← Back to Soltura

Privacy Policy

Last updated: 14 August 2026 · Applies to the Soltura web app and installable PWA at getsoltura.app

The short version

Soltura has no ads and no third-party trackers. The only analytics we run is our own, on our own server — it counts visits to this website, uses no cookies, and cannot follow you anywhere else. We also keep basic service records — how many checks were made, which app version made them, and roughly where from (country and city) — to keep it running, secure, and paid for; never your sentences or recordings, and never linked to your name (§4). Your practice history stays in your browser on your device. To check your speaking, the app sends a short audio recording of what you said — each time you ask it to check something — to a small relay we run on Cloudflare, which attaches our AI key and passes it to Google's Gemini AI. Gemini listens to the recording and sends back the transcript and correction; the relay doesn't store, log, or review your recordings, and because we pay for the Gemini API, Google does not use them to train its models (§9). If you confirm an email address, you sign in with that email (via a magic link) — there is no password. If you buy something, your card details go to Square and never to us — we never see or store a card number. That's the whole picture — the detail is below.

1. Who we are

Soltura is made and operated by Timothy James Weston, an independent sole-trader developer based in Queensland, Australia. Contact: support@getsoltura.app. Our philosophy is to build genuinely useful apps without tracking you, profiling you, or selling your data.

2. What's stored in your browser

The things you build up in Soltura are stored locally in your browser (IndexedDB and local storage) and are not uploaded to us:

  • Your correction history and Deep Check results
  • Notes about how a recording sounded — saved alongside each correction so the app can one day show you how your own speaking has changed: roughly how the words came out (halting, steady, flowing, and a rough count of restarts and “ehh”s), at most one sound worth practising, the everyday topic you were talking about, and how long the recording ran. These are only ever compared with your own earlier recordings — never with another person, and never with a native speaker. They stay on your device with the rest of your history, and the recording itself is still never kept (§3).
  • Your settings (practice language, explanation language, theme, playback speed, app language)
  • Your answers to "What's this for?" — why you're learning, the everyday situations you need most, up to five things you like talking about, and how formally you need to speak. Entirely optional, editable and clearable in Settings, and used only to steer what the app suggests you talk about.
  • The practice suggestions the app has fetched but not shown you yet.
  • A random, anonymous device identifier used only to rate-limit requests to our relay. It isn't linked to you or to any account.
  • If you're signed in, a session token so you stay signed in on this device.

You can remove all of it at any time with Settings → Your data → Delete all history, or by clearing your browser's site data. If you have an account, Settings → Account → Delete my account and all data removes both this and your account record in one action (§11).

3. What leaves your device, and when

Soltura sends your content to us only when you ask it to check something. The one other request it makes on its own is a version check — a few times a day it asks our server "is there a newer version of the app?", so it can tell you when to update. That request sends no personal information and no content: it asks a question and reads a version number.

  • Checking a sentence (each time you record). A short audio recording of what you said, together with your target and explanation languages and the anonymous device identifier, is sent to our Cloudflare relay, which attaches our AI key and forwards it to Google's Gemini API. Gemini listens to the recording and returns a transcript of what you said, the correction, and an explanation — which are saved in your browser. Your speech is not converted to text on your device first; the audio itself is sent to be understood.
  • "Tell me more". Sends an already-corrected sentence back (as text) for a longer explanation. No audio is sent in this step.
  • Asking for something to talk about (only if you tap it). Soltura can suggest things to practise saying. To make the suggestions fit you, it sends — as text, with no audio — your practice and explanation languages, your estimated level, a short list of grammar points you've been getting wrong and words you half-know, and, if you filled it in, your answers to "What's this for?": why you're learning, the everyday situations you picked, anything you typed that you like talking about, and whether you need to speak casually or politely. Eight suggestions come back at once and are kept in your browser, so the app usually has one ready without asking again. If you never tap it, or if you skip "What's this for?", none of this is sent.

