Updated: 2026-10-06 · Effective: 2026-10-06 · Applies to: v2.20.0 and later
Listen Step is a voice-guided step assistant that helps you follow protocols hands-free — in the kitchen, in the lab, and beyond. We take your privacy seriously. This policy explains exactly what we do with your personal information.
1. Personal information we process (item by item)
Microphone audio — Purpose: (a) recognizing your spoken commands ("next", "check", "back", "repeat") to control step execution; (b) voice notes you deliberately record during a run using your own start/end words. Method: command listening happens only when you turn on "Hands-free" on the execution page; a voice note is recorded only between your spoken start word and end word. Processing: speech recognition runs offline on your device (built-in sherpa-onnx component); command audio is never stored and never uploaded. Voice-note recordings are stored only on your device, are attached to the run record, and are included in the report when you export or share it; they are permanently deleted when you permanently delete that record. If your device lacks the offline component, the app falls back to the device's built-in speech recognition service; in that case audio is handled by that service provider under its own privacy policy, and you can manage it in system settings.
Camera photos — Two scenarios, both only when you tap the button yourself: (a) Scan printed protocol on the Create page: the photo is recognized offline on your device (built-in Google ML Kit component) and is deleted immediately after recognition — never stored, never uploaded; (b) Experiment photos during a run: photos you take or pick are renamed by you, stored only in the app's private storage on your device, shown in the run report, and attached when you export or share that report; they are permanently deleted when you permanently delete the record.
Calendar schedules you create — Purpose: adding experiment schedules with reminders to your phone calendar, and showing completed runs on it. Method: an event is written only when you schedule a protocol on the Calendar page (tap + → Schedule). To place the event, the app reads only the list of calendar accounts on the device to find a writable calendar — it never reads, modifies or deletes your existing events. Data written: the event title (experiment name), the start/end time and the reminder minutes you set. Processing: written directly to your phone's calendar; it stays on your device unless your own calendar account syncs it, in which case your calendar provider's policy applies.
Account info — Purpose: signing you in, keeping your session, and computing your trial/subscription entitlements. Method: Google sign-in or email sign-in (both via Firebase Authentication). Data: your display name (Google only), email address and user ID (UID). Your password is handled by Firebase and is never visible to us or stored by the app. Processing: stored on Google's Firebase servers and cached on your device.
Purchase & entitlement records — Purpose: activating and restoring your Pro subscription, syncing it across your devices, and fraud prevention. Method: payments are processed by Google Play Billing; we never see your card details. Purchase verification and entitlement sync are handled by RevenueCat. Data: purchase token, product ID, order ID, subscription status and an app user ID. Processing: stored on RevenueCat's servers and cached on your device.
Usage data — Protocols and steps you create, your run history, voice notes, experiment photos, calendar schedules and your trial start time, used to provide the create/run/report/calendar/export and trial features. Stored only on your device (calendar events live in your phone calendar, as described above).
Sharing you initiate — When you tap "Send via email" after exporting a report, the report Word file and the photos/audio from that run are handed to the app you choose (such as Gmail) as attachments. Nothing is sent to us; the data leaves your device only through the app you pick.
We do not collect your contacts, messages, call logs, location, photo library, existing calendar events, or device identifiers (IMEI, MAC address, Android ID).
2. Device permissions
Microphone — used only for the voice commands and voice notes described above, requested only when you actively use a voice feature.
Camera — used only when you tap the scan button on the Create page (photo deleted right after recognition) or the photo button during a run (photo stored on your device), and requested only in those moments.
Calendar — used only to add experiment schedules and reminders you create on the Calendar page; the app reads only the calendar account list to find a writable calendar and never reads your existing events. Requested only when you schedule.
Vibration — used only for timer alerts.
Network — used for Google sign-in, subscription purchase and verification, entitlement synchronization, and downloading protocol packages you choose from our website (listenstep.app) — package downloads carry no personal data; also by the system speech recognition service in the fallback case above. Your voice audio and photos are never uploaded.
3. Where and how long your data is stored
Location: your protocols, run history, experiment photos, voice-note recordings, settings and cached entitlement stay in the app's private storage on your device; calendar events live in your phone's calendar. Account info is stored on Google Firebase servers, and purchase/entitlement records on RevenueCat's servers (both may be located outside your country); no other remote transfer takes place.
Retention: on-device data is kept until you delete it, delete your account, or uninstall the app; deleted run records stay in the in-app Trash for 7 days before permanent removal, and uninstalling removes everything via the system. Cloud account and entitlement data is kept while your account exists and is deleted when you delete your account.
4. Your rights and how to exercise them
Access & correct — view and edit your protocols in "My Steps".
Delete — delete protocols you created and run records (Trash keeps them restorable for 7 days), and manage exported Word files yourself.
Withdraw consent — open the side menu (tap the logo) → "Privacy Consent Settings" to change your choice at any time; voice features stop, everything else keeps working.
Cancel subscription — open the side menu → "Manage subscription" (opens Google Play's subscription page) to cancel at any time; access continues until the paid period ends.
Delete account — open the side menu → "Delete account"; your Google sign-in (Firebase account) is deleted immediately, with no review or waiting period. Local protocols and run history stay on your device.
Contact & complaints — use the developer contact email on the Google Play store listing.
5. Children
This app is not directed at children under 14 and does not knowingly collect their personal information. If you are a minor, please use the app with a guardian's consent and supervision.
6. Third-party SDKs
See the "Third-Party SDK List" in the side menu. This app contains no advertising, analytics, or push-notification SDKs.
7. Changes to this policy
If this policy changes, we will notify you in the app. The latest version is always available in the side menu.