ClipFlow

Privacy · Local first

ClipFlow Privacy Policy

Last updated: August 1, 2026
Effective date: August 1, 2026

ClipFlow is provided by FaiChou ("we", "us", or "our"). ClipFlow is an iOS / iPadOS media utility for tasks such as trimming video and audio, joining audio (including using audio tracks from selected videos), joining videos, creating video collages, changing speed, reversing video, cropping video, applying video and sound filters, recording audio for sound filters, adding mosaic effects, adding text and image overlays, adding text video watermarks, adding device frames, rotating and flipping, compressing video, converting video to GIF, converting video to Live Photo, extracting audio, removing original audio, covering audio with beeps, replacing background music, mixing audio, recognizing speech into subtitle files, burning subtitles into video, system text-to-speech, AI text-to-speech, timers, and media information.

This Privacy Policy explains how we process information when you use the ClipFlow app, ClipFlow Pro, AI text-to-speech services, and related support pages, and how you can manage permissions and data.

In short: most media editing and export happens locally on your device, and Speech to Subtitles also performs recognition only on the device. You can use Apple's on-device system recognition after choosing Chinese or English and granting speech-recognition permission, or choose one of five downloadable local OpenASR models, which automatically handle their supported languages without that system permission. Neither recognition method requests microphone access. Audio Effects requests microphone permission only when you actively start a recording; it stores an unfiltered source recording locally, applies effects on the device, and uploads neither that recording nor the filtered result. Online features you actively use, such as ClipFlow Pro purchase-entitlement verification or AI text-to-speech, still send the necessary information described below.

1. Information Processed Locally on Your Device

To perform the tasks you choose, ClipFlow may read, generate, or store the following information locally on your device:

When you select a video from Photos in Join Audio, ClipFlow reads that video's audio track on your device and adds it to the audio result. Video frames are not included in the audio output or uploaded to our servers for this processing. Videos without an audio track are not added.

When you select a video in Audio Effects, ClipFlow reads, extracts, and processes only the audio track you choose on your device, then creates a separate M4A audio file. Video frames are not included in the Audio Effects result or uploaded to our servers for this processing.

When you actively record in Audio Effects, ClipFlow saves an unfiltered source recording (sometimes called a dry recording) as an M4A file in app-managed local cache storage. Keeping the source unfiltered lets you change the preset without recording again. The live energy waveform, source recording, effect preview, and generated result are processed on the device and are not uploaded to our servers.

Unless you choose to export, save, share, select an external service, or use a feature that requires network access, we do not actively upload your original videos, audio files, images, subtitles, text input, or generated results to our own servers. Requests that download the local speech-recognition model contain none of that media, subtitle content, or recognition results.

2. System Permissions and Capabilities

ClipFlow may request or use the following system permissions and capabilities when you use related features:

You can manage Photos add, microphone, and speech-recognition permissions in system settings. If you disable a permission, the related feature may not work properly. Without microphone permission, you can still use Audio Effects with an imported audio file or video track; without speech-recognition permission, an installed OpenASR model remains available. ClipFlow currently does not request location, contacts, camera, health data, or advertising tracking permission.

3. Local Speech Recognition, StoreKit, and System Services

When you choose on-device system recognition, ClipFlow requires Apple's Speech framework to process the request only on the device and does not allow it to send audio over the network. You select Chinese or English before recognition begins. This method uses speech-recognition permission but not microphone permission; if the device or selected language does not support on-device recognition, ClipFlow does not fall back to cloud recognition.

After you confirm a download, ClipFlow retrieves model information through OpenASR's signed catalog at catalog.openasr.org and downloads your selected model from weights.openasr.org, huggingface.co, hf-mirror.com, or a content delivery network used by a Hugging Face redirect. The five available models range from about 63 MB to 564 MB per download. You may install more than one, but ClipFlow loads only the active model for each recognition job. A download request may expose routine network metadata such as your IP address, User-Agent, request time, and response status to the applicable provider, but it contains none of your imported audio, video, subtitle text, or recognition results. After a model is verified and installed, all speech-recognition inference runs on your device.

ClipFlow Pro monthly and yearly auto-renewable subscriptions, the Lifetime Pro non-consumable one-time purchase, and related renewals, refunds, billing, and subscription management are handled by Apple through the App Store and StoreKit. Lifetime Pro has no expiration date. We do not receive your card number, payment account password, or full billing details. To verify Pro access and process transaction notifications, we may receive and store transaction identifiers, original transaction identifiers, product IDs, product types, subscription status, expiration dates that may be absent, refund or revocation status, environment information, and Apple-signed transaction data. To associate entitlements across devices using the same Apple purchasing account, we also process the pseudonymous appTransactionId in Apple-signed transactions. It is not your Apple ID email address and is not used for advertising.