"What's this for?" is optional and always will be. Nothing in Soltura is locked, hidden, or unavailable because you skipped it — it only changes what the app suggests you talk about. You can change it or clear it at any time in Settings → What you're learning for, and it is included in your backup file so it moves with the rest of your data.

4. Service records, website visits & approximate location

Checks you make in the app

To keep Soltura running, secure, and affordable, our relay keeps a small record of each check: the time, which feature was used, which language you were practising, whether the account was free or paid, which version of the app made the request, an anonymous identifier (the random device identifier above, or, if you're signed in, your email address in a one-way scrambled form we can't reverse), how much AI capacity the request used, how long it took and whether it succeeded (for example: answered normally, or turned away because a daily limit was reached), and the approximate location the request came from — the country and city, worked out from your IP address by our hosting provider.

We use these records for four things, and nothing else:

  • Keeping the service up and paying for it — the AI costs us money per check, so we need to see how much is being used, and which app builds are still out there.
  • Fixing it when it breaks — knowing that checks failed, how slow they were, and on which app version is the only way we find out something is wrong before you have to tell us.
  • Security and abuse prevention — spotting a single source flooding the service, which would otherwise exhaust the daily allowance for everyone.
  • Understanding where Soltura is used, and for which languages — knowing which countries, cities and practice languages it has reached, so we can decide what to support next.

What this is not. We do not store your IP address alongside these records — it's used to work out the country and city and to rate-limit requests, and is not kept. We don't collect precise location, GPS, or anything more exact than a city. The records are not linked to your name, are never sold or shared for advertising, and are not used to build a profile of you or to track you across other websites. We look at them as counts and totals — for example "42 checks from Madrid yesterday" — not as individual histories. Your practice sentences, recordings, and corrections are never part of these records.

Detailed records are kept for about 90 days. After that we keep only daily totals (per day, per country and city: how many checks, and how many distinct devices) with no identifiers in them at all.

Visits to this website

The pages of getsoltura.app itself — the home page, pricing, and these legal pages — count visits using Umami, an open-source, privacy-focused analytics tool that we run ourselves, on our own server. It is not a service we send your data to: no other company receives it, and your browser never contacts anyone but us, because the counter is served from getsoltura.app and relayed by our own relay.

For each page view it records the page, the referring site if there is one, and — worked out from your IP address, which it does not keep — your approximate country, plus your browser, operating system, and rough screen size. That is the whole list.

It uses no cookies and stores nothing on your device. It does not assign you a persistent identifier, cannot recognise you on a return visit, and cannot follow you to any other website — there is no network of sites for it to follow you across. We use it for one thing: to see whether anyone is finding Soltura, and how they got here.

The app itself is not counted this way. Once you're using Soltura at /app — or from an installed icon on your home screen — Umami does not run at all, and no page views are recorded. What we know about app usage is the service records above, plus the small number of product events described next.

What you do in the app

We record a short list of things that happen in the app, so we can tell whether it is working for people: that the app was opened today, that a first correction was made, that a level check finished, that the pricing screen was opened, and which pack was tapped. Alongside each one we store the language you're practising, the language the app is displayed in, your approximate country, and whether you're using an installed app or a browser tab.

These are counts of actions, not a record of you. They carry the random device identifier in a one-way scrambled form and no email address — so we can tell that someone came back on three different days, and we cannot tell who. Nothing you said, typed, or recorded is ever part of them, and no page addresses, screen recordings, or session replays are collected. They are never sold, never shared for advertising, and never used to build a profile or to follow you to another website.

We use them for one thing: deciding what to build and whether to keep going. They are kept for up to 180 days and then deleted automatically.

Legal basis

If you're in the UK/EU, our legal basis for all of the above is legitimate interests — running, securing, and funding a service you've asked to use, and understanding whether anyone can find it. Because the visit counting is cookieless, stores nothing on your device, and cannot identify or profile you, it does not require a consent banner. You can object at any time via support@getsoltura.app.

