Privacy policy
Your words are not our business model.
Effective 23 August 2026 · Applies to DraftWave for Android
The short version
DraftWave is designed as a private staging area between your voice and another app. Dictation history, text analytics, raw-audio retention, Accessibility integration, cloud processing, and cloud fallback are off by default. DraftWave has no advertising SDK and does not sell personal data.
Local voice and drafts
When you use a downloaded local speech model, audio and transcription stay on your device. Temporary audio is deleted after transcription and is not added to a history. Drafts remain inside the active private session until you copy, share, insert, discard, or Android ends the process.
If you choose Android on-device recognition, DraftWave requests Android's on-device recognizer and does not silently replace it with a cloud recognizer. Availability and language support depend on your device.
Enhanced Flow and Accessibility
Enhanced Flow is optional and uses Android Accessibility only after separate, affirmative consent. It accesses editable-focus state, field-type metadata, screen bounds, and the foreground application package to show or hide the voice bubble, block sensitive contexts, and paste text after your approval.
DraftWave does not read surrounding field text, notification content, passwords, conversations, or character-by-character text changes. Accessibility-derived metadata is processed locally and is not collected, shared, or transmitted to a server. Android Accessibility can technically expose broader interface structure even though DraftWave deliberately does not use that capability.
Sensitive fields and applications
DraftWave refuses automatic activation and insertion in fields detected as passwords, PINs, OTPs, or payment-card inputs. It also applies a local sensitive-app denylist and user exclusions. Android metadata is imperfect, so these protections reduce risk but cannot identify every sensitive context.
Optional OpenAI processing
Cloud processing is never automatic. If you provide your own OpenAI API key and explicitly select OpenAI transcription, the completed temporary audio recording is sent over HTTPS to api.openai.com. If you explicitly request semantic refinement, the current transcript and transformation instruction are sent to OpenAI. Deterministic edits do not require cloud processing.
Your API key is encrypted using Android Keystore, excluded from Android backup, never bundled with the app, and can be deleted in Settings. OpenAI processes requests under the terms and privacy controls of your own API account. A ChatGPT subscription is not reused.
Model downloads
Local speech models are downloaded only after your confirmation. DraftWave shows progress, verifies pinned file metadata and integrity, and stores model files in application-private, no-backup storage. The model host may receive ordinary network information such as your IP address when files are downloaded. You can delete models in Settings.
Clipboard, screenshots, and sharing
Copy and Insert are explicit actions. Insert temporarily uses Android's clipboard to perform the approved paste and schedules a best-effort clear according to your setting. Android, your keyboard, or other apps may still observe clipboard content under their own permissions and platform rules.
DraftWave blocks screenshots and screen recording of its surfaces by default. You may enable screenshots in Settings after a warning. Sharing sends only the text you select to Android's system Sharesheet.
Data retention, backup, and diagnostics
History is off and is not included in this release. Android backup is disabled for drafts, credentials, audio, and model state. Production logs do not contain dictated text, audio, transformation prompts, API keys, clipboard contents, or Accessibility event text. DraftWave does not include user-text analytics or third-party crash-reporting SDKs.
Permissions
- Microphone: records only after a user action and displays a visible listening state.
- Internet and network state: used for explicit model downloads, optional BYOK cloud requests, and the Wi-Fi-only rule.
- Foreground microphone service: keeps an Enhanced Flow recording visible and controllable while another app is in front.
- Accessibility: optional system-granted capability used only for the field-side bubble and approved insertion described above.
Children, security, and changes
DraftWave is a general productivity tool and is not directed to children under 13. No software can guarantee absolute security; a rooted, compromised, or maliciously administered device can weaken Android's protections. Material changes to these practices will be reflected here and, when appropriate, disclosed in the app.
Contact
For privacy questions or support, use the contact address published on DraftWave's Google Play listing or visit the support page. A dedicated public support address will be added before the app leaves internal testing.