Effective: 12 June 2026
This is the privacy policy for Kmic (Android package com.echomic.app) — a free Android app that adds a karaoke echo effect to your voice while music plays from another app on your phone.
The data controller is the independent developer of Kmic, contactable at bra.wkm@gmail.com. This policy applies to all current and future versions of the Kmic Android app.
The short version: Your microphone audio is processed entirely on your phone — we never upload, store, or share what you sing. The only things we send anywhere are (1) optional feedback you choose to write, (2) standard data the Google AdMob ad SDK collects to show you banner ads, and (3) anonymous, aggregate usage analytics (which features get used, and roughly which country the app is opened in) via Google Analytics for Firebase. We don't ask for your name, email, phone number, or any account.
Records your microphone while you're using the app, processes it with an echo / reverb effect, and plays it back through the speaker or earphones you've chosen.
Microphone audio is processed on-device only. It is never uploaded, saved, transmitted, or shared with anyone. The audio buffer lives in memory for milliseconds and is overwritten by the next batch of samples.
Your in-app preferences (chosen scenario, sliders, saved preset, dev mode toggle) are stored locally in Android's SharedPreferences store. They never leave your phone and are wiped if you uninstall the app.
When you tap the Send feedback button and submit, the text you typed is uploaded to Google Firebase Firestore (Google's hosted database) along with:
An anonymous user ID — a random string generated by Firebase Authentication. It is not tied to your name, email address, phone number, Google account, or any other identifying information.
Your phone's manufacturer / model and Android version, so we can reproduce bugs you describe.
The app version.
A server timestamp.
We use this to fix bugs and decide what to build next. The anonymous user ID is used only to rate-limit submissions (one feedback per device per 24 hours) so the channel can't be spammed. It is not cross-referenced with any other dataset.
Kmic shows a banner advertisement at the top of the main screen. Ads are served by Google AdMob and may collect:
Your Android advertising ID (a resettable, non-personal identifier Google assigns)
Your approximate location (derived from your IP address — typically city-level)
Device information (model, OS version, language, screen size)
Which ads were shown to you and whether you tapped them
This data is collected and processed by Google according to the Google Privacy Policy and the AdMob Partner Policies. If you are in the EU, UK, or Switzerland, you will see a consent prompt the first time you open the app, asking which categories of data AdMob may use. You can revisit your choice from your Android system settings (Settings → Google → Ads).
Kmic uses Google Analytics for Firebase to understand how the app is used in aggregate — so we can see what to improve. It collects:
App-usage events — for example opening the app, starting and stopping a karaoke session (and how long it lasted), which preset / output / microphone you used, and screen views.
A non-identifying app-instance ID generated by Firebase (a random identifier for this install; it is not your name, email, or account).
Basic device information — model, Android version, language.
Approximate location — country / region only, derived from your IP address. This is not precise GPS location.
This analytics data is anonymous and aggregated. We use it to see overall usage patterns (for example, how many people start a session, which presets are popular, and which countries Kmic is used in) — never to identify you individually. It is collected and processed by Google under the Google Privacy Policy. We do not collect crash logs or performance traces.
All data sent from the app travels over encrypted HTTPS / TLS connections. Data stored in Google Firebase Firestore is encrypted at rest using Google's standard server-side encryption. Access to feedback documents is restricted by Firestore security rules to the developer only — feedback authors themselves cannot read back what they submitted (it's write-only from the device).
Anonymous feedback documents are stored in Google Firebase Firestore, which uses Google data centres globally. Depending on your region, your data may be transferred to and processed in the United States or other countries where Google operates. Google complies with applicable data-transfer frameworks (UK and EU Standard Contractual Clauses, etc.) — see Firebase Privacy and Security for details.
Advertising data is processed by Google AdMob, also globally.
Data
Retention
Anonymous feedback documents
Up to 2 years from submission, then automatically deleted by a Firestore TTL (time-to-live) policy. Deleted sooner on request — see "Your rights" below.
Anonymous Firebase Authentication user ID
Persists in your local Firebase Auth state until you clear the app's data or uninstall.
Advertising data (AdMob)
Per Google's retention practices — see the Google data retention page.
Usage analytics (Google Analytics for Firebase)
User-level event data is retained per the Google Analytics for Firebase retention setting (up to 14 months), after which it is deleted; aggregate, non-identifying reports may be kept longer.
Local in-app preferences (sliders, presets, dev mode)
Stay on your phone until you uninstall or clear app data. Never uploaded.
You have the right to:
Access — request a copy of feedback we hold about you. Because we only have an anonymous ID, you'll need to tell us the approximate date and the first few words of what you wrote so we can locate the document.
Rectification — correct inaccurate data.
Erasure — have your data deleted before the 2-year retention period ends.
Restrict processing — ask us to limit how we use your data.
Data portability — receive a copy of your data in a portable format.
Object — object to our processing on legitimate-interests grounds.
Withdraw consent — for any processing where consent is the legal basis (e.g. personalised ads), at any time.
Lodge a complaint with your national data-protection supervisory authority.
Email bra.wkm@gmail.com to exercise any of these rights. We aim to respond within 30 days.
You have the right to:
Know what personal information we collect about you (this policy explains it).
Delete personal information we hold about you.
Opt out of "sale" of your personal information — we do not sell personal information. Sharing with Google for ad delivery may be considered "sharing for cross-context behavioural advertising" under CPRA; you can opt out of personalised ads via the in-app consent (EU/UK/CH users only see the consent prompt automatically; everyone else can opt out at Settings → Google → Ads).
Non-discrimination — we will not deny you services or charge differently for exercising any privacy right.
Regardless of where you live, you can:
Reset your Android advertising ID — Settings → Google → Ads → "Reset advertising ID"
Opt out of personalised ads — Settings → Google → Ads → "Opt out of Ads Personalisation"
Skip sending feedback — feedback is never sent unless you explicitly tap Send feedback
Request feedback deletion — email the address below
Uninstall the app — wipes all on-device data (preferences, anonymous auth state, cached resources)
What we do
Legal basis
Process feedback you submit
Legitimate interest — improving the app — balanced against the minimal data involved and your anonymity
Show personalised ads (where consent given)
Your consent, collected via the in-app Google UMP consent flow
Show non-personalised ads (no consent given)
Legitimate interest — sustaining a free app
Rate-limit feedback (anti-spam via anonymous UID)
Legitimate interest — keeping the feedback channel usable
Collect anonymous, aggregate usage analytics
Legitimate interest — understanding overall usage to improve the app — balanced against the data being anonymous and aggregated
Kmic is not directed at children under 13. We do not knowingly collect personal information from anyone under 13. If you believe a child under 13 has submitted feedback or otherwise interacted with the app, please email bra.wkm@gmail.com with enough detail to locate the data, and we will delete it.
We do not create an account for you. We do not ask for your name, email, phone number, or any other identifying information.
We do not record, save, transmit, or sell your microphone audio. Ever.
We do not track which songs you sing or which music app you have playing alongside us. We have no visibility into your other apps.
We do not sell or share data with any third party other than Google (Firebase + AdMob, as described above).
The app is not directed at children under 13.
RECORD_AUDIO — to capture your singing voice for the echo effect
MODIFY_AUDIO_SETTINGS — to set the phone speaker as the output during karaoke mode
FOREGROUND_SERVICE + FOREGROUND_SERVICE_MICROPHONE — to keep the echo effect running when you switch to your music app
WAKE_LOCK — to prevent the audio engine from being suspended while singing
BLUETOOTH_CONNECT — to route audio to Bluetooth earphones when you choose them
POST_NOTIFICATIONS — to show the "echo effect active" notification so you can tap to come back to the app
AD_ID — for AdMob to serve ads (see Section 2.2 above)
If we change anything material, we'll update the Effective date at the top of this page and, when feasible, surface a brief note in the app. The latest version always lives at this same URL.
Questions, concerns, deletion requests, or any of the rights listed in Section 6: bra.wkm@gmail.com.
We aim to respond within 30 days. If you do not get a satisfactory response, EU / UK / Swiss users have the right to lodge a complaint with their national data-protection supervisory authority.