← Legal center

Devoted Action LLC · ChurchAudioAI

Privacy Policy

This policy explains what personal information ChurchAudioAI handles, why it is used, and the choices available to users.

Effective July 22, 2026 · Version 2026-07-22

1. Scope and controller

Devoted Action LLC, a Minnesota limited liability company (Minnesota file no. 1655411200025) operates ChurchAudioAI. This policy applies to our website, accounts, live translation, billing, support, voice profiles, and related tools. For service content submitted by a Customer organization, the Customer generally determines the purpose of processing and Devoted Action acts as its processor/service provider under the DPA. We act as controller/business for account administration, billing, security, and our own legal obligations.

2. Information we collect

  • Account and organization data: name, email, phone, church or organization, role, language, and authentication records.
  • Billing data: Stripe customer and transaction identifiers, plan, invoices, payment status, tax and billing address. We do not store full card numbers.
  • Service content: live audio chunks, transcripts, translations, generated audio, event metadata, speaker names, voice samples, voice models or provider identifiers, and generated sermon content.
  • Optional quality-review recordings: when an organization owner or administrator enables the feature and confirms recording authority, we privately retain segmented copies of the source audio sent to live recognition, an independent reference transcript, difference metrics, and review recommendations.
  • Technical data: IP address, browser, device, timestamps, session identifiers, connection status, error logs, performance metrics, and security events.
  • Optional advertising measurement data: after consent, Meta Pixel and Meta Conversions API may receive visits to public marketing pages, browser and device information, referrer, IP-derived location, and advertising identifiers. They are not enabled on listener, host, live-service, billing, or authenticated account pages.
  • Communications and choices: support messages, sales requests, consents, policy versions, preferred language, and cookie/local-storage settings.

3. Purposes and legal bases

  • Provide and perform the requested service and Customer contract.
  • Authenticate users, prevent abuse, secure systems, diagnose faults, and maintain service reliability.
  • Process payments, subscriptions, deposits, taxes, accounting, and disputes.
  • Comply with law and establish, exercise, or defend legal claims.
  • With consent where required, create and use a synthetic voice profile and send transactional communications.
  • With separate marketing consent, measure advertising effectiveness and create advertising audiences from visits to public marketing pages.
  • Improve features using operational analytics and de-identified or aggregated information; we do not sell personal information or use Customer voice content for advertising.
  • When separately enabled by the Customer, compare a service recording with its live transcript to identify missing or incorrectly recognized speech. Recommendations are reviewed by a person and do not automatically change the live system.

4. Sharing and subprocessors

We disclose information only as needed to service providers for cloud database/storage, AI recognition and synthesis, payments, email, monitoring, and infrastructure; to professional advisers; in a corporate transaction; to comply with lawful process; or at Customer direction. Current categories and providers are listed on the Subprocessors page.

We do not sell personal information for money and never use Customer voice content, service audio, transcripts, listener activity, church-service data, account data, or payment data for advertising. With consent, limited public-site visit data may be disclosed to Meta for advertising measurement and audience creation, which some laws may define as sharing or targeted advertising. Visitors can decline or withdraw this permission through Privacy choices in the footer, and we honor supported Global Privacy Control signals.

5. Voice and potentially biometric information

Voice recordings and models may be regulated as biometric identifiers or voiceprints in some jurisdictions. We process them only to create and operate the speaker voice selected by the Customer, subject to the separate Voice and Biometric Data Consent and retention schedule. We do not use voice profiles to identify people, authenticate access, infer sensitive traits, or track individuals.

6. Retention and deletion

We keep data only as long as reasonably needed for the purposes above, Customer instructions, security, disputes, and law. Specific periods and deletion controls are described in the Data Retention Schedule. Customers can manually delete completed services and voice profiles. Deletion from backups and subprocessors may take additional time.

Optional quality-review recordings use the retention selected by the Customer (7 days by default and no more than 90 days in the product), can be deleted manually at any time, and are stored privately within the Customer organization.

7. Security

We use access controls, organization isolation, encrypted transport, private storage, signed media URLs, logging, backups, and vendor controls appropriate to the nature of the data. No system is completely secure. Customers should limit account access, use strong credentials, and avoid collecting unnecessary sensitive information.

8. International transfers

Information may be processed in the United States and other countries where our subprocessors operate. Where required, we use contractual and organizational safeguards, including standard contractual clauses or equivalent mechanisms.

9. Your rights

Depending on location, you may request access, correction, deletion, portability, restriction, objection, withdrawal of consent, or an appeal of a privacy decision. Email info@churchaudioai.com. We may verify identity and route service-content requests to the Customer organization that controls the data. You may also complain to the relevant privacy regulator.

Withdrawing consent does not affect prior lawful processing. Some records may be retained where required for billing, security, fraud prevention, or legal claims.

10. Children, cookies, and changes

The account service is not directed to children under 13 and we do not knowingly allow children to create operator accounts. Churches are responsible for lawful notices and consent if services include children's voices or personal information.

Our use of cookies and browser storage is described in the Cookie Policy. Material privacy changes will be posted with a new effective date and additional notice or consent where required.

Optional advertising measurement is limited to public marketing pages. It is disabled on live listener and speaker pages and inside customer accounts.

11. Contact

Privacy requests: info@churchaudioai.com. Devoted Action LLC, 8400 Bass Lake Rd, New Hope, MN 55428-5346, USA.