5. Accounts & signing in

Free practice is anonymous — no account, just the random device identifier above. When you buy a pass or a pack, you sign in with a magic link sent to your email address so your purchase follows you across devices. We store your email address and your purchase status (which product, whether a pass is still running, how many corrections are left) in a database on Cloudflare so we can recognise you when you sign in. We don't store a password — sign-in is by email link only.

You only need an email address if you buy something: a pass and a pack of corrections are both held against an account, and the address is how your purchase reaches you on another device. Practising is anonymous and stays that way.

Emails about Soltura (optional)

When you sign in you can separately tick a box asking us to email you once or twice a year about significant changes to Soltura. It is unticked by default, it is not required to sign in and not required to buy anything, and we record the date you gave it so we can show that you did. We will not send you anything else, and we will never sell, rent or share your address with anyone for their own marketing.

Every such email carries a working unsubscribe link, and you can withdraw consent at any time by using it or by emailing support@getsoltura.app. Withdrawing does not affect your account or anything you have bought. Service emails — your sign-in link, your receipt, and notices about a purchase — are not marketing and are sent regardless, because they are needed to provide the service you asked for.

If you're in the UK/EU, the legal basis for these optional emails is your consent (UK/EU GDPR Art. 6(1)(a)) — not legitimate interests — which is why it is a separate, optional, unticked box.

6. Payments

We never see or store your card details. Card payments are processed by Square (Block, Inc.), on Square's own hosted checkout page. You leave Soltura to pay and come back afterwards; your card number is entered on Square's page, not ours, and never reaches our servers. Square's handling of it is covered by Square's privacy notice.

Square is our payment processor, not the seller — the seller is Timothy James Weston. Square collects what it needs to take the payment and meet its own legal obligations (typically your email, card details and country). What comes back to us is a record of the purchase: your email address, which product you bought, the amount, the currency, the country the payment came from, and Square's payment reference. That record is what your pass or your pack balance is attached to. Deleting your account deletes it from our database too — the sale record Australian tax law requires us to keep is Square's, held in Square's own systems, so erasing our copy costs us nothing and leaves you with one fewer place your purchase is recorded.

To create a checkout page we send Square the amount, the product name and your email address, so that your receipt reaches you and your purchase can be matched to your account.

7. The microphone & your recordings

Soltura uses the microphone only while you are actively recording a sentence to check (or running a Deep Check). Because the correction is produced by an AI that listens to your speech, a recording of what you said is sent for checking each time (see §3) — Soltura does not do speech-to-text on your device. Your recordings are used only to produce your immediate feedback: they pass through our relay to Google's Gemini, are not stored by the relay or by us, and are not kept after your result comes back. Only the resulting text — the transcript, correction, and explanation — is saved, in your browser.

8. Text-to-speech

When you tap a speaker button to hear a sentence, Soltura uses your browser's built-in, on-device speech synthesiser. Nothing is sent over the network for playback.

9. Third-party services

  • Cloudflare, Inc. — hosts the website and app, and runs the small relay that keeps our Google AI key secret. It also stores the account and purchase records described in §5. Your correction requests pass through the relay on the way to Google; the relay is a locked pass-through and keeps no log of your sentences or audio. See the Cloudflare Privacy Policy.
  • Google LLC (Gemini API) — the AI model that listens to your recordings and generates your corrections. Your audio recording (and, for "Tell me more", the corrected sentence text; and, for practice suggestions, the text described in §3) is sent here to produce your feedback. We use the paid tier of the Gemini API, under which Google does not use what you send — your recordings, your sentences, or the corrections that come back — to train or improve its models, and no human reviewer reads it for that purpose. Google keeps requests for a limited period only to detect abuse of its own usage policy. Your use is governed by Google's Gemini API terms and Privacy Policy.
  • Resend (Resend, Inc.) — sends the sign-in code/link to your email address, your receipt, and any optional email you have opted in to. It receives your email address and the contents of that message, and nothing else. See the Resend Privacy Policy.
  • Square (Block, Inc.) — processes card payments and hosts the checkout page you are sent to (§6). It receives your email address, the amount and the name of what you're buying; your card details are entered on Square's page and never reach us. See Square's privacy notice.

