Privacy Policy
Last updated: July 20, 2026
Muni is built privacy-first. The most important thing to know: your voice and transcripts never touch our servers. They go straight from your Mac to the accounts you control.
1. Who is responsible for your data
Muni (“Muni,” “we,” “us”) is responsible for the limited personal data described in this Policy. For any privacy question, email [email protected].
2. The short version
- Your audio and transcripts: processed on your Mac and sent directly to your own accounts with the third-party API services Muni connects to. We never receive, see, or store them.
- Getting Muni: the app is free and open source. There is no purchase, no license key, and no account to create, so we collect nothing in order to give it to you.
- Diagnostics: the app can send anonymous performance & crash data — never your transcripts. It is enabled by default, disclosed during first-run setup, and can be turned off any time in Settings.
- This website: a static site that uses privacy-friendly, anonymous analytics and sets no advertising cookies.
3. Your voice and dictation content
When you use Muni, it captures audio while you hold the hotkey and sends it directly from your Mac to the third-party API services you connect with your own API keys (for example, to convert your speech to text and to clean that text into clear instructions).
Because you use your own accounts, this data flows under your agreements with those providers. Muni acts only as the local connector on your Mac; we do not route, copy, log, or retain your audio or transcripts on any server we control. Please review the privacy policies of the third-party services you connect for how they handle the data you send them.
4. Information we do collect
We collect a limited amount of information so we can support and improve Muni:
- Support data: anything you include when you email us for help or when you open an issue on our public GitHub repository.
- Donation data: if you choose to donate, our payment provider processes the payment and shares limited details with us (such as your email and the amount). We never receive or store your full card number. Donating is entirely optional and is not required to use Muni.
- Diagnostics & analytics data: anonymous crash reports and usage analytics from the app, if you leave them enabled. See section 5 for exactly what this does and does not include.
5. Diagnostics & analytics
The Muni app can send us anonymous performance and crash data so we can find bugs and improve the app. This never includes your transcripts, your audio, or anything derived from what you said.
What we collect (when enabled):
- Crash and error reports: scrubbed stack traces, error types and codes, app version, and macOS version. File paths are redacted (usernames removed) before sending, and your device hostname is not sent.
- Anonymous usage analytics: operational metrics (for example, dictation latency ranges, audio-duration ranges, character-count ranges, and which transcription path served a request), feature-usage counts (how often a feature is used — never its content), app version, and OS.
- A random anonymous install identifier: a UUID generated on first launch. It is not linked to your name or email.
What we never collect:
- Transcripts or any text you dictated.
- Audio recordings.
- Anything derived from what you said.
- Your email or name in telemetry.
- IP-derived location: GeoIP enrichment is disabled, and the client IP is overridden before storage.
Who processes it:
- Sentry (sentry.io, Functional Software, Inc.) — crash and error reports.
- PostHog (posthog.com, PostHog, Inc.) — anonymous usage analytics, hosted on PostHog’s US cloud.
Your control: both categories are shown during first-run setup (enabled by default, clearly disclosed) and can be turned off at any time in Settings → General → Privacy & diagnostics, with two independent toggles: “Send crash reports” and “Send usage analytics.” Turning a toggle off stops sending immediately.
Retention: this data is retained by the processors per their standard retention (Sentry roughly 90 days for events; PostHog per our project settings) and is used only for diagnosing problems and improving Muni — never sold or shared beyond these processors.
6. How we use it
- To answer your support requests and fix the bugs you report.
- To acknowledge a donation and keep the records that go with it.
- To send essential service messages (for example, important updates about Muni). We do not send marketing email without your consent.
- To meet legal, tax, and accounting obligations.
7. Who we share it with
We share the limited data above only with service providers that help us operate:
- Payment provider: processes donations and handles the related billing and, where applicable, tax.
- Email tools: to send support replies.
- Diagnostics processors: Sentry and PostHog, for the anonymous data described in section 5.
We do not sell your personal information. We may disclose information if required by law or to protect our legal rights.
8. How long we keep it
We keep donation and support records only as long as needed to provide the service and to meet legal, tax, and accounting requirements, then delete or anonymize them.
9. Your rights
Subject to applicable law, including the Philippine Data Privacy Act of 2012 (RA 10173) and, where relevant, the EU/UK GDPR, you may request access to, correction of, or deletion of the personal data we hold about you, and you may object to certain processing. Email [email protected] and we will respond within the time the law requires. Note that data held in your own third-party API service accounts is controlled by you through those services.
10. Children
Muni is not directed to children under 13 (or the minimum age in your jurisdiction), and we do not knowingly collect their data.
11. International transfers
We and our service providers may process data outside your country. Where we do, we rely on lawful transfer mechanisms and reputable providers with appropriate safeguards.
12. Changes
We may update this Policy. The current version and its effective date are always posted here. Material changes will be reflected by an updated date at the top.
13. Contact
Questions or requests? Email [email protected] or see our Contact page.