Privacy
Privacy policy
Dímelo learns from what you write and say. This page explains exactly what we keep, who processes it, and how to delete it. It is written to be read.
Last updated 4 September 2026
1.Who we are
Dímelo is a Spanish learning app for iOS and Android, together with the website at trydimelo.com. It is operated by Dímelo ("we", "us"). This policy explains what information we collect when you use the app or the website, why we collect it, who we share it with, and the choices you have.
If anything here is unclear, or you want to exercise any of the rights described below, email hello@trydimelo.com.
2.What we collect
Your account. When you create an account we store your email address, a display name, and either a hashed version of your password or, if you sign in with Apple or Google, the identifier those services give us. We never see or store your Apple or Google password. If you use Sign in with Apple and choose to hide your email, we only receive the relay address Apple provides.
Your learning. The point of the app is to react to what you produce, so we store it: answers you type in lessons and drills, messages you send to the tutor, your flashcard reviews, which lessons and exercises you have completed, the mistakes the app has marked and the concepts it thinks you know, and your streak.
Your voice. Speaking exercises and live conversations record your spoken answer on your device and send the clip to our server, which passes it to a speech-to-text provider (and, for pronunciation exercises, a pronunciation-scoring provider). We keep the resulting transcript and scores as part of your learning record. We do not keep the audio: the clip is processed in memory and discarded once the transcript comes back. You can always answer by typing instead, and the app only uses the microphone while you are recording.
Usage events. The app sends us a log of what you do inside it, so that we can see which exercises are confusing, where people give up, and whether a change helped. Events look like "lesson opened", "exercise completed", "speech recognition failed", "chat message sent (number of characters)". They carry a random per-install identifier, a random per-launch session identifier, the app version, your platform (iOS or Android), the local hour and weekday, and your account identifier once you are signed in. They do not carry the content of what you wrote or said.
Technical logs. For each request the app makes to our servers we keep the route, response status, duration, timestamp, app version, session identifier and, when signed in, your account identifier. We do not record your IP address or device model in these logs.
Crash reports. If the app or our server crashes we receive a crash report via Sentry. It contains the stack trace, your account identifier, the session identifier and your account role. It is configured not to include personal details, request bodies, or what you were typing.
AI cost records. For every request we send to an AI provider on your behalf we record which feature triggered it, the provider and model, token counts, cost and latency, keyed by your account identifier. These records contain no learner text.
Waitlist. If you leave your email on the website, we store it in our mailing list so we can tell you when the beta opens.
What we do not collect: your location, contacts, photos, advertising identifiers, or anything from other apps. There are no ads and no advertising or attribution SDKs in Dímelo. We do not run push notifications yet, so we hold no notification tokens.
3.Why we use it
- To run the app: sign you in, keep your place in the course, schedule your flashcards, mark your answers and show you what to work on next.
- To power the AI features: your typed and spoken answers, and the messages you send to the tutor, are sent to AI providers to be marked, explained, corrected or replied to. This is the core of the product and cannot be switched off while using those features.
- To improve the course: usage events tell us which lessons, exercises and explanations work and which do not. We look at this in aggregate.
- To keep the service running and safe: technical logs, crash reports and cost records let us find bugs, control spend and spot abuse.
- To contact you about the service: a password-reset code when you ask for one, and a single email when the beta opens if you joined the waitlist.
We do not sell your information, use it for advertising, or build profiles for anyone other than you.
4.AI providers and your content
Dímelo is built on third-party AI models. When you do something that needs one, the relevant content goes to that provider's API and their response comes back to you. The content sent is only what the feature needs: the exercise and your answer, the conversation you are having with the tutor, the sentence you asked to have translated, or the audio clip to be transcribed.