What we, the developer, keep or look at: your email address and what you have bought (to run your account), and the aggregate service records and product events described in §4 — usage counts and approximate location, with no sentences, no audio, and no name attached. We run no third-party analytics, no advertising, no crash-reporting SDKs, no social logins, and no cross-site tracking. Both pieces of analytics we do run — the website visit counter and the app's product events, both in §4 — are on our own servers and send nothing to any other company. We don't keep server-side logs of your sentences or audio.

Your data leaves Australia

All four of the companies above are based in the United States, and they run the servers your requests reach. That means your recording, and the email address on your account, are disclosed to recipients outside Australia — principally in the United States, and to whatever other countries those providers route through, which for Cloudflare and Google can mean a data centre in another region closer to you. By using Soltura you agree to that disclosure, and you should know that these recipients are not bound by the Australian Privacy Principles; they are covered by their own privacy terms, each linked above. We chose providers that publish binding commitments about what they do with the data, which is why the Gemini tier we pay for matters enough to spell out.

10. Cookies & local storage

Soltura does not use advertising or tracking cookies. Our website visit counter (§4) sets no cookies at all and stores nothing on your device. The app uses your browser's local storage only for the functional things described above — your settings, history, the anonymous device identifier, and (if you sign in) your session token.

11. Data retention & deletion

Your history and settings live in your browser until you delete them (Settings → Your data → Delete all history, or by clearing site data). A pass ending, or a pack running out, deletes nothing.

Deleting your account, yourself. If you have an account, Settings → Account → Delete my account and all data removes it immediately — no email to us, no waiting. It deletes your purchase record from our database, ends every sign-in on every device, and erases the history, garden, level estimate, settings and anonymous device identifier held in that browser. It cannot be undone, so export a backup first if you want to keep anything. Nothing needs to be cancelled first — nothing recurs and we keep no card on file — but note that deleting forfeits any unspent corrections and any remaining time on a pass, so if you would rather have those refunded, write to us before you delete. You can also email support@getsoltura.app and we'll do it for you.

What survives a deletion, and for how long. For up to 60 days we keep a minimal record — your email address, a revocation marker, and the time — for one reason only: sign-in tokens last 60 days and are not stored on our servers, so this is what keeps them permanently invalid rather than letting a deleted account quietly come back to life. It is then deleted automatically.

The one record we cannot delete is not ours. We hold no card details and no billing records of our own beyond the purchase record described in §6, which goes when you delete your account. The sale record itself is Square's, held in Square's systems, and Square keeps it as long as Australian tax and accounting law requires — typically five years. That is outside our control, and it is the reason deleting your account with us costs us nothing: the record the ATO wants was never ours to keep.

The service records in §4 are kept in detail for about 90 days and thereafter only as daily totals per country and city, which contain no identifiers.

12. Children's privacy

Soltura is not directed at children under 13, and we do not knowingly collect personal information from children.

13. Your rights

Depending on where you live, you may have rights to access, correct, or delete the personal information we hold about you (your email address, what you have bought, and the service records in §4), and to object to certain processing — including the location records, which we rely on legitimate interests for. Most of your data already sits on your own device under your control, and erasure is a button in the app, not a request you have to make of us — see §11. For anything else, email support@getsoltura.app and we'll help. We never see or hold your card details (§6).

If you want to complain

Email support@getsoltura.app with "privacy" in the subject and tell us what happened. It comes to Tim, the person who built Soltura. We'll acknowledge it within five working days and give you an answer within 30 days. If you're in Australia and you're not satisfied with that answer, you can take the complaint to the Office of the Australian Information Commissioner — oaic.gov.au. If you're in the UK or EU, you can complain to your national data-protection authority.

14. Changes to this policy

If we make material changes we'll update the date at the top of this page.

15. Contact

Questions about this policy or your data: support@getsoltura.app.


See also our Terms & Conditions and Refund Policy.