Privacy policy

What we collect, who touches it, how long we keep it, and how to take it back.

Last updated 29 July 2026


Who is responsible for your data

Leora is operated by Maruf Rahman Tangin, an individual based in Ajman, United Arab Emirates. In the language of the UAE Personal Data Protection Law, that makes Maruf Rahman Tangin the Data Controller for the information described below — the person who decides why it is processed and how.

You can reach the controller at [email protected]. That address is read by a person, and it is the correct route for any request in this document.

Which law applies

Leora is operated from the United Arab Emirates and is governed by Federal Decree-Law No. 45 of 2021 on the Protection of Personal Data. Where you live somewhere with its own data-protection regime that grants you stronger rights, we will honour those rights rather than argue about which law applies.

What we collect, and why

Only what the product needs to work. Specifically:

  • Your account. Email address, and optionally a first name, last name, or username if you provide one. If you sign in with Google, we receive your email address and name from Google — never your Google password, and never your Gmail, contacts, Drive or calendar. Purpose: to create your account, sign you in, and contact you about the service.
  • Voice recordings. Audio you record in the app, kept only until it has been transcribed. Purpose: to turn what you said into a transaction. See retention below.
  • Transcripts and transactions. The text of what you said, and the structured record produced from it — amount, type, category, item, counterparty, note, date. Purpose: this is the product; it is your ledger.
  • Your businesses. The names, types and currencies of the books you keep. Purpose: to keep separate books separate.
  • Corrections. When you change something Leora got wrong, we record that it was changed. Purpose: this is the single most useful signal we have for improving accuracy.

We do not collect contacts, location, photos, advertising identifiers, or anything from other applications on your device.

Our legal basis for processing

Under the PDPL, personal data may be processed where the data subject has consented, or where one of the law's other stated bases applies. For Leora:

  • Your consent, given when you create an account and again, specifically, when you first grant microphone access. Consent to recording is a separate decision from consent to holding an account, and the app treats it as one.
  • Performance of our agreement with you — we cannot provide a ledger without storing the ledger.

You may withdraw consent at any time by deleting your account from inside the app. Withdrawal does not make past processing unlawful, but it stops all future processing and removes what we hold.

Who processes it

We use a small number of specialist providers, each acting as a Data Processor on our instructions. Each receives only what it needs for its job, and none of them receives your name, your email address, or your account identity alongside your audio.

  • Clerk — Accounts, sign-in and authentication.
  • Supabase — The database holding your businesses, transactions and transcripts.
  • Cloudflare — Hosting for the Leora API and this website.
  • Groq — Speech-to-text transcription of your recordings.
  • OpenAI — Speech-to-text transcription, used only as a fallback when Groq is unavailable.
  • Anthropic — Converting a transcribed sentence into a structured transaction.
  • PostHog — Product analytics — recording that an event happened, not the financial content of it.
  • Sentry — Crash and error reporting, so defects in the app can be found and fixed. (Not yet in use. Listed in advance so that enabling it is never a silent change to this policy.)

We do not sell your data. We do not share it with advertisers. We do not use your financial records to train anyone's models, and we do not permit our processors to use them for that purpose either.

Transfers outside the UAE

Stated plainly, because the PDPL requires it and because you are entitled to know: your data is processed outside the United Arab Emirates. The providers listed above operate global infrastructure, principally in the United States and the European Union. When you record a sentence, the audio leaves the country to be transcribed.

We rely on each provider's contractual data-protection commitments to safeguard that transfer. If cross-border processing is unacceptable to you, Leora is not a suitable product for your business, and we would rather say so here than have you discover it later.

How long we keep it

  • Audio: transiently. A recording is written to your phone before anything is sent anywhere, which is what lets you record with no signal. It stays on your device until it has been transcribed — however long that takes — and is deleted from the device within a few days after that. We keep no copy of your audio on our servers. Once it has been transcribed, the recording itself is gone.
  • Transcripts and transactions: until you delete them. These are your records; they persist so you can trace any figure back to the sentence that produced it.
  • Your account: until you delete it. Deleting removes everything, permanently. See below.

How it is protected

Access to your records is enforced in the database itself, not merely in the app. Every row is bound to your account by a policy that Postgres applies to every query, so another Leora user cannot read your data even if they request it directly rather than through the app. All traffic is encrypted in transit.

A fuller account is on the security page, including what we have deliberately not built yet.

Your rights

Under the PDPL you have the rights below. Two of them you can exercise yourself, immediately, without asking us:

  • Take it with you (data portability). Account → Export your data produces a CSV of everything.
  • Remove it (erasure). Account → Delete account removes every business, transaction and transcript we hold, along with your sign-in. It is immediate and permanent, and we cannot restore it afterwards.

For the remainder, write to us and we will act:

  • Access — to be told what we hold about you, and to receive a copy.
  • Correction — to have inaccurate data corrected.
  • Restriction — to have processing limited while a dispute is resolved.
  • Objection — to object to processing on grounds relating to your situation.
  • Withdrawal of consent — at any time, as described above.

Write to [email protected]. We aim to respond within 30 days. We will not charge you for a reasonable request, and we will not ask why you are making it.

If you are not satisfied

If we have not resolved your concern, you may complain to the UAE Data Office, the supervisory authority established under the PDPL. Please raise it with us first — not because you must, but because we can usually fix it faster than a complaint can be processed.

Children

Leora is a business tool and is not intended for anyone under 16. We do not knowingly collect information from children. If you believe a child has created an account, write to us and we will delete it.

Breach notification

If personal data we hold is exposed in a way that is likely to harm you, we will notify you and the UAE Data Office as the law requires, describing what happened, what was affected, and what we have done about it. We will not wait for certainty before telling you something is wrong.

Changes

If this policy changes materially we will say so in the app before the change takes effect, rather than quietly updating this page. The date at the top is always the date of the version you are reading.


A plain-language walkthrough of the same ground, with less formality, is at how your data is handled. Where the two differ, this page governs.