Hablexo Privacy Notice

Privacy Notice v1.7-2026-08-10

Version 1.7 — last updated 10 August 2026. Hablexo is operated by Hablexo Ltd, a company registered in England & Wales (company no. 17354416), registered office 167-169 Great Portland Street, 5th Floor, London W1W 5PF. Hablexo Ltd is the data controller for the account, eligibility, billing, and operational data described below. Contact: hello@hablexo.com.

Hablexo delivers real-time speech translation to attendees’ phones. We built it to hold as little personal data as possible: on our servers the live content is processed in memory and never stored. Outside that content plane, we retain only what we need to verify and run accounts, bill usage, secure and support the Service, and comply with law. Some event content can be stored — not by us, but on the event organiser’s own device: chat posts always, and transcripts or audio recordings only if the organiser turns those on. See below.

The short version

Information we collect

We do not collect or store the audio, transcripts, translations, chat messages, or synthesized speech that pass through the service. Note the emphasis: a chat post — and, where the organiser has switched on transcript logging or audio recording, a transcript or recording — is stored by the organiser’s app, on the organiser’s own device, as described above and below.

If you are an attendee

You scanned a QR code to read captions in your language. You have no account with us and we do not ask who you are. For most attendees, this is everything that happens:

If you post in a chat forum, that is different, and it is worth reading twice: your message and your chosen chat name are saved on the event organiser’s device (not on Hablexo’s servers), kept for a limited period — 7 days by default — and deletable by the organiser at any time. The Hablexo app tells you this at the moment you open a chat forum, before you can post.

Who is responsible for your data. The organisation or professional behind the event decides why and how it runs — so for the event’s content that entity is normally the data controller. The visible organiser may instead be an AV supplier or other processor acting for that controller. Hablexo acts as processor or sub-processor, as applicable, on their instructions. If you want to exercise your rights over an event’s content or its chat history, contact the organiser first; they can identify the relevant controller. For Hablexo’s own account data, operational security logs, or support correspondence, contact us at hello@hablexo.com.

Hablexo accounts are for business and organisational use, not wholly or mainly personal, family, or household use. Attendees do not become Hablexo customers by following an event link. If you believe the Service is being operated for household use or the organiser cannot tell you who is responsible for your data, contact us.

If you send us feedback about an event

There is one place where the paragraph above does not apply, and it is worth being exact about. The attendee page has a Feedback control — a speech bubble — you can use to tell us how it went, report a problem, or ask for a feature. If you use it, you are writing to Hablexo, not to the organiser, and for that message Hablexo is the data controller: we decide why we collect it, how we triage it, and how long we keep it. This is outside the processing we perform on the organiser’s behalf. We are still processing your data — we are simply not doing it as their processor.

When you send a report we receive:

What we never collect through this form, whatever you have ticked: caption or translation text, chat messages, your chat display name, anything you posted in a forum, screenshots, or the event key. The diagnostics list above is the whole list — the form cannot collect anything outside it, and our server independently rejects anything that is.

Lawful basis. Legitimate interests (Article 6(1)(f)) — understanding and fixing problems with a service people are using live, and improving it. We have assessed this: the purpose is limited and the data minimal; you choose to write to us and choose whether to include diagnostics; nothing is used to profile, target or advertise to you; and your message is not shown to the organiser. Where you give an email address so we can reply, that is your choice and we use it only to reply.

Who else sees it. Your report is delivered by Resend and lands in a mailbox we hold with Migadu, both listed under Service providers below. If a report describes a bug or a feature we intend to work on, we may record a de-identified summary in our issue tracker (Atlassian): never your raw message, your email address, the event key, your session identifier, your exact user-agent, or the full diagnostics. If we ever use an AI service to translate a report that arrives in another language, it will be named here before we do, and it happens only when we read the message — never automatically as you send it.

Retention. Reports stay in the feedback mailbox while they are useful and are reviewed regularly; we delete them when they no longer are. Counts used for abuse limits are numbers only and expire within hours. To have a report deleted, or to ask what we hold, write to hello@hablexo.com — quoting the report identifier the page showed you makes it much quicker, but it is not required.

