Privacy & Data Protection

Our commitment to your data

Transparency is at the core of everything we build. Here's how we handle voice recordings, email addresses, and research data.

CogitracVoice

Privacy Policy

Last Updated: August 2026

Data Retention Policy

Active Accounts: While your account remains active and you are participating in the Voice Analytic Study (VAS), your name, email address, date of birth, gender, voice recordings, and health event logs are stored securely to support the research objectives of this study.

Account Deletion: If you choose to delete your account, we will immediately remove your name, date of birth, and gender from your patient record. Your email address will also be removed. However, your previously collected research data (including voice recordings and health event logs) may continue to be used in de-identified form (with all personal identifiers removed) for ongoing research and analysis purposes, as permitted by applicable laws and institutional review board (IRB) approvals.

Research Data Retention: De-identified research data may be retained indefinitely for future scientific research, in compliance with data protection regulations and research best practices. No further personal information will be collected after account deletion.

Withdrawal: You may withdraw from the study at any time by simply deleting the app from your device, which will stop any further data collection. You may also contact us to request account deletion.

What data we collect

  • Voice recordings (10-15 seconds daily)
  • Email address (for account management)
  • Date of birth and gender (for research stratification)
  • Health event logs (date and time entered by you)
  • Account information (name, role)

How we use your data

  • Voice recordings are analyzed for acoustic biomarkers to support research
  • Data is used for research purposes only — the app provides no medical advice
  • Your participation is voluntary and you may withdraw at any time

How we protect your data

  • Data is encrypted in transit (TLS) and at rest (AES-256)
  • Passwords are hashed (bcrypt) and never stored in plain text
  • Access is restricted to authorized research personnel only

Data sharing and service providers

  • We do not sell your data or share it with third parties for marketing purposes
  • We use trusted third-party service providers to operate the app, including a cloud hosting provider (for secure data storage) and an email delivery provider (for account and password-reset emails). These providers process data on our behalf and do not use it for their own purposes.
  • Aggregated, de-identified data may be used for research publications

Your rights

  • You may request deletion of your data at any time
  • You may withdraw from the study at any time
  • Contact us with any questions or concerns

Contact

Research Use Only — Not for clinical diagnosis.

Data protection: This platform uses industry-standard encryption in transit and at rest.

Encrypted at Rest & in Transit Research Grade
Contact us →