Privacy Policy
Last updated: August 29, 2026
This Policy explains what data OGO Music Player processes, why, who it is shared with, and how long it is kept. It forms an integral part of the Terms of Use.
1. Who Processes Your Data
The controller determining the purposes and means of processing is the OGO Music Player team. The operator's full identification details are provided on request. For any question about data processing, to exercise your rights, to request the operator's details, and to have your data deleted, write to support@ogoapp.com.
2. Microphone Access and Voice Commands
The App requests microphone access in order to recognise voice commands. Recognition is performed by a self-contained speech engine built into the App: the microphone stream is processed in real time on your device itself, is not recorded, is not stored, and is not transmitted either to us or to third parties. This is why voice control also works without a network connection. The particular engine and its language models may change as the App develops, but the principle stays the same: commands are recognised on the device, and audio from the microphone never leaves it. The microphone listens only while you have recognition switched on in the settings.
3. Music Files on Your Device
The App reads music files from the folders you have added yourself, in order to play them and show them in lists. We do not upload, copy, or transmit these files anywhere. The only exception is a file you deliberately submit for server-side processing; what that sends is described in the next section.
4. What Is Sent to Our Server, and When
Data reaches us only through a deliberate action on your part, and there are three such actions. Submitting a file for processing: the audio file itself, the track title and artist from its metadata, the recording language you selected, your device identifier, and the IP address the request came from; during processing, derived audio tracks and a transcript are created from the file, and only the submitting device receives the result. Sending your library data for the personal recognition model (a separate button in the settings): the titles, artists, albums, genres, and search keywords of your tracks — without the audio files themselves. Changing the voice control keyword: the chosen word, the language, and your device identifier. None of this is published or made available to other users.
5. Technical Data
The requests listed above carry information about your device: identifier, platform and operating system version, App version and build number, manufacturer, brand and model, device type, language and time zone, amount of memory and free storage, and whether it is a tablet or an emulator. Separately, we receive error and crash reports and anonymous statistics on feature usage. This information is used to keep the App working, diagnose failures, and ensure compatibility with specific device models, and is not used to establish your identity.
6. Purposes and Legal Bases
We process data: to provide the service you requested — the legal basis is performance of our contract with you (the Terms of Use); to protect the service from abuse and enforce upload limits — on the basis of our legitimate interest; to send notifications and display advertising — on the basis of your consent, which you may withdraw in your device or App settings; and to comply with the law — where processing is required by legislation.
7. Who Data Is Shared With
For speech recognition we engage external providers, to whom the speech track extracted from your file is sent. These may include Google (Gemini, Cloud Speech-to-Text), OpenAI, Deepgram, Groq, ElevenLabs, Speechmatics, Gladia, Mistral, Fireworks, DeepInfra, and xAI; the specific provider is selected automatically. Data is also received by: the forced-alignment service we use to place time codes; Apple and Google for subscription purchase and renewal; Google Firebase for push delivery, remote configuration, and crash reporting; and Google AdMob for advertising (subscribers are shown no ads). Each of these services processes data under its own terms, published on its website. We do not sell your data and do not share it with third parties for their own marketing purposes.
8. International Transfers
Our providers' servers may be located outside your country of residence, including outside the European Economic Area. Where that is the case, transfers are made under the mechanisms provided by applicable data protection law, including the European Commission's Standard Contractual Clauses.
9. Retention Periods
The source file and intermediate tracks are deleted from our servers as soon as the result has been delivered to you, and in any event no later than two hours after processing completes. The result is deleted within the same period. The recognised transcript is not kept longer than the file it came from. IP addresses are kept no longer than 24 hours — the window over which the daily upload limit applies. Library data sent for the personal recognition model is kept for as long as the model is in use and is deleted at your request. Technical information and crash reports are retained for the periods set by the relevant Google Firebase services. Data we are required by law to retain is kept for the statutory period.
10. Voice and Biometrics
We do not create voiceprints, do not identify or authenticate users by voice, and do not use voice data for biometric purposes. The personal recognition model that improves voice command accuracy is built from the titles, artists, and albums of your tracks — that is, from words you might say, not from a recording of your voice. The speech track extracted during file processing is used solely to produce a transcript and is deleted together with the file.
11. We Do Not Train Our Models on Your Material
The files you upload, the tracks derived from them, and the recognised transcript are not used by us to train, fine-tune, or evaluate machine learning models, and are not included in training datasets. This applies to our service and our servers. We do not control the terms of third-party speech recognition providers: they process the material under their own terms, which may permit them to use it for their own purposes, including improving their models. The list of providers and links to their terms are in the section on data sharing above.
12. Your Rights
You have the right to learn what data of yours is processed, to request its correction or deletion, to object to processing, to restrict it, and to receive your data in a machine-readable format. The App has no user account, so your data is tied to a device identifier, which you can view in the App settings. To exercise a right, write to support@ogoapp.com quoting that identifier. We respond within the period set by applicable law. You also have the right to lodge a complaint with the data protection authority where you live.
13. Children
The App is not intended for persons under 16, and we do not knowingly collect their data. If you believe a child under 16 has provided us with data, write to support@ogoapp.com and we will delete it.
14. Security
We apply reasonable technical and organisational safeguards: traffic between the App and the server travels over an encrypted connection, only the device that submitted a file can retrieve the result, and the material itself is deleted as quickly as possible. Please note that access to a result is tied to a device identifier rather than to a password, so keep your device protected from unauthorised access. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
15. Changes to This Policy
We may amend this Policy as the service develops. The current version is always available in the App and on our website, and the date of the last update is shown below — it tells you whether the document has changed since you last read it. We do not send separate notifications about changes, so please review the document from time to time. Continued use of the App after a new version is published means that you accept it.