operation, after which the key and decrypted content are immediately discarded. Speech and translations are necessarily processed in plaintext at the moment of translation itself and are encrypted immediately thereafter. Session content is never written to persistent storage, never included in server logs or error reports, and never used for any other purpose. When the Room ends, the encrypted session log is retained for a short grace period (currently up to two hours) solely so that participants may still request delivery of their transcript; during this period it remains encrypted and unreadable to Unumo. It is then permanently deleted, together with any Guest email addresses provided for delivery. After this period, no session content exists on Unumo's systems.
3.4 Device and Usage Information. IP address, browser and operating system type, device identifiers, and technical usage data (features used, performance metrics, error reports). Error reports and technical logs never include session content.
3.5 Communications. If you contact support, we collect the content of that correspondence.
---
No AI training. Unumo does not use any audio, video, or session log content to train Unumo's or any third party's artificial intelligence or machine learning models. Our contracts with AI service providers prohibit them from retaining or using your content for any purpose other than providing the translation.
No advertising. We do not use personal data for advertising and do not share it with advertisers.
---
Any participant may request delivery of their transcript to an email address they provide — optionally when joining a Room, or when finishing their participation. Registered users may instead enable automatic delivery to their account email; this setting is off by default. Transcripts are sent only to participants who requested them, and each participant receives only the parts of the session they were present for.
An email address provided by a Guest is used solely to deliver that Guest's transcript and is deleted together with the session log when the Room ends. It is not added to any mailing list and does not appear in session metadata. We retain only a technical record that a delivery occurred (timestamp and session identifier), without content and without the Guest's email address.
Once delivered, the transcript resides in the recipient's mailbox and on their device, outside Unumo's systems. Unumo has no access to it and no responsibility for its further use or storage.
Because the session log is permanently deleted when the Room ends, a transcript not requested in time cannot be recovered.
---
We do not sell personal data.
---
---
We implement reasonable technical and organizational measures to protect personal data, including encryption of data in transit and access controls. The most significant protections are architectural: while a Room is live, the stored session log is encrypted with a key our servers do not possess; and when the Room ends, the log is permanently deleted. Content of past sessions cannot be breached, leaked, or disclosed — it does not exist. Content of live sessions at rest is unreadable without the session key, including to us.
---
Unumo does not allow individuals under eighteen (18) to register for an account.
Guests join by link without registration. A Host who invites participants under the age of majority is solely responsible for obtaining any parental or guardian consent required by applicable law (including COPPA and GDPR Article 8). Because Unumo processes Guest audio solely to produce a real-time translation and does not retain it, and does not require Guests to provide personal information to participate, this processing is designed to fall within recognized transient-use frameworks; nonetheless, the legal responsibility for lawful participation of minors rests with the Host.
---
Unumo operates globally; personal data may be processed in countries other than your own. Where personal data of individuals in the EEA, Switzerland, or the UK is transferred to countries without an adequacy decision, we rely on appropriate safeguards such as the European Commission's standard contractual clauses.
---
Depending on your location, you may have rights to access, correct, delete, or receive a copy of your personal data, to object to or restrict processing, and to withdraw consent where processing is based on consent.
To exercise these rights, contact [CONTACT EMAIL]. We respond within thirty (30) days or as required by applicable law.
Note on session content: Unumo cannot provide, correct, or delete the content of past sessions, because it is not stored on our systems. Exported or emailed session logs are in the possession of the participants who exported or received them.
EEA/UK legal bases: we process personal data as necessary to perform our contract with you, for our legitimate interests (service improvement, security), to comply with legal obligations, and with your consent where required. You may lodge a complaint with your local data protection authority.
California residents: you have rights under the CCPA to know, delete, and correct personal information, and to opt out of sale or sharing. Unumo does not sell or share personal information as defined by the CCPA.
---
We use essential cookies for session management and authentication, and may use privacy-respecting analytics to understand aggregate usage. You can manage cookies in your browser settings.
---
We may update this policy from time to time. Material changes will be announced by email or in the Services, with the "Last Updated" date revised above.
---
[LEGAL ENTITY NAME] Email: [CONTACT EMAIL] Address: [ADDRESS] Website: https://unumo.ai