On this page
1. Data We Collect
We collect minimal data, limited to what is necessary to deliver and support the product:
- Website purchases: When you buy Murmur through our website, your name, email address, and payment details are processed by our merchant of record, Polar Software, Inc. (or Gumroad for legacy purchases). We receive your email and license key to deliver and validate your purchase.
- Mac App Store purchases: Apple processes payment through your Apple account. RevenueCat processes purchase history, transaction and entitlement records, a randomly generated anonymous app-user identifier, and technical information such as platform, operating-system and app versions, preferred languages, and storefront to validate access, restore purchases, and provide purchase analytics. Apple sandbox purchase testing may also send a device-derived receipt identifier. Murmur's Store app does not ask for an email address or send payment card details to RevenueCat.
- Direct-download license activation and validation: License requests send your license key. Activation also sends your Mac's name, and validation and deactivation use an activation identifier. Managed deployments also send a license-specific hash of the Mac’s platform identifier so accounts on the same Mac share one seat. The raw platform identifier is not sent. These requests do not include your scripts or generated audio.
- Website analytics: Our website may collect analytics such as page views, referrers, country-level location, checkout clicks, download clicks, and audio sample plays, thank-you page views, and campaign or referral parameters. Completed purchases are recorded from our checkout provider's payment notification, which includes the order identifier, product, amount, currency, and the campaign or referral parameters attached to the checkout. These events do not include your license key or payment details.
- Direct-download app diagnostics and product telemetry: Murmur may send diagnostics and usage events, such as app launches, feature success or failure, selected model or voice identifiers, text length, generation timing, import counts, export format, and crash reports. Reports can also include error messages and technical context such as model, hardware, and reference-audio metadata. These events help us improve reliability and understand which features are working.
- Mac App Store app diagnostics and product telemetry: TelemetryDeck receives fixed product events, counts, generation timing, model identifiers, export format, app version/build, platform, a hashed random installation identifier, and a random session identifier. Sentry receives generic diagnostic events with severity, timestamps, app release/environment, and fixed action/model/backend identifiers. Its release-health sessions also include a separate random installation identifier, session identifier, timing, status, and error count. The Store app filters out scripts, transcripts, prompts, recordings, filenames, raw error descriptions, breadcrumbs, and arbitrary diagnostic context from these payloads. Network requests also expose connection metadata to the services receiving them.
- Free web text-to-speech: When you use the free website text-to-speech generator, the text and selected language are sent through a Murmur Cloudflare Worker to Cloudflare Workers AI to create the requested audio. Murmur does not write the submitted script or returned speech audio to its own database, and the HTTP response is marked no-store. Abuse controls use a random browser visitor identifier and a SHA-256-derived identifier based on the request IP address; the raw IP address is not stored in the quota record. Cloudflare Turnstile also processes request and IP information to verify that a request is human.
- Cloud audio tools: Most browser tools process audio on your device. When a separation tool displays an upload notice, starting separation sends your selected audio to our Cloudflare service. We store the upload, separated audio and temporary job metadata to provide the result. Cloudflare Turnstile checks requests for abuse; verification includes your IP address. Job quotas use a daily salted hash of your network address, not a stored raw IP.
- Online voice browsing and downloads: In the website-distributed Mac edition, searching community voices sends your search query and selected filters to our voice service. Browsing and downloading voices, models, and runtimes makes requests to the services hosting those resources.
2. Local Processing and Network Access
Text-to-speech generation runs locally on your Mac; your scripts and audio are not uploaded to a cloud service for generation.
Text, prompts, documents, and reference recordings used for speech generation are processed on your device. Local processing is separate from the diagnostic metadata and online requests described above; it does not mean that the app makes no network requests.
Internet access is used for license activation and periodic validation, app updates, model/runtime downloads, community voice browsing and downloads, and app diagnostics and product telemetry.
The Mac App Store edition uses Apple and RevenueCat for purchases and restoration, Cloudflare for model and voice-embedding downloads and TelemetryDeck and Sentry for the Store telemetry described above. Its fixed executable runtimes ship in the signed app rather than being downloaded after installation. Explore Voices and community-catalog browsing are not available in the Mac App Store edition. The free website and optional cloud audio tools described in this policy are separate from the Mac app's local speech generation.
