Clear about your data.

Published by Quang Vu. Last updated October 7, 2026. This policy covers Audivoya and its public website.

Audio sharing at a glance

Starting dubbing sends selected-tab audio directly to Google's Gemini API. This website does not receive API keys, media or transcripts.

1. Who operates the product

Audivoya is an independent project published by Quang Vu. Contact xuanquang.work.it@gmail.com for privacy requests, support or security reports.

2. What happens when you start dubbing

The extension captures the audio playing in the tab you selected, and sends it directly to Google for translation using your Gemini API account. Google generates translated audio and transcripts. No developer-operated audio server receives this stream.

Google's retention, data use, charges, quota, model access, age and region conditions depend on your provider agreement and account. Unpaid API content may be used for product improvement or human review. Read the Gemini API terms and Google privacy policy. Avoid sensitive or confidential media when the applicable terms are unsuitable.

3. Credentials and local preferences

Audivoya 0.2.16 automatically saves an AES-GCM encrypted API-key record in extension-origin IndexedDB, scoped to this browser profile. A non-exportable Web Crypto key is stored in the same profile so the extension can restore it without a password or extra application after restart. Audivoya does not sync these objects. Website scripts cannot access this extension-origin database, and credential replies never return a retrieved key.

This is convenience encryption, not an OS keychain. Someone controlling the browser/profile, privileged extension code, DevTools or malware can recover a usable key. Do not share browser profiles or include them in untrusted backups. Raw keys exist in trusted process memory when used. A temporary session cache lasts up to one hour and is refreshed from the saved record; an active session holds a separate trusted copy for short-lived Google tokens.

Forget key stops capture and deletes the saved encrypted record, its encryption key and session cache. Stop retains the saved record. Removing the extension or deleting its profile/storage clears local data; filesystem remnants, backups and provider-held records are outside this deletion guarantee. Earlier 0.2.10 builds keep the key only in browser-session memory, expire it after one hour and clear it on restart/reload. Firefox remains a local caption demo and does not save provider keys.

4. Audio, picture and caption buffers

Audio monitor processes audio locally without sending it to an AI provider. Optional sync viewing captures the selected tab's rendered picture and buffers it locally. Pictures can include the website's visible UI; they are not uploaded to Google by this feature. Video/audio buffers are bounded and cleared on Stop or reset.

Captions remain in bounded session memory unless you choose Export VTT. A still-open panel may retain previously received captions until it closes. With Keep dubbing on this website enabled by default, an explicitly started session continues through new videos, page changes and reloads on the same origin in the selected tab. It stops on a different origin (including subdomains), tab closure, Stop or the original session time limit (5 minutes to 8 hours; with Never, it continues until you press Stop, close the tab or leave the origin). Navigation events and URLs are checked locally to suspend the old provider connection and verify the committed origin before resuming. The selected tab ID, source origin and observer/generation metadata are held in trusted browser-session storage; full URLs are not persisted or uploaded. Old page captions, speech and sync buffers are cleared on a navigation reset. There is no unrelated-tab collection, browsing-history harvesting or automatic capture at browser startup.

5. Exports and deletion

Stop session or Alt+Shift+S ends capture and transport and discards active buffers and host transcripts. Closing the control panel preserves a running session; closing the sync viewer ends it. Forget key also deletes the encrypted credential record and its encryption key. Uninstalling removes extension preferences and local storage.

Caption files and diagnostics are downloaded only when requested. Diagnostics contain aggregate timings, error codes and the selected source hostname, excluding API keys and transcripts. Review exports before sharing. Local deletion does not remove data retained by Google under its own terms.

6. Website hosting

This static website is hosted by GitHub Pages. GitHub processes visitors' IP addresses and request information for hosting and security under the GitHub Privacy Statement. Website assets are served from this site; there are no embedded analytics, advertising trackers, contact forms, third-party fonts or cookies added by this website.

Following an external link takes you to another service with its own privacy policy. Sending an email shares the content you choose to send through your email service and the publisher's mailbox. Support emails may be retained as needed to resolve a request; you can request deletion, subject to legitimate legal or security obligations.

7. Purpose, eligibility and rights

Use only media you own or have permission to process. The extension is intended for adults with eligible provider accounts; it is not directed at children. There is no data sale, advertising or automatic developer analytics upload. No DRM or protection bypass is implemented.

For access, correction or deletion of information you send to the publisher, contact xuanquang.work.it@gmail.com. Provider-held data requests must also be addressed to the relevant provider. We cannot promise removal of records held under another provider's terms.

8. Changes and contact

Material changes will be reflected in this policy's update date and product disclosures. Send privacy or security questions privately to xuanquang.work.it@gmail.com; do not include API keys or private recordings.