The providers we use, and what for:
| Provider | What is sent | Used for |
|---|---|---|
| Anthropic (Claude) | Your answers, tutor messages, transcripts, text you ask about | Tutor chat, marking, explanations, translations, conversation practice |
| OpenAI | Audio clips of your spoken answers | Speech-to-text |
| Microsoft Azure Speech | Audio clips of your spoken answers | Pronunciation scoring |
| Together AI (open-weight models) | Conversation turns during live conversation practice | Conversation setup and monitoring |
| Google (Gemini, Cloud Text-to-Speech) | Course text, occasionally text you trigger | Generating spoken audio for lessons; some AI features |
| Inworld | Course text, occasionally text you trigger | Generating spoken audio for lessons |
We send these providers only the content needed for the request, under their API terms, which do not permit them to use API traffic to train their models without opt-in. We have not opted in. We do not send them your name, email or account identifier.
AI output can be wrong. Marks, explanations and tutor replies are generated, not checked by a person. Treat them as a knowledgeable study partner, not an authority.
6.Where your data goes
Our providers, including the AI and speech providers, mostly run in the United States. Using the app therefore means your learning content and account details are transferred to and processed there, and possibly in other countries where those providers operate. Where a legal mechanism for such transfers is required (for example for users in the EU/EEA, UK or Switzerland) we rely on the providers' standard contractual clauses or equivalent safeguards.
7.How long we keep it
- Your account and learning record: for as long as your account exists.
- Audio of your spoken answers: not kept. Clips are discarded after transcription.
- Password-reset codes: 15 minutes, stored hashed.
- Sign-in sessions: refresh tokens expire after 7 days and are replaced on every refresh; logging out deletes them.
- Usage events, technical logs and AI cost records: kept for operational analysis. These are not linked to learner text. We intend to introduce a fixed retention period for them; until then they are retained while the service operates.
- Waitlist email: until the beta opens and the announcement has been sent, or until you unsubscribe, whichever comes first.
8.Deleting your account
You can delete your account yourself from Settings → Delete account. This is immediate and permanent: your profile, lessons, progress, flashcards, tutor conversations, transcripts, marks and streak are removed from our database. If you signed in with Apple, we also revoke the sign-in grant with Apple.
A few records survive deletion because they do not contain your learning content: usage events, technical request logs and AI cost records keyed by your former account identifier, and crash reports already sent to Sentry. None of these can be used to see what you wrote or said. Your email address is not retained in any of them.
If you cannot get into the app, email hello@trydimelo.com from the address on the account and we will delete it for you.
9.Your rights
Depending on where you live (including under the GDPR, the UK GDPR, the Australian Privacy Act and various US state laws) you have rights to access, correct, export, restrict or delete your personal data, to object to certain processing, and to complain to a supervisory authority. We honour these for everyone, wherever you are:
- Access and export: email us and we will send you a copy of the data we hold on your account.
- Correction: change your display name in Settings; for anything else, email us.
- Deletion: Settings → Delete account, or email us.
- Withdraw consent: unsubscribe from the waitlist using the link in any email, or by emailing us. Stop using speaking exercises if you do not want audio processed.
Send requests to hello@trydimelo.com. We reply within 30 days and never charge for this. If you are in the EU/EEA or UK you may also complain to your local data protection authority.
10.Security
All traffic between the app, the website and our servers is encrypted in transit. Passwords are stored only as salted hashes; reset codes and session tokens are stored hashed too. Sign-in tokens on your device are kept in the operating system's secure storage (Keychain on iOS). Accounts lock for 15 minutes after five failed sign-in attempts.
No system is perfectly secure. If we ever discover a breach that affects your data we will tell you, and any regulator we are required to notify, without undue delay.
11.Children
Dímelo is not intended for children under 13, and we do not knowingly collect personal data from them. If you are under the age at which you can consent to data processing in your country (16 in some EU countries), please ask a parent or guardian before signing up. If you believe a child has created an account, email us and we will delete it.
12.The website
trydimelo.com sets no analytics or advertising cookies and uses no tracking pixels. The only thing it stores is the email you enter on the waitlist form, which goes straight to our mailing-list provider. The site is hosted on Vercel, whose servers keep standard access logs (including IP addresses) for a short period for security and operation.
13.Changes to this policy
Dímelo is in beta and this policy will change as the product does. When it does, we update the date at the top and, for changes that materially affect you, tell you in the app or by email before they take effect. Continuing to use the app after a change means you accept the updated policy.
14.Contact
Privacy questions, requests and complaints: hello@trydimelo.com.