Last updated August 2, 2026
Privacy Policy
SpeakEasy is a local-network voice companion and text-to-speech tool. This policy describes how its Mac, browser, and iPad surfaces handle microphone audio, transcripts, narration, and credentials.
What SpeakEasy processes
SpeakEasy processes the text you choose to narrate, audio generated from that text, player state, and local configuration such as your preferred provider and voice. Its playback queue, cache, and history are stored on your Mac.
Microphone capture and transcription
SpeakEasy opens a microphone only after you explicitly start a voice turn and stops when you finish or cancel it. A voice turn can begin on the Mac, in the paired browser Deck, or in the native iPad developer preview.
On the Mac, SpeakEasy prefers its bundled Parakeet model, which performs transcription on that Mac. It can use Apple Speech while Parakeet warms or as a fallback. SpeakEasy requests on-device Apple recognition when the operating system reports support; otherwise Apple's handling is governed by the Mac's capabilities, settings, and Apple's privacy terms. Audio is not sent to Arach.
The browser Deck records on the browser device, then sends a bounded audio file over the paired local-network HTTPS connection to the selected Mac. The native iPad shell first tries Apple Speech; Apple's handling of that request is governed by the device's capabilities, settings, and Apple's privacy terms. If Apple Speech is unavailable or does not return a final transcript, the shell sends its fallback recording to the paired Mac for Parakeet transcription.
Mac-side upload directories are owner-only and recordings are mode 0600. The temporary upload is deleted immediately after the transcription request finishes, whether it succeeds or fails. The native iPad shell also deletes its temporary recording after the Apple Speech or Mac fallback path completes. SpeakEasy does not retain voice-turn audio as narration history or upload it to an Arach server.
Local-network Deck
The Deck connects directly to a Mac on the same local network. Paired sessions use a temporary secret and local HTTPS. The Deck exchanges task display state, explicit control commands, transcripts, narration state, and—only for device microphone turns—the bounded recording described above. SpeakEasy does not relay this traffic through an Arach service.
Codex tasks and transcripts
When you send a voice turn, SpeakEasy submits the final transcript to the exact Codex Desktop task you selected. The transcript, Codex response, tool activity, and task history remain in Codex and are governed by your Codex account, application, and retention settings. SpeakEasy does not create an Arach-hosted copy of that conversation.
Speech providers
The macOS system voice runs on your device. If you select OpenAI, ElevenLabs, Groq, or Gemini, SpeakEasy sends the requested text and provider settings directly to that provider so it can generate audio. The provider's privacy policy and terms govern that processing.
Credentials and local files
Provider credentials and settings are read from your environment or from SpeakEasy's local configuration on your Mac. SpeakEasy does not send those credentials to Arach. Treat your local configuration as sensitive and protect access to your user account and files.
Retention and deletion
Arach does not retain your microphone audio, transcripts, narration text, generated audio, queue, history, or provider credentials on an Arach server. Voice-turn recordings are temporary and are deleted as described above. Local settings remain in~/.config/speakeasy until you edit or remove them. Cached narration audio remains until its configured time-to-live or size policy removes it, or until you clear it manually. Local narration history remains until you remove it. Audio files saved to a path you selected remain until you delete them.
You can clear the CLI cache with speakeasy --clear-cache, remove local history or settings from the SpeakEasy configuration directory, and uninstall the plugin or app. Removing a cloud-provider credential from SpeakEasy does not revoke it; revoke the key in the provider's account settings when needed.
Collection by SpeakEasy
The SpeakEasy app, CLI, and plugin do not operate an Arach account service and do not send microphone audio, transcripts, narration text, generated audio, queue contents, or provider credentials to Arach. App installation checks GitHub Releases to download the signed macOS application.
Website analytics
The SpeakEasy website uses Google Analytics to understand aggregate site usage. Google may receive device, browser, approximate location, and interaction information under Google's own policies and the site's Google Analytics retention configuration. This website analytics does not include narration content and is separate from narration performed by the app, CLI, or plugin. Browser privacy controls or content blockers can prevent this analytics collection.
Your choices
- Use only the Mac microphone path to keep capture and transcription on the Mac.
- Use the browser or iPad Deck only on a local network you trust.
- Use the macOS system provider to keep speech synthesis on-device.
- Remove cached audio, history, or configuration from your local SpeakEasy directories.
- Revoke provider credentials with the provider that issued them.
- Uninstall the plugin or macOS app at any time.
Questions
For privacy questions, open an issue in the SpeakEasy issue tracker.