SpeakRounds Privacy Policy

Effective date: 14 August 2026 · Last reviewed: 14 August 2026

SpeakRounds is an independent OET Nursing Speaking practice application. It is not affiliated with or endorsed by OET. This policy explains how the SpeakRounds mobile application and its practice service process information.

1. Who operates SpeakRounds

The data controller is JoCoding, Inc. (Republic of Korea).

Privacy questions and requests can be sent to bill@jocoding.net.

2. Information processed

Information stored on the device

The app stores the learner's onboarding choices, interface language, feedback language, test-planning selections, and limited local practice state. The user can remove this information from Profile & settings by choosing Delete local practice data. Removing the app also removes its local data, subject to normal operating system backup behavior.

Information processed during Live AI practice

When the learner starts a Live AI role-play, SpeakRounds processes:

Learners must not include a real patient's name, contact details, medical record, or other real-world patient information. SpeakRounds is an educational simulation, not a clinical-record system.

SpeakRounds currently has no learner accounts and does not request a legal name, email address, phone number, contacts, precise location, advertising identifier, or card details in the app. SpeakRounds Pro purchases are handled by Apple and validated through RevenueCat using an anonymous identifier (see Service providers).

3. How the information is used

The information is used only to:

SpeakRounds does not use the recordings or transcripts for advertising, cross-app tracking, data brokerage, or sale. SpeakRounds does not claim that its practice feedback is an official OET result, pass prediction, or clinical advice.

4. Service providers

Live AI practice uses the following processors:

Provider API data is not used to train provider models by default unless the operator explicitly opts in. Under the providers' standard API controls, security or abuse-monitoring records may be retained for up to 30 days. Approved zero-data-retention controls may reduce this period. The in-app notice and this policy will be updated if the active provider controls change.

Provider policies:

5. Retention and deletion

SpeakRounds encrypts active server-side session state at rest and automatically deletes it 30 minutes after the session was created. This includes the SpeakRounds copy of raw audio, transcript, AI-patient turns, report, and targeted retries. Audio playback does not extend that deadline. Temporary mobile recording files are removed after successful upload or when the flow is disposed; the app also cleans up stale temporary files on a later start where supported.

OpenAI and xAI may separately keep security or abuse-monitoring records for up to 30 days under their standard API settings, as described above. SpeakRounds cannot use the local delete button to shorten a processor's mandatory security retention.

There is no cloud history or account profile in this beta. If accounts or saved history are introduced, this policy and the deletion controls will be updated before that feature is enabled.

6. Legal basis

Where the GDPR or UK GDPR applies, Live AI practice is processed at the learner's request to provide the practice service. Security and abuse prevention are processed for the legitimate interest of protecting the service, providers, and learners. Microphone access is requested in context and can be denied; without it, Live AI voice practice cannot run, but the illustrative sample remains available.

7. International transfers

The service providers may process information outside the learner's country. The operator configures appropriate contractual and transfer safeguards where required. The production hosting region is Seoul, South Korea.

8. Security

Production traffic uses HTTPS. Provider credentials remain on the server. Active session data is encrypted at rest, bearer-token protected, rate-limited, excluded from caches, and deleted on a fixed expiry. Logs are designed to exclude raw audio, transcripts, provider keys, and session bearer tokens. No system can guarantee absolute security.

9. Learner choices and rights

Users can:

Because the beta has no account, the operator may need a session request ID and time window to locate a still-active session and may be unable to identify data after the fixed deletion deadline.

10. Children

SpeakRounds is intended for healthcare professionals and adult OET candidates. It is not directed to children under 16 and does not knowingly collect their information.

11. Changes

Material changes will be shown in the app or on this page with a new effective date. This public policy always matches the behavior of the released app and production provider settings.

SpeakRounds · Support