Privacy · Local first
ClipFlow Privacy Policy
ClipFlow is provided by FaiChou ("we", "us", or "our"). ClipFlow is an iOS / iPadOS media utility for tasks such as trimming video and audio, joining audio (including using audio tracks from selected videos), joining videos, creating video collages, changing speed, reversing video, cropping video, applying video and sound filters, recording audio for sound filters, adding mosaic effects, adding text and image overlays, adding text video watermarks, adding device frames, rotating and flipping, compressing video, converting video to GIF, converting video to Live Photo, extracting audio, removing original audio, covering audio with beeps, replacing background music, mixing audio, recognizing speech into subtitle files, burning subtitles into video, system text-to-speech, AI text-to-speech, timers, and media information.
This Privacy Policy explains how we process information when you use the ClipFlow app, ClipFlow Pro, AI text-to-speech services, and related support pages, and how you can manage permissions and data.
In short: most media editing and export happens locally on your device, and Speech to Subtitles also performs recognition only on the device. You can use Apple's on-device system recognition after choosing Chinese or English and granting speech-recognition permission, or choose one of five downloadable local OpenASR models, which automatically handle their supported languages without that system permission. Neither recognition method requests microphone access. Audio Effects requests microphone permission only when you actively start a recording; it stores an unfiltered source recording locally, applies effects on the device, and uploads neither that recording nor the filtered result. Online features you actively use, such as ClipFlow Pro purchase-entitlement verification or AI text-to-speech, still send the necessary information described below.
1. Information Processed Locally on Your Device
To perform the tasks you choose, ClipFlow may read, generate, or store the following information locally on your device:
- Videos, audio files, images, subtitle files, and text files that you choose, import, or send to ClipFlow through the system share sheet, and audio you actively record in Audio Effects.
- Text you enter in the app, such as text overlays, subtitle text, system text-to-speech text, or AI text-to-speech text.
- Technical media information, such as file name, format, size, duration, dimensions, resolution, frame rate, audio tracks, video tracks, codecs, and system-readable type descriptions.
- Processing settings, such as trim or reverse ranges, join order, gap durations between audio items and optional silence at the end, collage layout, speed values, video-filter selections and strengths, sound-filter selections, selected video audio-track identifiers, image-adjustment values, mosaic positions, text or image overlay styles, text-watermark content, style, placement, motion preset, and timing, subtitle styles, device frame styles, rotation or flip direction, compression settings, volume settings, subtitle format, timer style, and export format.
- Results generated by the app, such as videos, audio files, GIFs, Live Photos, subtitle files, and media information results.
- App preferences and local records, such as the home layout, feature order, saved text-video-watermark templates and history, preferred AI voice, temporary App Shortcuts or deep-link selections, local ClipFlow Pro entitlement cache, the selected recognition method and system-recognition language, downloaded local speech-recognition models and their versions and installation states, and AI text-to-speech history and audio files saved on your device.
When you select a video from Photos in Join Audio, ClipFlow reads that video's audio track on your device and adds it to the audio result. Video frames are not included in the audio output or uploaded to our servers for this processing. Videos without an audio track are not added.
When you select a video in Audio Effects, ClipFlow reads, extracts, and processes only the audio track you choose on your device, then creates a separate M4A audio file. Video frames are not included in the Audio Effects result or uploaded to our servers for this processing.
When you actively record in Audio Effects, ClipFlow saves an unfiltered source recording (sometimes called a dry recording) as an M4A file in app-managed local cache storage. Keeping the source unfiltered lets you change the preset without recording again. The live energy waveform, source recording, effect preview, and generated result are processed on the device and are not uploaded to our servers.
Unless you choose to export, save, share, select an external service, or use a feature that requires network access, we do not actively upload your original videos, audio files, images, subtitles, text input, or generated results to our own servers. Requests that download the local speech-recognition model contain none of that media, subtitle content, or recognition results.