Attendee feedback is not visible to the organiser, in any form. If your complaint is about the event rather than about Hablexo, tell the organiser directly — we cannot pass it on for you.

If you are a translator at an event

An organiser can invite a live human translator: someone who listens to the event and speaks a translation into their own device, for listeners who choose that language. If that is you: you have no account with us and we do not ask who you are. You open a link the organiser shows you, choose the language you will speak, and ask to join; the event’s operator admits you.

As with all event content, the organisation or professional behind the event is normally the controller of your relayed speech, and Hablexo processes it as their processor or sub-processor. The organiser may separately choose to record their event on their own equipment, outside Hablexo’s processing — ask the organiser if you want to know whether they do.

If you are named on an organisation’s account

A Hablexo account belongs to an organisation — the customer we contract with and bill. The people who use it are named on it individually: an Admin can invite colleagues, buy credit and manage events; a Member can run events but not spend money or change who has access. For this — your own details, as distinct from your organisation’s — Hablexo is the controller. That is the opposite of the arrangement for event content described above, where the organiser is the controller and we are a processor, and it is why this notice comes to you directly rather than through your organisation.

Your organisation can see which Member used the credit. Usage records carry the membership that produced them, so an Admin can see how the organisation’s balance was spent and by whom. We think that is what an organisation paying the bill should be able to see, and you should know it rather than discover it. What an Admin cannot see through us is any caption, translation or chat message: we store none of those on our servers, and anything an organiser’s own machine keeps is described above and under Retention.

You can belong to several organisations with one email address. They stay separate: each has its own role, its own credit, and its own usage records, and signing in asks which one you are acting for. An Admin of one organisation sees nothing about your membership of another.

If you leave, or an Admin removes you. Your access ends immediately — your devices are signed out and your operator app stops publishing. Two things deliberately do not happen. Your membership record is retired rather than deleted, and the record of past usage stays attached to it: those are the organisation’s billing records, and rewriting them to tidy up would destroy the evidence of what was actually charged. If you ask us to erase your personal data we remove the person — your email address and sign-in details — and leave behind an opaque reference that identifies nobody. See Your rights.

Lawful basis. We rely on contract and our legitimate interests in running an organisation’s account securely and billing it accurately. We do not ask you to consent to any of this, and your access does not depend on agreeing to marketing — which is a separate, explicit choice described below.

Signing in with Google

If you choose “Continue with Google”, Google shares with us only your verified email address and basic profile (name) so we can create or identify your account. We do not receive or store Google access or refresh tokens, and we request no access to your Gmail, Drive, contacts, or any other Google data. You can sign in with a password instead at any time.

Hablexo’s use of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements.

Payments

Card payments are processed by Stripe. Card details go directly to Stripe and never touch Hablexo’s servers. We receive only the confirmation and metadata needed to credit your account.

Email we send you

Account and service email — verifying your address, resetting your password, confirming a payment, telling you an invitation is waiting, warning you that credit has run out. We send these because they are part of running your account, and you receive them regardless of any marketing choice: opting out of product news never stops a password reset or a security notice reaching you. If you want these to stop, close the account.

Product news is separate, and is opt-in. We send it only to people who have explicitly asked for it, on the basis of consent, and you can withdraw at any time from your account settings or from a link in the message itself. As at this version we do not currently send marketing email at all — the preference exists so that we never have to guess later. If that changes, this notice will be updated to name the tool we use to send it before the first message goes out.

The do-not-contact record. When you opt out — or ask us never to contact you — we keep a record of that request, and we keep it as a one-way hash of your email address rather than the address itself. It stays even if you delete your account or we erase your details, and that is the point: a suppression list that disappears with the account would let an old contact list, a re-import or a fresh signup quietly start the email again. It holds nothing but the hash, the reason and the date; it cannot be read back into an address, and it is used for one thing only — recognising an address we must not email.

Why we process your data (lawful bases)

For a sole trader or professional who is personally the Customer, we rely on contract (including steps requested before entering the contract) to verify eligibility, run the account, meter usage, and bill. Where an individual creates or uses an account for an organisation, we rely on our legitimate interests in verifying representatives and administering the organisation’s account and contract. We also rely on legitimate interests for keeping the service secure and reliable (operational logs) and for handling support requests. The same two bases cover the people named on an organisation’s account — Admins and Members alike — for administering their access, attributing usage to the right membership, and securing the account; no consent is needed for any of it, and none is asked for. Consent is used for exactly one thing: product news. For retained financial records we rely on legal obligation (UK tax and accounting law). For event content we act as a processor or sub-processor on the relevant controller’s instructions; that controller is responsible for the lawful basis for the event.

Service providers (processors)

We use a small set of providers strictly to deliver the service; they process data on our instructions and only as needed:

The archival copy sent to Backblaze is encrypted before it leaves our systems, using a key held offline that we do not give to either storage provider. Backblaze therefore cannot read what it stores for us. Cloudflare’s continuous replica is encrypted by Cloudflare in transit and at rest.

Where a provider processes personal data outside the UK or EEA, we put an appropriate transfer safeguard in place (such as the UK International Data Transfer Agreement or Addendum, or standard contractual clauses). The current list of content-plane sub-processors, with locations, is published in the Data Processing Addendum.

Retention

On Hablexo’s servers: content-plane data (captions, translations, chat, audio) is retained only in memory for the few seconds or minutes needed for live delivery, then discarded. Account identity, eligibility, and billing data is kept for as long as needed to operate and defend the account and contract and, after closure, only as long as required or justified for legal, accounting, tax, fraud-prevention, and dispute purposes. Where full details are no longer needed, we delete or aggregate them.

Memberships and their usage records. When someone leaves an organisation the membership is retired rather than deleted, and the usage records already attached to it are not rewritten — they are the organisation’s billing history. If we erase a person’s data, we remove the identifying part (email address, sign-in details) and keep the membership as an opaque reference, so the organisation’s records still add up while the person behind them is gone. We do not relabel those records as anonymous, because that would be indistinguishable from usage that never had a person attached. The do-not-contact record is the one thing we keep beyond this, as a hash, and for the reason given there.

Backups. The copies described above are deliberately protected against being changed or deleted early, because a backup an attacker can erase is not a backup. One consequence is worth stating plainly: when we delete or pseudonymise your data, the change applies to the live system immediately, but existing backups still contain the earlier state until they expire — up to 30 days for the daily copies and about 13 months for the monthly archival copies. Those backups are access-restricted and isolated — they are not used for ordinary day-to-day processing, and are read only to recover from a failure. They are deleted automatically once their retention period ends. If we ever restore from a backup, we do not use it to reinstate a deletion, a marketing objection, or another choice you made after that backup was taken.

On the organiser’s own device, the Hablexo operator app writes a small number of files. These are on the organiser’s machine, under their control, and never sent to us:

An organiser who records audio or logs transcripts is processing that content on their own equipment. They are the controller where they decide why and how to process it, or a processor where they operate the equipment for a client controller.

Your rights

Depending on your location (including under UK/EU GDPR), you may request access to, correction of, or deletion of your account data, and you may object to or restrict certain processing. You can exercise these against us whether you are the person who set the account up or a colleague who was invited onto it. Two limits are worth stating plainly rather than leaving you to find them: erasing your details does not remove your organisation’s billing history, which we keep as records of what was charged, and it does not clear a do-not-contact record, which exists precisely to survive it. To make a request or ask a question, email hello@hablexo.com. If you are in the UK you also have the right to complain to the Information Commissioner’s Office (ico.org.uk); if you are in the EU/EEA, to your local supervisory authority. We would appreciate the chance to help first.

Cookies & storage on your device

We use only the storage necessary to run the app, and we do not use advertising or third-party tracking cookies. Specifically:

Changes

We may update this notice as the service evolves; material changes will be reflected here with a new version date.

Hablexo Ltd · Registered in England & Wales · Company No. 17354416 · Registered office: 167-169 Great Portland Street, 5th Floor, London W1W 5PF · hello@hablexo.com

Hablexo home · Terms of Service · Data Processing Addendum · EULA · Sign up