3. How We Use Your Data
- To deliver your license key and validate your purchase
- To validate and restore Mac App Store access and understand purchase activity
- To provide customer support when you contact us
- To send transactional emails related to your purchase (receipts, license delivery)
- To improve our website and marketing using website analytics
- To deliver community voice search results and requested downloads
- To generate requested speech in the free web text-to-speech tool and prevent abuse
- To process optional cloud audio jobs, deliver their downloads, and limit abuse
- To improve app reliability and feature quality using diagnostics and aggregate product telemetry
4. Third-Party Services
We use the following third-party services:
- Apple and RevenueCat: Apple processes Mac App Store payments and account billing. RevenueCat validates purchase records, manages access through entitlements, supports restoration, and provides purchase analytics. Their privacy policies and applicable processing agreements describe how they handle data.
- Polar Software, Inc. (merchant of record): Processes payments, handles billing, and manages transaction records. Their privacy policy applies to payment processing.
- Gumroad (legacy merchant of record): Processes payments for customers who purchased through our Gumroad listing. Their privacy policy applies to those transactions.
- Vercel Web Analytics: Measures website page views and aggregate traffic patterns.
- PostHog: Measures website page views and aggregate conversion events such as checkout clicks, download clicks, audio sample plays, and purchase completions. Session recording is disabled for Murmur's website.
- TelemetryDeck: Processes app telemetry events so we can understand app usage and reliability.
- Sentry: Processes crash reports and non-fatal errors so we can diagnose and fix app problems.
- Cloudflare-hosted Murmur services: Handle license requests and serve the community voice catalog and downloads. Cloudflare also hosts optional audio processing and temporary audio storage, runs the free web text-to-speech inference through Workers AI, and provides Turnstile abuse verification. Model and runtime downloads also contact the providers hosting those files.
We do not sell, rent, or share your personal information with any other third parties for marketing purposes.
5. Data Storage and Security
The direct-download app stores your license in macOS Keychain. The Store app stores its successful free-generation counter in Keychain and folder-access bookmarks and a bounded queue of filtered telemetry events locally. Purchase and activation records are processed by our payment and licensing services. Your project files and generated audio are saved locally; the network data described above is processed by the respective service providers.
6. Data Retention
The free web text-to-speech Worker does not intentionally persist submitted scripts or generated speech audio in Murmur application storage. Daily quota counters are stored in Cloudflare Durable Objects and are reset when that quota bucket is next used on a new UTC day. Because the bucket is keyed by a one-way SHA-256-derived network identifier, we do not represent that identifier as having a guaranteed automatic deletion time. Cloudflare may retain service and security data under its own applicable service terms.
Cloud audio sources are removed after processing. Results become inaccessible one hour after upload and are removed by a cleanup task that runs every five minutes. A one-day storage lifecycle is a fallback if cleanup fails. Leaving the cloud workspace requests deletion, but closing a browser does not guarantee immediate deletion. Job records and quota hashes are normally removed after 24 hours by scheduled cleanup. We do not use these uploads to train models.
We retain your email and license information for as long as your license is active, plus any period required by applicable tax and financial regulations. You may request deletion of your data at any time by contacting us.
Mac App Store billing and purchase records, and app diagnostic and telemetry records, are processed and retained by Apple, RevenueCat, Sentry, and TelemetryDeck under their applicable service policies and processing agreements. Local processing of speech does not mean these service records are absent. Contact us using the address below for questions about those records or a deletion request; Apple account and billing requests may also require contacting Apple.
7. Your Rights
Depending on your jurisdiction (GDPR, CCPA, etc.), you may have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data
- Restrict or object to processing of your data
- Request data portability
To exercise any of these rights, email us at tarunyadav9761@gmail.com. We will respond within 30 days.
8. Children's Privacy
Murmur is not directed at children under 13. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.
9. Changes to This Policy
We may update this privacy policy from time to time. Changes will be posted on this page with an updated date. Continued use of Murmur after changes constitutes acceptance of the revised policy.
10. Contact
If you have questions about this privacy policy or your data, contact us at tarunyadav9761@gmail.com.