Privacy Policy
Last updated: July 26, 2026
Zander Modaress-Razavi (“we”, “our”, or “us”) operates the Kiku: PDF Notes & Audio mobile application (the “App”). This Privacy Policy describes what information is processed when you use Kiku, why it is processed, and the choices available to you.
Information We Process
App activity and diagnostics
Kiku uses PostHog for product analytics, such as app launches, screen views, feature interactions, and app lifecycle events. This data uses app-generated or device-linked identifiers and is used to understand reliability and improve Kiku. Kiku also processes crash reports and technical device information needed to diagnose failures.
Subscriptions
In-app purchases are processed by Apple. Kiku uses RevenueCat to manage subscription entitlements and restore access. RevenueCat may receive an app user identifier, product and entitlement information, purchase and renewal status, and transaction metadata. Kiku does not send your payment card details to RevenueCat.
Network and proxy requests
Kiku uses a Cloudflare Worker proxy to protect upstream service credentials, route requests, and apply abuse controls. Cloudflare necessarily processes request metadata such as an IP address and timing information for routing, security, and rate limiting. Retention of provider-side logs is controlled by the applicable provider configuration and policies.
Documents and AI Features
Your documents, annotations, notes, and generated audio are stored on your devices and, when enabled, in your personal Apple iCloud storage. If you enable Google Drive backup, Kiku uploads flattened PDF backups to a Kiku Backups folder in the Google Drive account you authorize. Apple and Google control storage in those services under their own policies.
When you request text-to-speech or content filtering, text from the selected document is sent through the Cloudflare proxy to the AI services used by Kiku, including Inworld AI. The text is sent to perform the requested operation; Kiku does not intentionally retain document request bodies after proxy processing. Upstream providers may process or retain data under their own terms and privacy policies, so do not submit content you are not authorized to share.
Voice Cloning
If you choose voice cloning, Kiku records a short microphone sample as a temporary WAV file on your device. The recording is sent through the Cloudflare proxy to Inworld AI so that Inworld can create a custom voice model and return a voice identifier. The temporary local recording is deleted after a successful upload and clone response. The provider-hosted voice model and identifier may persist so that your cloned voice can be used across your devices.
Only record your own voice or a voice for which you have permission. Switching or deleting a custom voice in Kiku removes the locally stored identifier; it does not by itself guarantee deletion of a model already created by an upstream provider. To request deletion of a provider-hosted cloned voice, contact us at zandmanv8@gmail.com with the relevant account or voice details. We will forward or process the request as applicable, subject to the provider's procedures and legal obligations.
Using an AI feature means that the content needed for that feature will be sent to the relevant third-party AI service as described here. The App also requests the operating system permission required before recording from the microphone. Review this policy before using voice cloning or AI processing.
Third-Party Services
Kiku relies on the following services. Each provider's policy governs its own processing:
- PostHog — product analytics (privacy policy)
- RevenueCat — subscription management (privacy policy)
- Cloudflare — proxy, routing, and abuse controls (privacy policy)
- Inworld AI — text-to-speech, content processing, and voice cloning (privacy policy)
- Apple iCloud — optional document and settings synchronization (privacy policy)
- Google Drive — optional PDF backup when you authorize Google Drive (privacy policy)
Retention and Deletion
Kiku keeps local documents, notes, cached audio, and settings until you delete them or remove the App. iCloud and Google Drive copies remain subject to the controls and retention rules of those services. Analytics, subscription, crash, network, document-processing, and voice-model data may be retained by the relevant provider for its stated purposes and legal obligations; we do not promise a retention period controlled by a third party.
Deleting Kiku removes local app data. You can manage iCloud and Google Drive copies in those services, request deletion of analytics data, and request deletion of a provider-hosted cloned voice by emailing zandmanv8@gmail.com. We may need enough information to locate the relevant record and may retain limited information where required for security, billing, dispute resolution, or law.
Children's Privacy
Kiku is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided personal information, contact us so we can review the request.
Your Rights
Depending on where you live, you may have rights to access, correct, delete, or restrict use of personal information, or to object to certain processing. Email us at zandmanv8@gmail.com and describe your request. We will respond as required by applicable law and may direct you to Apple, Google, RevenueCat, PostHog, Cloudflare, or Inworld when that provider controls the relevant data.
Changes to This Policy
We may update this Privacy Policy as Kiku or its service providers change. We will post the updated policy and date on this page. Your continued use of the App after an update means you acknowledge the revised policy to the extent permitted by law.
Contact Us
Questions or privacy requests: