Hangar · Privacy
Privacy Policy
What stays on the device, what a live authored flight sends, and how long service providers retain it. Raw voice never leaves the device.
Available on the App Store · last updated 2026-07-12.
The short version
- No account. You do not sign in. We do not ask for your name, email, contacts, or location.
- No advertising or cross-app tracking. Hangar has no advertising or third-party marketing-analytics SDK.
- Voice stays on the device. Speech is recognised on-device and the audio is discarded immediately — it never leaves the device.
- Live-flight text scripts the characters. The authored scenario state and settings, practice goal, current turn text, and prior turn text go to OpenAI through our AWS service. No name, email, or account is included.
- Retention has clear boundaries. OpenAI’s abuse-monitoring logs may retain API request and reply content for up to 30 days, or longer where law requires. Our content-free CloudWatch diagnostics expire after 30 days.
- Private practice history stays local. Goals, flights, and the logbook are stored on-device.
- Anonymous limits protect the service. A random install identifier supports a short-lived daily service limit; short network-address rate-limit rows also expire automatically.
- Purchases are handled by Apple. No payment information touches us.
Apple’s current App Privacy summary: Data Not Linked to You — Diagnostics, Identifiers, and User Content. The detailed flow below explains what that means in practice.
Who we are
Hangar is made by KindAbilities, a family of affirming assistive apps. For any privacy question, email robin@kindabilities.com.
Information Hangar does not collect
Hangar has no user accounts and no login. We do not collect or receive:
- your name, email address, phone number, or contacts;
- your location;
- advertising identifiers or any cross-app / cross-site tracking data;
- advertising profiles or third-party marketing-analytics data tied to you;
- payment or card details.
Voice — recognised on-device, then discarded
When a young person speaks during a flight, Hangar converts speech to text using on-device speech recognition, locally on the iPhone or iPad. The raw audio is discarded immediately — never uploaded and never stored — with no voiceprint or diagnosis of any kind. Typing is an equal path. Microphone access can be turned off in device Settings.
The text that scripts the characters
To make practice characters respond inside an authored rehearsal, Hangar sends the authored scenario state and settings, the practice goal, and the current and prior turn text (typed or transcribed on-device) to our server in the Amazon Web Services Sydney region, which relays what is needed to OpenAI. This is text and authored settings only — never raw audio — and carries no name, email, or account.
- OpenAI’s default abuse-monitoring logs may retain API request and reply content for up to 30 days, and longer where law requires.
- OpenAI states that API inputs and outputs are not used to train its models by default unless a customer opts in. We have not opted in.
- Practice text and character replies are not written to our own CloudWatch diagnostics or retained by us as a personal profile.
Anonymous service limits
A random per-install identifier accompanies live turns so an account-free service can apply a daily service limit. It is not tied to a name, email, or account, and the server row expires after the UTC-day window plus a short cleanup period. Our API also receives network information such as an IP address for a short anti-abuse limit; those rows expire after roughly two minutes. Neither is used for advertising, cross-app tracking, or a user profile.
Content-free operational metrics
Amazon CloudWatch records content-free reliability, performance, and cost measurements such as request outcome, processing-stage timing, model usage, token or byte counts, and projected compute cost. These diagnostics contain no practice text, character replies, or raw audio and are retained for 30 days.
What stays on the device
Goals, flights, and the logbook are saved locally on the device, with no server copy. That means private practice history belongs to the device — and keeping the device secure matters.
Purchases
Hangar Premium is an optional subscription processed by Apple through the App Store. Apple handles billing under its privacy policy; we receive only purchase entitlement information. No card number or payment detail reaches us.
Children’s privacy
Hangar is designed primarily for teens, roughly ages 13–17, with parent or guardian involvement. There is no account, advertising, or cross-app tracking, and raw voice never leaves the device. Live-flight text follows the service and retention flow above. Contact robin@kindabilities.com with a concern.
How to delete local data
Open Settings inside Hangar and choose Delete all data to erase goals, flights, and the logbook from the device. Deleting Hangar also removes its on-device data. Anonymous service-limit rows expire automatically; the separate OpenAI and CloudWatch retention boundaries are described above.
Changes to this policy
If Hangar changes how it handles information, we will update this page and revise the date above.
Contact
Questions about privacy? Email robin@kindabilities.com. See also Support and the Terms of Use.
Last updated 2026-07-12.