In brief
- macOS system voices run locally. Notification text is not sent to a cloud speech service when you use them.
- Cloud voices receive only the short phrase required for speech. DingDone does not add source code, prompts, or full agent conversations to that phrase.
- Settings, notification history, and the audio cache remain on your Mac by default.
- DingDone does not sell personal information, serve ads, or use advertising trackers.
- Website analytics is self-hosted, honors Do Not Track, and masks input values in sampled session recordings.
Data on your Mac
DingDone stores app settings, selected voices and projects, notification history, cached audio, and information needed to provide Pro features locally. It reads only the supported agent events needed to determine work status and open the relevant project or session.
DingDone does not send source code, prompts, agent responses, or full transcripts to its servers. Local data remains on the Mac until you clear it or remove the app’s data. Some protected system records may remain after the app is removed and can be deleted using macOS system tools.
Pro purchases and licensing
Stripe processes payments. DingDone does not receive or store your full payment-card number. To complete and support a purchase, Stripe and DingDone may process purchaser contact details, the selected plan, payment status, and subscription or refund status.
To activate Pro, DingDone processes license information and basic installation information needed to verify access and limit the number of active Macs. This information is used only to provide Pro, recover purchases, prevent abuse, and provide support. Gift access does not require you to provide payment information to DingDone.
Voice services
When you use a cloud voice, DingDone sends the speech service a short phrase and the minimum voice settings needed to create audio. The phrase may contain the project name you chose, the agent name, and a status such as “work completed” or “your response is needed.”
If you connect your own key for a third-party voice service, that provider processes the request under its own terms and the request may use your personal quota. DingDone does not use that key for unrelated purposes.
Choose a macOS system voice if you do not want notification phrases processed in the cloud.
Operational data
Online features may temporarily process ordinary network information such as IP address, request time, app version, operation result, and error category. This is used to operate and protect the service and diagnose failures, not for advertising or behavioral profiling.
Analytics
DingDone uses a self-hosted Umami installation to understand visits to dingdone.io, referral and UTM sources, download-link clicks, and the reliability of optional online features, checkout, licensing, and hosted speech. A download-link click does not prove that a download or installation completed.
The website uses Umami’s anonymous browser session mechanism and honors the browser’s Do Not Track setting. Session replay and heatmap collection each currently use a 15% sample rate for new website sessions. A recording can include the public page structure and text, pointer movement, clicks, scrolling, navigation, screen size, and form interactions; values typed into input fields are masked. These recordings are used to improve usability and diagnose layout or interaction problems, not for advertising or to identify visitors.
The app does not send an analytics request when it starts. When you open an online catalog, Subscription, checkout, license activation, a hosted preview, or hosted speech, DingDone may send its own service a random Installation UUID stored in protected macOS storage and the app version. The service converts that identifier to a one-way pseudonym before analytics storage.
Analytics does not include notification phrases, source code, prompts, agent responses, project or session names, license keys, installation tokens, email addresses, card details, or complete payment-provider event payloads.
Retention
- Local settings, history, and cache remain on the Mac until you clear them.
- Purchase, license, and active-device records are kept as long as reasonably needed to provide access, support customers, prevent fraud, and meet legal obligations.
- Operational logs are limited in scope and retention.
- Aggregate self-hosted Umami analytics remains until an administrator exports, resets, or deletes it. Session replays are retained for 30 days. Completed backend analytics-delivery records are removed after 30 days; terminal failed (dead-letter) delivery records and checkout-attempt records are removed after 180 days.
- DingDone is not designed to retain cloud-notification text or generated notification audio after the request is completed.
Payment and speech providers may apply their own retention rules under their policies.
Service providers
DingDone uses a limited set of providers for payments, cloud speech, update delivery, email, and online-service hosting.
- Stripe processes checkout, subscriptions, and payment records.
- Cloud speech providers selected by DingDone process the short phrase only when cloud voices are used.
- ElevenLabs processes requests when you connect your own ElevenLabs key.
- Infrastructure and email providers may process ordinary network and support information needed to operate the service.
You may request the current list of processors at support@dingdone.io.
Your choices and rights
You can:
- use only local macOS system voices;
- enable Do Not Track in your browser to prevent DingDone website analytics and session recording;
- remove a personal key for a third-party voice service;
- deactivate a Mac in Subscription settings;
- remove local history, cache, and settings; and
- request access to, correction of, or deletion of personal information controlled by DingDone where applicable law provides those rights.
Email support@dingdone.io to make a request. To protect your information, we may need to confirm that the request relates to your purchase. Some records may be retained where required for legal compliance, accounting, security, or payment-dispute resolution.
Changes and contact
This policy may be updated as DingDone’s features and legal obligations change. The effective date at the top will identify the current version.