2. System Permissions and Capabilities
ClipFlow may request or use the following system permissions and capabilities when you use related features:
- Photos selection: used to choose videos or available media from the system photo library, including reading the selected video's audio track for Join Audio. Selecting an item does not give ClipFlow ongoing access to your entire library.
- Photos add permission: used to save generated videos, GIFs, or Live Photos to the system photo library.
- File access: used to choose videos, audio files, images, subtitle files, or text files from the Files app, iCloud Drive, external storage, or other file providers, and to save or share generated results.
- Share extension: when you choose ClipFlow from another app's share sheet, the share extension temporarily copies the files you selected into the App Group import space and then opens the main app for processing.
- Microphone permission: requested only after you open Audio Effects and actively start a recording. It is used to capture the source audio and update the live audio-energy waveform. Importing an audio file or video track and using either Speech to Subtitles recognition method do not require microphone permission.
- Speech-recognition permission: requested only when you choose on-device system recognition and start generating subtitles, so Apple's Speech framework can recognize Chinese or English in the selected audio or video. OpenASR recognition does not require this permission.
- System text-to-speech: when you use system text-to-speech, ClipFlow uses Apple's system speech capabilities to generate audio.
- StoreKit and the App Store: used to purchase, restore, and verify ClipFlow Pro monthly and yearly auto-renewable subscriptions and the Lifetime Pro non-consumable one-time purchase.
- App Shortcuts and deep links: used to open a specific feature from system shortcuts, Siri, or links.
You can manage Photos add, microphone, and speech-recognition permissions in system settings. If you disable a permission, the related feature may not work properly. Without microphone permission, you can still use Audio Effects with an imported audio file or video track; without speech-recognition permission, an installed OpenASR model remains available. ClipFlow currently does not request location, contacts, camera, health data, or advertising tracking permission.
3. Local Speech Recognition, StoreKit, and System Services
When you choose on-device system recognition, ClipFlow requires Apple's Speech framework to process the request only on the device and does not allow it to send audio over the network. You select Chinese or English before recognition begins. This method uses speech-recognition permission but not microphone permission; if the device or selected language does not support on-device recognition, ClipFlow does not fall back to cloud recognition.
After you confirm a download, ClipFlow retrieves model information through OpenASR's signed catalog at catalog.openasr.org and downloads your selected model from weights.openasr.org, huggingface.co, hf-mirror.com, or a content delivery network used by a Hugging Face redirect. The five available models range from about 63 MB to 564 MB per download. You may install more than one, but ClipFlow loads only the active model for each recognition job. A download request may expose routine network metadata such as your IP address, User-Agent, request time, and response status to the applicable provider, but it contains none of your imported audio, video, subtitle text, or recognition results. After a model is verified and installed, all speech-recognition inference runs on your device.
ClipFlow Pro monthly and yearly auto-renewable subscriptions, the Lifetime Pro non-consumable one-time purchase, and related renewals, refunds, billing, and subscription management are handled by Apple through the App Store and StoreKit. Lifetime Pro has no expiration date. We do not receive your card number, payment account password, or full billing details. To verify Pro access and process transaction notifications, we may receive and store transaction identifiers, original transaction identifiers, product IDs, product types, subscription status, expiration dates that may be absent, refund or revocation status, environment information, and Apple-signed transaction data. To associate entitlements across devices using the same Apple purchasing account, we also process the pseudonymous appTransactionId in Apple-signed transactions. It is not your Apple ID email address and is not used for advertising.
4. AI Text-to-Speech Service
Only when you actively use AI text-to-speech does ClipFlow connect to our service at clipflowtts.faichou.com. To generate audio, verify Pro access, prevent abuse, enforce daily limits, troubleshoot issues, and provide support, we may process the following information:
- The text you submit for synthesis, including the original text of requests rejected by our content-safety rules, the selected AI voice, client request ID, generation status, generated audio size, and error information.
