Your class, your data.
Last updated September 23, 2026
Milra records lectures so you can read them later. That makes privacy the most important thing we build. This page explains what Milra collects, why, who helps us run it, and what you can do about it.
The short version
- Milra only records when you press Start. Your recordings are saved on your device, not on our servers.
- To write your notes, the audio and text of a class go to Google's Gemini AI, either straight from your device or through our server. Neither of us uses them to train AI, and our server keeps no copy.
- We never sell your data, and no one at Milra reads your classes.
- Crash reports, usage stats and product emails are off until you turn them on.
- You can get a copy of your data, or have it deleted, anytime.
- Milra is for students 18 and older. If you are under the age of majority where you live, you need a parent's or guardian's OK.
Who we are
Milra is run by Jacob Hurvitz, operating as Milra, based in Canada. When this policy says "Milra", "we" or "us", it means Jacob Hurvitz, operating as Milra.
This policy covers the Milra apps for Mac, Windows and iPhone, as each one becomes available, our servers, and this website, milra.app. It goes together with our Terms of Use.
We are responsible for the personal information we hold about you. For any question about it, or to use any of the rights below, email hello@milra.app and a person will answer.
You can also write to us at 1 Saramia Crescent, Concord, ON L4K 3S6, Canada.
What we collect, and why
We collect as little as we can. Here is all of it, by where it comes from.
The waitlist. If you join a waitlist, we keep your email address, which devices you are waiting for, your OK to email you about it, which page you joined from, and when you joined. You also get your own invite link, and if someone else's invite link brought you, we note it. We use this only to tell you when Milra is ready for you and to count how many people each invite link brought.
Your account. When you sign up, we keep your email address, and your name if you add one or sign in with Apple or Google. Your account also holds your plan, how much transcription you used this month, and a list of your devices, each with a name and a type. We use this to sign you in, run your plan and keep your devices in sync.
We also keep your choice about product emails, and a record of each time you changed it, so we can prove you said yes. That record may include the country the change came from, never your IP address.
Milra needs an account on every device, macOS, Windows or iPhone. You sign in once. After that, recording itself does not need the internet: your recording is captured and saved on your device first, and picks up server features like transcription and sync as soon as you are back online.
Your classes. This is the most personal part: your recordings, transcripts, summaries, reminders, speaker names, My Thoughts, class names and times, and your Ask Milra chats. It lives on your device first.
- To write the transcript, your device sends the audio to Google's Gemini AI in one of two ways. It can send it straight to Google, using a short-lived key from our server, so the audio never passes through our server. Or it sends short pieces through our server, which passes them to Gemini and returns the text, for example after you were offline. Either way, our server keeps no audio and no transcript. It keeps only small records of how much was transcribed, so we can count your minutes, and deletes them within 45 days.
- To write summaries and reminders and to answer Ask Milra, your device sends the transcript, the notes it needs and your question to our server, which passes them to Gemini and returns the result. Our server does not keep them, apart from anything you choose to sync.
- If you use sync, your account stores the text of your notes, your Ask Milra chats and your class details, so they show up on your other devices. Audio is not synced. If we add a way to back up audio, it will stay off unless you turn it on.
- If you share a note by link or by email, we keep the share, including the email address you sent it to, and whoever you share it with can read the note until you stop sharing. Your My Thoughts are never shared unless you choose to share them.
- Milra doesn't make voiceprints or keep anything that recognizes a person by their voice. Labels like "Speaker 1" are the AI's best guess within each recording.
Payments. If you buy a paid plan, Stripe collects your card and billing details. Stripe tells us only what we need to run your plan: a customer ID, which plan you have, and whether each payment went through. We never see or store your full card number.
Crash reports and usage stats, only if you turn them on. Both start off, and you can turn each one on or off on its own.
- A crash report holds the type of error, a code for it, where in our code it happened, your app version and system, and an ID that stands for your account. We never add the error message or anything from your classes.
- Usage stats hold events like "a recording started", with counts and the same kind of ID. They never include what you recorded, typed or searched.
- We don't add your IP address to either one. Like any service on the internet, the services that receive them can see the IP address they come from.
- If your device sends a Do Not Track or Global Privacy Control signal, usage stats stay off.
Our server and the waitlist also keep a few short-lived counters that stop anyone from sending too many requests. They use your account ID or a scrambled (hashed) form of an address, never your email or IP address as plain text, and they are cleared out within hours.
Free plan cards. If the Free plan on your computer shows cards about Milra features or a sponsor, they come from our own server. We count how often each card is shown and clicked, and sponsors get only those totals, never anything that identifies you.
Support. When you report a problem or write to us, we get what you send. For a bug report, that is your message, your app version, your system, and error codes and IDs. An app log is attached only if you look at it first and tick the box. If you write to us without an account, we also get the email address to reply to. We use all of this only to help you and to fix bugs.
This website. See This website and cookies.
