DATA AND VOICE PERMISSIONS

Your voice stays private.

Use your own voice or a speaker who has explicitly authorized you to synthesize speech with it. Your project controls access to its voices and generated audio.

Speaker permission

Voice registration records the speaker’s name, permission type and acceptance of the voice consent terms. When uploading another speaker’s recording, keep written permission covering cloning and your intended use, and include its reference when you register.

With Invite a friend, the speaker confirms permission on the recording page. That submission is linked to the voice’s consent record; you do not need to enter a separate permission reference. Revoking an unused invitation disables its recording link. To remove a voice that has already been created, delete that voice separately.

Do not use a voice to impersonate someone without permission or mislead listeners about who is speaking.

Delete and revoke

Deleting a voice immediately blocks new speech and access to its previous downloads. The console displays “Deleting” while reference recordings, voice prompts and retained audio are removed. It shows “Deleted” after cleanup succeeds.

Private storage

Reference recordings, voice prompts and retained audio in the API’s private object store are encrypted with AES-256-GCM and accessible through your authenticated project. The inference service processes decoded audio and retains private voice-model files until voice deletion completes. Host access controls protect these working files; they do not use the API object encryption.

Operational request logs record identifiers, character counts and status, without storing the source text or audio in those logs.

Retention

Generated audio and recoverable job input expire within 24 hours. Voice references and prompts remain until you delete the voice. Payment, usage and consent records are kept separately from audio so charges and permissions can be traced.

Where processing happens

International API speech processing and private audio storage use US infrastructure. The China service uses its own regional storage; voices and recordings are not automatically copied between regions.

Data or operationLocation in this deployment
API application, account access and usage ledgerUnited States
Text synthesis and reference voice encodingUnited States
Encrypted recordings, voice prompts, previews, job input, audio and timestampsUnited States (Ohio)
Card payment detailsProcessed by Stripe; card numbers are not stored by the Voice API

The international API does not fall back to China for inference or audio storage. Its private storage bucket is separate from the CastReader reading apps. Google sign-in and Stripe payments follow those providers’ own data handling policies; the locations above describe the API infrastructure, not a residency guarantee for every third-party service.

API credits and voice access are separate from CastReader reading plans. See pricing and billing for usage and payment details.

Developer applications and website measurement

If you request access, we store your email, project description, approximate usage and referral category to review and follow up on the application. This does not subscribe you to a newsletter or automatically activate a workspace.

Public pages collect aggregate page visits and action counts by referral category. This measurement does not store your text from the request explorer, full referral URLs, raw IP addresses or a cross-site advertising identifier. Browser privacy signals disable these optional page events. Short-lived hashed rate-limit buckets help protect public forms.

CastReader privacy policy · Terms of service

For account, voice deletion or application questions, contact CastReader support using the email associated with your request or account.