- Pseudonymous
appTransactionId, Apple original transaction identifier, product ID, product type, entitlement status, and an expiration date that may be absent, used for purchase-entitlement verification and quota control. - A random device UUID generated and stored by ClipFlow on your device, used to bind Pro access and limit abnormal use. This UUID is not Apple's advertising identifier.
- Technical information automatically received by the server, such as IP address, User-Agent, request path, request time, response status, and latency.
Before sending text to the voice-generation provider, we apply content-safety checks. A rejected request is not sent to Xiaomi Mimo.
AI text-to-speech is powered by a third-party voice generation provider. To generate audio, we send the text you submit and the selected voice to the voice service provider, currently Xiaomi Mimo. The provider may process request content, return audio, or perform content safety review according to its service rules. Please do not enter sensitive information that you do not want to submit to an online service.
We do not use your media, text, subtitles, or generated results for advertising. We do not sell your personal information. We do not use your content to train our own models.
5. How We Use Information
We use information only as necessary to provide, maintain, and improve ClipFlow, including to:
- Import, read, preview, analyze, and process the media or text you select.
- Generate videos, audio files, GIFs, Live Photos, subtitle files, and media information results.
- Save local preferences, processing history, and Pro entitlement state.
- Verify Pro purchase entitlements, sync Pro access, enforce AI text-to-speech quotas, and prevent abuse.
- Diagnose errors, maintain service stability, improve export reliability, and improve the user experience.
- Understand, investigate, and respond to issues when you contact us by email or through feedback channels.
6. Sharing and Third-Party Services
Information may leave ClipFlow or be processed by third parties in the following situations:
- You choose to save generated results to Photos, the Files app, iCloud Drive, external storage, AirDrop, social platforms, cloud drives, or other third-party apps.
- You send files from another app to ClipFlow through the system share sheet.
- You confirm a local speech-recognition model download, in which case ClipFlow contacts OpenASR's signed catalog and download services operated by OpenASR, Hugging Face, an HF mirror, or a Hugging Face content delivery network. Those requests contain none of your media, subtitles, or recognition results.
- You use StoreKit, the App Store, iCloud Drive, file providers, or other system services.
- You use AI text-to-speech, in which case text, voice selection, and necessary request information are sent to our service and the voice generation provider.
- You contact us by email or through a feedback tool, in which case the email or feedback content is processed by the relevant service providers.
- When you start a feedback email from within ClipFlow, the app adds the app version, build number, device system, and device model to the bottom of an editable draft to help diagnose the issue. You can change or delete this information before sending. When the draft opens, its content is passed to your chosen mail app or email provider; we receive the email content only if you choose to send it.
- We are required to provide information within the necessary scope under applicable laws, court orders, or lawful requests from public authorities.
Third-party apps, model-distribution and content-delivery services, cloud services, email services, Apple system services, and AI voice generation providers process information under their own privacy policies and terms.
7. Storage, Retention, and Deletion
ClipFlow may create local temporary copies, stabilized media copies, export caches, share-import caches, unfiltered Audio Effects recordings, AI text-to-speech history, and intermediate results needed for processing. These files are mainly stored in the app sandbox, its cache directories, or the App Group shared import directory.
If you discard or replace an Audio Effects recording before using it, ClipFlow deletes that local recording. A recording you choose to use remains in app-managed temporary storage only as needed for the current workspace and cache lifecycle, so it can be previewed and rendered with a different preset. Ending or deleting the workspace and normal cache cleanup remove these managed copies; iOS / iPadOS may also clear cache storage under its system policies.
Each local speech-recognition model you confirm for download remains in the app's local storage for later offline recognition and is not automatically removed as an ordinary temporary cache. Installing multiple models uses the sum of their individual storage sizes. You can switch the active model or delete downloaded models individually in Speech to Subtitles settings. Uninstalling ClipFlow will also normally remove all models stored in the app sandbox.