We also use the information above to keep Milra safe and fair: to stop abuse, to enforce plan limits such as one free plan per person, and to meet legal duties like keeping tax records.
What we never do
- We never sell or rent your personal information.
- We never train AI on your classes, and we never let our providers do it.
- No one at Milra reads, listens to or looks at your classes. The only exceptions are when you give us permission for a specific support request, and only for that request, or when the law requires it.
- We never send your audio, transcripts, notes or class names to advertisers, ad networks or analytics tools.
- Milra never records until you press Start.
Who helps us run Milra
A few companies help us run Milra. Each one gets only what it needs for its job, under an agreement that limits how it can use your information. Some are not in use yet and are marked "not yet in use" below; we describe them now so this page stays accurate the day we turn them on.
| Who | What they do | What they receive |
|---|---|---|
| Google (Gemini API, paid tier) | Turns audio into text and writes summaries, reminders and answers. | The audio and text of your classes and your Ask Milra questions, either straight from your device or through our server. On the paid tier, Google does not use them to improve its products. It keeps them for a limited time only to detect abuse and meet legal duties. |
| Convex | Runs our server and database. | Your account, your plan and usage, support messages and bug reports, and your synced notes, chats and shares if you use them. |
| Clerk | Handles sign-in. | Your email address, your name if you give one, how you sign in, and the device, browser and IP address you sign in from, to keep your account safe. |
| Stripe | Handles payments. | Your card and billing details and what you buy. We never see or store your full card number. |
| Cloudflare | Hosts this website, stores the waitlist, and passes email sent to hello@milra.app on to the inbox where we read it. | Like any web host, it sees your IP address and browser details when you visit. |
| Our email provider | Holds our support inbox. | The emails you send to hello@milra.app and our replies. |
| Resend (not yet in use) | Once we send email from Milra itself, such as support replies and product news, Resend will deliver it. | Your email address and the message. |
| PostHog (usage stats, opt-in) | Only if you turn usage stats on. | The IDs, counts and error codes described above, and the IP address they come from, never anything from your classes. |
| Sentry (crash reports, opt-in) | Only if you turn crash reports on. We may instead run a Sentry-compatible service ourselves for this. | The same kind of IDs, counts and error codes as PostHog, never anything from your classes. |
| Anthropic (not yet in use) | Only if we use AI to help draft replies to support messages. A person at Milra checks every reply before it goes out. | Only the text of the support message you sent, never your classes or your account. |
| Google AdMob (not yet in use) | Only if we show ads in a free iPhone app. The ads are not personalized, and no third-party ads are shown to anyone under 18. | Basic device and app details, to show an ad, limit how often you see it and stop fraud. Never audio, transcripts, notes or class names. Google explains how it uses information from apps that use its services. |
| Apple, Google and Notion (not yet in use) | Only if you connect them, for example to import class times from a calendar, or export notes to Google Docs or Notion. | Only what that feature needs. You can disconnect at any time. Milra's use of information received from Google APIs follows the Google API Services User Data Policy, including its Limited Use requirements. |
| A cloud server we rent | Runs our own support and operations tools, and may run our crash report service. | Support messages and crash reports, never your classes. |
We may also share information when the law requires it, to protect someone from serious harm, or if Milra is sold or merged. If Milra changes hands, this policy keeps applying to your information, and we tell you before anything changes.
Recording and consent
Milra only records after you press Start Note or Resume on your computer, or the record button on your phone. It shows that it is recording the whole time. It records your microphone and, if you turn it on, the sound your computer plays, for online classes.
You are responsible for having permission to record. The rules depend on where you are. Many places, including Canada, let you record a conversation you are part of. Others, like California, Florida and Washington, require everyone's permission. This is general information, not legal advice.
Your school and your teacher may have their own rules, and a lecture can belong to the teacher who gives it. When in doubt, ask before you record. If you need recordings as an accommodation, your school's accessibility office can help.
Recordings can include classmates' voices. Keep them for your own study, and don't post them publicly without the people in them agreeing. See Recording responsibly in our Terms.
Students and age
- You must be 18 or older to use Milra. If you are younger, you may not create an account or use Milra. We do not knowingly collect information from anyone under 13, and if we learn that we have, we delete it. If you think a child under 13 is using Milra, email hello@milra.app.
- If you are old enough to use Milra but under the age of majority where you live (18 or 19 in most places), you need a parent's or guardian's OK to use Milra.
- We do not show third-party ads to anyone under 18, or to anyone whose age we don't know.
- Milra is for individual students. We don't provide it to schools or on behalf of schools, and your school has no access to your account or notes.
