Last updated 15 August 2026 · Back to MacroLang
MacroLang translates speech and text between people. This page says what we keep, what we don't, and who else sees it. It describes what the software actually does — if you find something here that doesn't match how it behaves, that's a bug and we want to hear about it.
Nothing that identifies you. Text you translate is sent to a translation engine and returned — we keep a short-lived cache of translations to make repeats faster, and that cache holds the text, not you.
| What | Why |
|---|---|
| Username | To sign you in and show who you are to friends. |
| Only to reset your password. We don't send marketing. | |
| Password | Stored as an Argon2 hash. We cannot read it, and nor can anyone who steals the database. |
| Your plan | Whether you're on Free, Macro+ or Macro++. |
| Status & presence | Online/away, and your status text if you set one. |
Messages you send, the rooms and channels you're in, your friends and blocks, reactions, pins, and any files you attach. These are stored so the conversation still exists when you come back — the same as any chat app. Deleting your account removes them.
SMS you send and receive through MacroLang, and your Twilio credentials. Those credentials are encrypted before they're stored, not held in plain text.
We use Umami to count visits. It's cookieless and collects no personal data: page views, where a visit came from, browser, operating system, device type and country. It can't identify you and doesn't follow you to other sites. That's why this site has no cookie banner — there's no cookie to consent to.
We also record two things you do, so we can tell whether people actually use what we build:
Never the text, and never the code. What you typed is not part of this. Neither is your username, your account, any room or server name, or the call code itself — that code is what lets someone into a call, and it never leaves your browser. It's counts, not content: the same kind of anonymous total as the country and browser above.
We also show a live visitor count in the header. That works from a random id your browser makes up for the tab, which we hold for 45 seconds and then forget. It isn't stored and isn't linked to your account.
If your browser sends a Do Not Track signal, we honour it and count nothing.
To translate something, we have to send it to a translation engine. Depending on the language pair and settings, that may be Google Translate, MyMemory, Apertium, LibreTranslate, Lingva, Microsoft Translator, or a model you supply your own key for. Those providers see the text you translate, under their own privacy policies.
This is the one genuinely unavoidable disclosure on this page, so it's worth being blunt about: don't put anything through any online translator — ours or anyone else's — that you couldn't accept a third party reading.
Calls are peer-to-peer where the network allows, so audio and video travel directly between participants. When a firewall or mobile network prevents that, traffic is relayed through a TURN server so the call still connects. Either way we don't record it, and no call media is stored.
Captions are generated live and shown on screen. If you export a transcript, that copy is yours and stays on your device unless you send it somewhere.
A room in MacroHub is a place you drop into and talk. Two of its settings decide what survives after you leave, and both are chosen by whoever manages that room — not by us.
Worth knowing before you speak: you can't tell from inside a room whether saving is on. If that matters to you, ask whoever runs it. Audio is never kept either way — the saved thing is the text of what was transcribed.
Deleting a message, a room, or a whole server removes what was saved in it, and deleting your account removes your messages with it.
This is off, and we are not currently collecting it from anyone. When it does launch, it will be a switch in Settings that starts turned off, and it will explain in plain words — including that corrections may be licensed or sold to companies building translation and speech technology — before you decide.
We're describing it here now rather than adding it quietly later. Nothing collected under it would ever be taken from someone who hadn't switched it on and read that wording first, and you'd be able to delete what you'd contributed at any time.
| Who | What they do | What they see |
|---|---|---|
| Render | Runs our servers and database | Everything stored above |
| Vercel | Serves this website | Requests for pages |
| Stripe | Takes payments | Your payment details and email — never us |
| Resend | Sends password-reset email | Your email address |
| Umami | Counts visits | Anonymous page views |
| Translation engines | Do the translating | The text you translate |
| TURN relay | Connects calls behind firewalls | Encrypted call traffic passing through |
| Cloudflare R2 | Stores files you attach | Those files |
| Twilio | Phone calls and SMS | Only if you connect your own number |
We don't sell your personal data to anyone, and there is no arrangement under which any of the above may use it for their own advertising.
If you're in the UK, EU, or a US state with its own privacy law, these rights are yours by law rather than by our goodwill. Either way, ask.
MacroLang isn't intended for children under 13, and we don't knowingly create accounts for them. If you believe a child has an account here, contact us and we'll remove it.
Passwords are hashed with Argon2. Sessions use signed tokens that are invalidated the moment you change your password, so changing it really does sign out anyone else. Traffic is HTTPS end to end. Credentials you give us for your own phone number are encrypted at rest.
No system is perfect. If you find a security problem, please tell us before telling anyone else, and we'll fix it and credit you if you'd like.
If this page changes in a way that affects what we collect or who sees it, we'll say so in the app rather than quietly editing this page. Consent already given never carries over to a new purpose — we'd ask again.
Privacy questions, data requests, or security reports: nexusmap.ai@gmail.com.