Text video watermark templates that you choose to save remain in local app preferences so they can be reused from watermark history with one tap. The watermark feature does not upload these templates to our servers. A template remains until you delete it from watermark history or uninstall ClipFlow.
ClipFlow clears files it manages at appropriate times, such as when you delete a workspace, finish processing, open the app and expired caches are cleaned, or complete share-import processing. iOS / iPadOS may also clear cache directories according to system policies. Results you save to Photos, the Files app, iCloud Drive, external storage, or third-party apps remain in those locations until you delete them or those services process them under their own rules.
AI text-to-speech history and generated audio are stored locally on your device until you delete them in the app or uninstall the app. Uninstalling ClipFlow usually deletes data in the app sandbox, but does not automatically delete files you already saved to Photos, the Files app, iCloud Drive, or other apps.
Our servers retain Pro purchase-entitlement verification records (including the pseudonymous appTransactionId), device binding records, daily usage counts, and API logs for service operation, quota control, security, abuse prevention, troubleshooting, and necessary compliance purposes. Full raw App Store server-notification payloads are kept only while needed for processing or a failed retry. After processing succeeds, we remove the raw payload but retain the notification identifier and processing status to prevent duplicate handling. If you want to access, correct, or delete information you provided in support communications or service use, you can contact us using the email address below. Some information related to transactions, billing, security, dispute handling, or legal obligations may need to be retained for a necessary period.
8. Security
We prioritize on-device processing and system sandboxing to reduce the chance that media files leave your device. Online services use HTTPS transport. Share import uses the App Group shared space to pass files between ClipFlow and its share extension, and import and generation caches are stored in local directories managed by the app.
No storage or transmission method can be guaranteed to be absolutely secure. Please protect your device, system account, iCloud account, exported files, and sharing destinations, and avoid sending sensitive media or text to untrusted third parties or online services.
9. Your Choices and Rights
You can manage information in the following ways:
- Delete or end the current workspace in ClipFlow to clear related temporary files managed by the app.
- Delete individual items or clear all items in AI text-to-speech history.
- Delete saved local templates from Video Watermark history.
- Switch or individually delete downloaded local speech-recognition models in Speech to Subtitles settings and confirm a new download if you need one again.
- Manage Photos add, microphone, and system speech-recognition permissions in system settings. Audio Effects remains available for imported media without microphone permission, and OpenASR remains available without speech-recognition permission.
- Manage or cancel ClipFlow Pro auto-renewable subscriptions in the App Store or system settings, and restore eligible Pro purchases in the app.
- Delete generated results you saved or shared in Photos, the Files app, iCloud Drive, external storage, or third-party apps.
- Uninstall ClipFlow to delete data in the app sandbox, subject to iOS / iPadOS system behavior.
- Contact us by email to request access, correction, or deletion of information you provided in support communications, or to ask about records related to AI text-to-speech service use.
We will handle your request as required by applicable laws and regulations.
10. Children
We recommend that minors use ClipFlow under the guidance of a parent or guardian. Minors should obtain consent and guidance from a parent or guardian before importing, editing, generating, saving, or sharing videos, audio, images, text, subtitles, or before using online features such as AI text-to-speech.
If a parent or guardian believes that a minor has provided personal information to us, they may contact us using the information in this policy.
11. Changes to This Policy
We may update this Privacy Policy from time to time based on product features, legal requirements, or operations. If ClipFlow later adds a new account system, cloud sync, cloud media processing, third-party analytics, crash reporting, advertising, or other services that may involve personal information processing, we will update this policy and obtain any required authorization or consent under applicable law.
If we make material changes, we will notify you through in-app notices, release notes, support pages, or other appropriate methods. If you continue to use ClipFlow after the updated policy takes effect, it means you have read and understood the updated Privacy Policy.
12. Contact Us
If you have questions, comments, or requests about this Privacy Policy or privacy protection, please contact us at:
Email: clipflowapp@outlook.com