Privacy policy
Updated 28 September 2026
This policy explains what Zani processes when you create an account, generate audio, transcribe, or pay. Zani is the controller of this data.
- 1. Who we are
- 2. What we collect
- 3. Why we use it
- 4. Who else processes it
- 5. How long we keep it
- 6. Your rights
- 7. Cookies
- 8. Children
- 9. Changes
Who we are
Zani provides the service from Prishtina, Kosovo. For privacy questions, write to hello@tryzani.com.
What we collect
- Account: name, email, a hashed password, and whether the email is confirmed. If you sign in with Google, also the name, email, and picture Google shares.
- Session: a session token, the IP address, and the browser type.
- Content: the text you send for speech, the audio we generate, project names, voice descriptions, audio you upload for transcription, and the transcript.
- API keys: we store a hash of the key, a short prefix, a name, and the last time it was used. We do not store the full key after you create it.
- Payments: the plan, amount, currency, status, and the Paysera order reference. Paysera processes the card. We do not receive or store the card number.
- Usage: how many credits were charged, and when.
- If analytics are on: pages you visit, collected by PostHog in the EU.
- If error monitoring is on: technical details of a crash, collected by Sentry.
Why we use it
- To open the account, generate audio, transcribe, and show your history.
- To take payment and keep a record of it.
- To send account email: verification and password reset.
- To secure the service, limit misuse, and fix errors.
- To understand how the product is used, when analytics are on.
Who else processes it
Providers that keep the service running also process data. We do not sell personal data.
- Google, to generate speech and transcriptions from the text or audio you submit, and to sign you in if you choose Google.
- Paysera, to take the payment.
- Resend, to send account email.
- File storage, for generated and transcribed audio.
- Vercel, which hosts the application.
- PostHog (EU), when analytics are on.
- Sentry, when error monitoring is on.
Some of these providers process data outside Kosovo. We use providers that offer contractual safeguards for those transfers.
How long we keep it
Account data and the content on it stay while the account is open. You can ask us to delete the account and the content stored with it. Payment records stay for as long as accounting rules require. Server logs and backups are removed on their ordinary cycle.
Your rights
You can ask to see, correct, or delete your data, to receive a copy, and to object to processing that is not required to provide the service. Write to hello@tryzani.com. You can also complain to the Information and Privacy Agency of Kosovo, or to the authority in the country where you live.
Children
Zani is not for anyone under 16. We do not knowingly collect their data.
Changes
We update this policy on this page and change the date at the top.

