Privacy Policy
This is the privacy policy for the Fluentish app and fluentish.co. It lists exactly what data Fluentish collects, which services process it, how long it is kept, and how to export or delete it.
Effective date: 29 July 2026 · Controller: Yuval Fatal · Contact: [email protected]
This policy describes what Fluentish actually collects, service by service. It is written to match what the app does, not a template. It pairs with the Terms of Use.
Who is responsible for your data
Fluentish is built and operated by Yuval Fatal, a sole trader. "We" and "us" in this policy mean Yuval Fatal, who is the data controller for everything described here. Reach the controller directly at [email protected].
The short version
- We collect your sign-in details, your learning progress, and app usage analytics.
- Speaking cards are graded from text, not audio: your recordings never reach Fluentish. Your phone does the recognizing, on-device where it can and otherwise through Apple's or Google's speech service.
- Payment details never touch our servers: Apple and Google handle all payments.
- We do not sell your personal information, and we do not show ads.
- You can delete your account (and everything in it) from inside the app or at fluentish.co/delete-account.
- Deletion instructions live at fluentish.co/delete-account.
What we collect, and which services process it
Fluentish is built on Google Firebase and RevenueCat. Each service below receives only the data listed for it.
| Service | Data processed |
|---|---|
| Firebase Authentication (Google) | Your email address and, if you sign in with Apple or Google, the account identifier those providers share with us. |
| Cloud Firestore (Google) | Your learning progress: which items you have seen, ability estimates, levels, streaks, and review scheduling state. |
| Firebase Analytics / Google Analytics 4 (Google) | Usage events (screens viewed, features used), device model and OS version, and approximate location derived from your IP address. |
| Firebase Crashlytics (Google) | Crash logs and device state at the time of a crash, used only to diagnose and fix bugs. |
| RevenueCat, with Apple App Store / Google Play | Your subscription status (active, trial, expired). Payment details (card numbers, billing addresses) never touch our servers; Apple and Google process all payments. |
| Cloud Storage & Firebase Hosting CDN (Google) | Delivers exercise audio and content to your device. Like any web server, the CDN records your IP address in access logs. |
Speech and your microphone
Speaking exercises turn what you say into text, and we grade the text. Fluentish never receives, stores, or transmits recordings of your voice. The recognition is done by your phone: on your device whenever it supports the language you are learning, and otherwise through your platform's own speech service (Apple's on iOS, Google's on Android), the same one behind your keyboard's dictation key. In that fallback case the recording goes to Apple or Google under their privacy policies, never to us and never to any vendor we chose. Only the recognized text reaches Fluentish, and it stays on your device. The microphone is used only while you are actively doing a speaking card, speaking is always optional, and every card has a tappable alternative.
How long we keep data
| Data | Retention |
|---|---|
| Raw answer-session batches (the per-answer logs synced from your device) | Deleted automatically after 30 days; only the aggregated learning state derived from them is kept. |
| Raw analytics exposure events (in BigQuery) | Deleted after 12 months. |
| Account data (profile, learning progress, subscription status) | Kept until you delete your account, then permanently deleted. |
Sub-processors
Named, exhaustively:
- Google LLC: Firebase and Google Cloud Platform (authentication, database, analytics, crash reporting, storage, hosting/CDN, BigQuery).
- RevenueCat, Inc.: subscription status management.
- Apple Inc. / Google LLC (as payment processors): payment processing for subscriptions, under their own privacy policies.
We use large-language-model and text-to-speech vendors to produce exercise content, but that generation happens offline in batch, before content ever reaches the app. No user content or personal data is ever sent to those vendors.
Analytics consent in the EEA and UK
If you are in the European Economic Area or the UK, analytics is off by default and stays off until you consent (we implement Google Consent Mode v2). You can change your choice in the app's settings at any time.
Analytics on this website
fluentish.co itself uses Google Analytics 4 with Google Consent Mode v2. Analytics cookies are off by default: until you choose "Allow cookies" in the banner, Google Analytics receives only cookieless pings: aggregate, short-lived signals that are not used to identify or profile you and set no cookies on your device. If you accept, a standard GA4 cookie is set so repeat visits can be counted; if you decline, we remember only that choice, locally in your browser. Advertising storage is always denied. The site sets no ad cookies either way.
Your rights (GDPR and similar laws)
You can exercise the following rights at any time, free of charge:
- Access: ask for a copy of the personal data we hold about you.
- Portability: email [email protected] and we send you a machine-readable copy of your data. This is free and works on every plan. Separately, the app has a one-tap dictionary export (CSV and Anki) under Settings → Dictionary; that one is a Fluentish Plus convenience feature, and it is not how this right is exercised.
- Erasure: delete your account in the app (Settings → Delete account) or via fluentish.co/delete-account. Deletion is permanent and removes your profile, progress, and sign-in record.
- Rectification and objection: ask us to correct data or stop a particular processing activity.
To make any request, email [email protected] from the address associated with your account (so we can verify it is you). We respond within 30 days. If you are unsatisfied with our response, you may lodge a complaint with your local data-protection authority.
California (CCPA/CPRA)
We do not sell your personal information, and we do not share it for cross-context behavioural advertising. Fluentish contains no advertising SDKs. California residents may exercise the access and deletion rights described above through the same channels.
Children
Fluentish is not directed at children under 13, and we do not knowingly collect personal data from them. If you believe a child has created an account, contact us and we will delete it.
Changes to this policy
If we make material changes, we will update the effective date above and notify you in the app before the changes take effect. We will never retroactively reduce your rights over data collected under an earlier version.
Contact
Privacy requests: [email protected]. Everything else: [email protected].