How long we keep it
| What | How long |
|---|---|
| Audio on your devices | As long as your setting says (Always, 30 days, or Delete after transcription), or until you delete it. On iPhone, recordings are kept in Milra's own storage on your phone, which your phone's backups may include. |
| Audio and text sent to make your notes | Not kept by our server. Google keeps them for a limited time only to detect abuse and meet legal duties. |
| Records of how much you transcribed | Up to 45 days for each piece, plus your monthly total on your account. |
| Synced notes | Until you delete them. A deleted note is removed from our servers within 30 days after your devices have synced the deletion. |
| Your account | Until you delete it. When you ask us to delete your account, a person reviews the request and then deletes your account and its data from our servers. We aim to do this within 30 days of your request. |
| Payment records | For as long as tax and accounting laws require, even after you close your account. Stripe keeps its own records under the same laws. |
| Your email choices | The record of when you said yes or no, for as long as we need to prove it. |
| Support messages | As long as they help us help you. We delete them sooner if you ask. |
| Crash reports and usage stats | Up to 12 months. |
| The waitlist | Until the launch you signed up for. We remove you anytime you ask. |
Our providers keep backups so nothing is lost in an outage. Deleted information can stay in those backups until they are replaced on their normal schedule. We never restore it except to recover from a disaster.
Your rights and choices
- Get a copy. Ask us for a copy of everything our servers hold about you, in a form you can use. How: use the Export all data button in the app if it has one, or email hello@milra.app.
- Fix it. Correct anything we hold about you. How: edit your notes and profile in the app, or email hello@milra.app for anything you can't change yourself.
- Delete it. Delete notes and recordings, or your whole account and everything our servers hold about you. How: delete notes and recordings on your device directly, use the Delete account button in the app if it has one, or email hello@milra.app.
- Change your mind. Turn crash reports, usage stats or product emails off anytime. How: use the same in-app toggle you used to turn it on, or email hello@milra.app to ask us to do it. Turning something off stops it from then on.
- Stop emails. Every marketing email we send has a way to unsubscribe. How: use the unsubscribe link at the bottom of the email, or email hello@milra.app. We will still send emails you need, like receipts, security notices and changes to these documents.
To make a request, email hello@milra.app from the address on your account. We may ask you to confirm it is you. It is free, and we answer within 30 days. If we need more time and the law allows it, we tell you why.
If you are not happy with our answer, you can complain to the Office of the Privacy Commissioner of Canada, or to the privacy regulator where you live.
EU, UK, Switzerland and Quebec
Milra is not yet offered to people in the European Economic Area, the United Kingdom, Switzerland or Quebec, and this policy is not written to meet those regions' specific rules, such as the GDPR, UK GDPR or Quebec's Law 25. We don't yet check this automatically when you sign up, so please don't create an account if you're located in one of these places. See Who can use Milra in our Terms for what this means for you. If that changes, we will update this page first and put the required details here before Milra becomes available to you.
If you are in California
We collect the kinds of information listed in What we collect: identifiers like your email address and account ID, your plan and purchases, usage stats if you turn them on, and the recordings you choose to make and the text made from them. They come from you and your devices. We use them only for the purposes on this page, share them only with the service providers above to run Milra, and keep them as long as How long we keep it says.
We do not sell your personal information or share it for targeted advertising, and we never have. We do not knowingly sell or share information about anyone under 16. We don't use sensitive information to guess things about you.
You can ask to know what we collect, to delete it and to correct it, and we won't treat you differently for asking. Someone you authorize can ask for you. We treat a Global Privacy Control signal as a request to opt out.
Where your data is processed
We are based in Canada. Most of our providers store information in the United States. Google and Cloudflare run networks around the world, so your information may pass through other countries while they do their job. The laws in those places can differ from yours, and their authorities may be able to access information under their own laws.
How we protect it
- Everything Milra sends travels encrypted. Our providers encrypt stored information where they offer it.
- Only the people and systems that need something can reach it. Our secret keys live only on our server, never in the apps. Our support tools can reach support messages, never your classes.
- On your Mac, your sign-in is kept in the macOS Keychain. Your notes are protected by your Mac's login, and Milra doesn't add its own encryption on top, so we recommend turning on FileVault.
- Milra's app logs never include what was said in class. They stay on your device, which keeps only the most recent 7 days.
- No system is perfect. If a breach puts your information at real risk, we tell you, and the Privacy Commissioner and any other regulator the law requires, as soon as we can.
This website and cookies
- This site uses no tracking or advertising cookies, and no analytics. Its fonts come from this site, not from another company.
- Your browser remembers your theme choice, and whether you already signed up or joined the waitlist from it, so the site can greet you. That stays in your browser and is never sent to us.
- The sign-up page loads Clerk, our sign-in provider, which sets the cookies it needs to sign you in and may check that you are not a bot.
- If we ever count visits, we will use a privacy-friendly tool that sets no cookies and doesn't identify you, and we will name it here first.
Changes to this policy
When we change this policy, we update the date at the top. If a change matters, we tell you by email or in the app before it takes effect, and we ask for your OK again when the law requires it.
Contact us
Email hello@milra.app and a person will answer.
Or write to Jacob Hurvitz, operating as Milra, 1 Saramia Crescent, Concord, ON L4K 3S6, Canada.
Our privacy officer is Jacob Hurvitz, reachable at the same address.