Last updated: July 2, 2026
Sotto is built so that as little of your data as possible ever leaves your device. This page explains exactly what happens to your information.
Sotto uses Apple's on-device Speech framework to transcribe conversation audio in real time. On supported devices, this transcription happens entirely on your device — your voice audio is never uploaded to Sotto's servers or to Apple for this purpose, because Sotto does not have servers that receive your audio at all.
When you tap Generate, or when auto-respond triggers after a pause, Sotto sends the following text (not audio) to OpenAI's API to generate a suggested response:
Before this happens, Sotto shows you exactly what is sent and requires you to explicitly agree before your first request — you can decline and use Sotto only for on-device transcription instead.
This is subject to OpenAI's own privacy policy, which commits to the same standard of confidentiality and security for API data as Sotto applies to data on your device: OpenAI does not use API inputs to train its models by default, and retains this data only as needed to provide the service. Sotto does not control how OpenAI retains or processes this data beyond generating the response.
Privacy Mode hides the transcript and response on-screen at any time. Clear wipes the current session's transcript. You can delete your API key, profile, and job description at any time from within the app, and uninstalling Sotto removes all locally stored data.
Questions about this policy: sang@vonellc.com