4. AI Text-to-Speech Service

Only when you actively use AI text-to-speech does ClipFlow connect to our service at clipflowtts.faichou.com. To generate audio, verify Pro access, prevent abuse, enforce daily limits, troubleshoot issues, and provide support, we may process the following information:

Before sending text to the voice-generation provider, we apply content-safety checks. A rejected request is not sent to Xiaomi Mimo.

AI text-to-speech is powered by a third-party voice generation provider. To generate audio, we send the text you submit and the selected voice to the voice service provider, currently Xiaomi Mimo. The provider may process request content, return audio, or perform content safety review according to its service rules. Please do not enter sensitive information that you do not want to submit to an online service.

We do not use your media, text, subtitles, or generated results for advertising. We do not sell your personal information. We do not use your content to train our own models.

5. How We Use Information

We use information only as necessary to provide, maintain, and improve ClipFlow, including to:

6. Sharing and Third-Party Services

Information may leave ClipFlow or be processed by third parties in the following situations:

Third-party apps, model-distribution and content-delivery services, cloud services, email services, Apple system services, and AI voice generation providers process information under their own privacy policies and terms.

7. Storage, Retention, and Deletion

ClipFlow may create local temporary copies, stabilized media copies, export caches, share-import caches, unfiltered Audio Effects recordings, AI text-to-speech history, and intermediate results needed for processing. These files are mainly stored in the app sandbox, its cache directories, or the App Group shared import directory.

If you discard or replace an Audio Effects recording before using it, ClipFlow deletes that local recording. A recording you choose to use remains in app-managed temporary storage only as needed for the current workspace and cache lifecycle, so it can be previewed and rendered with a different preset. Ending or deleting the workspace and normal cache cleanup remove these managed copies; iOS / iPadOS may also clear cache storage under its system policies.

Each local speech-recognition model you confirm for download remains in the app's local storage for later offline recognition and is not automatically removed as an ordinary temporary cache. Installing multiple models uses the sum of their individual storage sizes. You can switch the active model or delete downloaded models individually in Speech to Subtitles settings. Uninstalling ClipFlow will also normally remove all models stored in the app sandbox.

Text video watermark templates that you choose to save remain in local app preferences so they can be reused from watermark history with one tap. The watermark feature does not upload these templates to our servers. A template remains until you delete it from watermark history or uninstall ClipFlow.

ClipFlow clears files it manages at appropriate times, such as when you delete a workspace, finish processing, open the app and expired caches are cleaned, or complete share-import processing. iOS / iPadOS may also clear cache directories according to system policies. Results you save to Photos, the Files app, iCloud Drive, external storage, or third-party apps remain in those locations until you delete them or those services process them under their own rules.

AI text-to-speech history and generated audio are stored locally on your device until you delete them in the app or uninstall the app. Uninstalling ClipFlow usually deletes data in the app sandbox, but does not automatically delete files you already saved to Photos, the Files app, iCloud Drive, or other apps.

Our servers retain Pro purchase-entitlement verification records (including the pseudonymous appTransactionId), device binding records, daily usage counts, and API logs for service operation, quota control, security, abuse prevention, troubleshooting, and necessary compliance purposes. Full raw App Store server-notification payloads are kept only while needed for processing or a failed retry. After processing succeeds, we remove the raw payload but retain the notification identifier and processing status to prevent duplicate handling. If you want to access, correct, or delete information you provided in support communications or service use, you can contact us using the email address below. Some information related to transactions, billing, security, dispute handling, or legal obligations may need to be retained for a necessary period.

8. Security

We prioritize on-device processing and system sandboxing to reduce the chance that media files leave your device. Online services use HTTPS transport. Share import uses the App Group shared space to pass files between ClipFlow and its share extension, and import and generation caches are stored in local directories managed by the app.

No storage or transmission method can be guaranteed to be absolutely secure. Please protect your device, system account, iCloud account, exported files, and sharing destinations, and avoid sending sensitive media or text to untrusted third parties or online services.

9. Your Choices and Rights

You can manage information in the following ways:

We will handle your request as required by applicable laws and regulations.

10. Children

We recommend that minors use ClipFlow under the guidance of a parent or guardian. Minors should obtain consent and guidance from a parent or guardian before importing, editing, generating, saving, or sharing videos, audio, images, text, subtitles, or before using online features such as AI text-to-speech.

If a parent or guardian believes that a minor has provided personal information to us, they may contact us using the information in this policy.

11. Changes to This Policy

We may update this Privacy Policy from time to time based on product features, legal requirements, or operations. If ClipFlow later adds a new account system, cloud sync, cloud media processing, third-party analytics, crash reporting, advertising, or other services that may involve personal information processing, we will update this policy and obtain any required authorization or consent under applicable law.

If we make material changes, we will notify you through in-app notices, release notes, support pages, or other appropriate methods. If you continue to use ClipFlow after the updated policy takes effect, it means you have read and understood the updated Privacy Policy.

12. Contact Us

If you have questions, comments, or requests about this Privacy Policy or privacy protection, please contact us at:

Email: clipflowapp@outlook.com