awaaz-legal

Privacy Policy for Awaaz

Last updated: 4 October 2026 Effective date: 4 August 2026


Summary (the short version)

Awaaz is a voice-only social network. You get in by signing in with Google, and that is now the only way in. From that sign-in we receive your Google email address, display name and profile photo URL. We store your email address, and we keep the Google display name and photo URL in a private part of your account that only you and we can read. Your public identity on Awaaz is a member number (for example u/101) that we assign when you join; other people never see your Google name or your Google photo. You can add an optional display name from your profile if you want to be known. We also store the voice notes you record and the follow relationships you create. We do not collect your phone number, your location, your contacts, or any advertising identifier. We do not sell your data. We do not share it with third-party advertisers. You can delete your account from inside the app at any time; you then have 30 days to change your mind before it is permanently deleted (see section 6).

If you only read one section, read this one. The rest of this document explains the same thing in the detail that privacy law requires.


1. Who we are (Data Controller)

Awaaz is operated by an independent developer (“we”, “us”, “Awaaz”). For the purposes of the EU General Data Protection Regulation (GDPR) and India’s Digital Personal Data Protection Act, 2023 (DPDP Act), we are the Data Controller (or “Data Fiduciary” under the DPDP Act) for the data described in this policy.

Contact: awaazappofficial@gmail.com Developer: Awaaz Jurisdiction: India


2. What data we collect and why

We collect only what the app needs to function. Each item below lists the data, the purpose, and the legal basis under GDPR.

2.1 Account information

Awaaz accounts are created and accessed with Sign in with Google. There is no Awaaz password to choose and no separate Awaaz credential to lose.

When you sign in, Google returns a signed identity token for the Google account you picked. From it the app receives:

What we then keep:

Why we need it: to authenticate you, and to give you a route back into your account. Awaaz previously held no email address at all, which meant a lost credential was unrecoverable; delegating sign-in to Google is what fixes that.

The sign-in itself takes place on Google’s side and is governed by Google’s Privacy Policy. Awaaz never sees your Google password, and receives only the basic profile and email address described above.

Legal basis: performance of a contract (GDPR Art. 6(1)(b)) — we cannot give you an account without this.

Accounts created before Google sign-in. Until August 2026, an Awaaz account was created with a username and an access code (a password), and Firebase Authentication was given a synthetic identifier of the form yourname@awaaz.local — not a real address, never used to contact anyone, and unable to receive mail. Those accounts have been disabled: they can no longer be used to sign in. Firebase Authentication still holds the synthetic identifier and the hashed access code for as long as the account record exists; the access code itself was never readable by us. Recordings made under those accounts are retained — see Terms §3. If you want a pre-migration account and its data deleted, email us; Account Deletion explains how.

2.2 Content you create

Legal basis: performance of a contract (GDPR Art. 6(1)(b)).

2.3 Relationship and activity data

Legal basis: legitimate interest (GDPR Art. 6(1)(f)) — operating and moderating a functioning social platform.

2.4 Technical and diagnostic data

Legal basis: legitimate interest (GDPR Art. 6(1)(f)) — keeping the app stable and usable. You can disable analytics and crash reporting in your device’s system settings for Awaaz.

2.5 What we do NOT collect

We want to be explicit about this, because the default for most apps is the opposite. Beyond the basic Google profile and email address described in 2.1, there is:

Other users see your member number (u/101), your display name if you have added one, your bio, the profile photo you uploaded if any, and what you post. They do not see your email address, your Google display name, or your Google profile photo.


3. How your data is stored and secured

No system is perfectly secure. If we ever become aware of a breach affecting your personal data, we will notify affected users and the relevant supervisory authority within 72 hours of discovery, as required by GDPR Art. 33–34 and the DPDP Act.


4. International data transfers

Awaaz is operated from India and uses Google Firebase, whose infrastructure spans multiple Google Cloud regions. Your data may be stored on, or accessed from, Google Cloud servers located outside your country of residence, including in the United States and the European Union.

Google Cloud is certified under the EU–U.S. Data Privacy Framework and offers Standard Contractual Clauses (SCCs) for transfers from the EEA, the UK, and Switzerland. These provide the legal safeguards required by GDPR Chapter V.


5. Who we share data with

We share data only with the infrastructure providers that make the app run:

We do not:

We may disclose data if compelled by a valid legal order from a court of competent jurisdiction. If we receive such an order and are not legally prohibited from doing so, we will attempt to notify the affected user before complying.


6. Data retention and deletion

6.1 While your account is active

Your account data, voice notes, and activity records are retained as long as your account exists.

If your account is disabled (see Terms §3), the same data is retained. Disabling stops sign-in; it is not deletion. You can still have the data erased — email us as described in Account Deletion, and we will delete it on the same terms as an in-app deletion.

6.2 When you delete your account

You can delete your account at any time from Profile → Delete Account. Google asks you to confirm the account first — that step exists so that a phone left unlocked cannot be used to delete someone’s account.

You have 30 days to change your mind. When you confirm, nothing is deleted yet:

On the 30th day your account is permanently deleted:

Audio files deleted from Firebase Storage may persist in encrypted Google Cloud backups for up to 30 days before being permanently overwritten. After this period, the data is unrecoverable.

When these rules apply. The 30-day window applies to deletions requested in the app from 29 September 2026 — the app says so before you confirm. The two additions in section 6.3 marked from 13 October 2026 take effect on that date, 14 days after we announced them in the app; no account can reach its 30th day before then.

6.3 Retained beyond account deletion


7. Your rights

Depending on where you live, you have some or all of the following rights. Awaaz honors them for all users, globally, regardless of local law:

To exercise any right that you cannot complete inside the app, email awaazappofficial@gmail.com. We will respond within 30 days.


8. Children and minors


9. Moderation, safety, and community guidelines


10. Cookies and trackers

Awaaz is a mobile application and does not use web cookies. Our mobile SDKs (Firebase) use local device storage to cache authentication tokens and pending uploads. This storage is cleared when you uninstall the app.

Awaaz does not use any third-party advertising SDK, attribution SDK, or cross-app tracking technology.


11. Changes to this policy

We may update this policy over time. When we do:


12. Grievance Officer (India)

In accordance with Rule 3(2) of the Information Technology (Intermediary Guidelines and Digital Media Ethics Code) Rules, 2021, as amended by the Information Technology (Intermediary Guidelines and Digital Media Ethics Code) Amendment Rules, 2026, Awaaz publishes the name and contact details of its Grievance Officer. Any user may contact the Grievance Officer about content on Awaaz, a violation of these terms, or the handling of their personal data.

How complaints are handled:

  1. We acknowledge every complaint within 24 hours of receipt.
  2. We dispose of the complaint within 7 days of receipt, and inform you of the outcome.
  3. Complaints seeking removal of unlawful information are resolved within 36 hours. Where the content exposes a person’s private area, shows nudity or a sexual act, or is impersonatory in nature, it is removed within 2 hours, as required by Rule 3(2)(b).
  4. Content that a court or an appropriate government authority orders removed is taken down within 3 hours.
  5. Reports of child sexual abuse or exploitation are handled under our separate Child Safety Standards, which commit to acknowledgement within 24 hours and removal without delay.

When you write, please include your username, what you are complaining about (a link or a description of the post, plus the poster’s username), and what outcome you are seeking. It helps us meet the timelines above.


13. Contact

For privacy questions, data subject requests, or breach reports:

To request deletion of your account without using the app, see Account Deletion.


This policy is hosted publicly so that its version history is auditable. The canonical URL is linked from the Awaaz app (“Settings → Privacy Policy”) and from the Google Play Store listing.