Privacy
Effective September 8, 2026
Who we are
Howli is provided by CandidGO Ltd (company number 16876904), registered at 6th Floor, 37 Lombard Street, London, England, EC3V 9BQ. CandidGO Ltd is the controller. No account required. Contact support@candidgo.com.
What stays on your device
Howli uses your microphone for practice and scoring, and front camera for optional video. Recordings, song content, imports, and raw singing or pitch data stay on device, not with service providers.
Best-attempt recordings are deleted with their song or all recording data. Reaction recordings are temporary, deleted after review or next launch if abandoned. Recordings leave your device only when you export, save, or share them through Apple's controls.
Howli creates arrangement-preview videos on device; they leave only through your chosen destination in Apple's share sheet.
Face data and TrueDepth
On supported iPhones, after you choose video, Howli uses ARKit TrueDepth face tracking during preview and recording. ARKit provides temporary face geometry and expression values, head pose, tracking status, camera calibration, timing, and light estimates. Raw geometry and expression values stay in memory. Howli stores derived eye and mouth contours, head pose, fit measurements, and alignment data with the recording—not a depth map, facial identity, or biometric template.
This data only aligns and animates the optional face effect in review and export. It is never used for identity, authentication, profiling, analytics, advertising, marketing, or model training. Howli does not upload, share, or embed it in exported videos; user-chosen exports contain rendered pixels. Howli marks all app-managed files and preferences as excluded from device backups; Apple controls final backup behaviour.
Howli discloses this before camera permission; video can be skipped. Temporary data is deleted with a discarded recording or next launch. Retained data is deleted when its recording or song is deleted, recording data is cleared, or Howli is uninstalled. Disabling Camera prevents future collection.
Website analytics
Vercel Web Analytics provides aggregate statistics about page views, referrers, coarse location, browser, and device. Query parameters and page fragments are removed, and content entered into the browser song editor is not sent.
Mixpanel records successful browser song-editor starts, code generations and copies; creation method or import format; local day; and browser or device data. It uses a memory-only random page-session identifier; persistence, autocapture, page views, and IP collection are disabled.
Neither service receives song content—codes, titles, lyrics, notes, filenames, imports, or URLs—or uses advertising cookies or persistent cross-site identity. We use them only for improvement, not ads or cross-company tracking.
You can object at any time. This browser stores your choice for later analytics.
Checking this browser's analytics choice…
App analytics and reliability
Mixpanel provides product analytics linked to a random identifier per installation. It receives activity, including whether a song began in the iPhone editor from scratch or from code; your first-video choice of face effect or no filter; birthday-name choices and dismissals (never names); bounded preview-export outcomes and bounded saved or exported review-style choices such as face-effect use, 2D/3D pitch-note presentation, reverb level, and voice-pitch preset; vocal-range and song-fit measurements; purchases; coarse location; and device, performance, and input diagnostics. It does not receive song codes, titles, lyrics, notes, filenames, imported files, exports, or face-tracking data. Used for improvement and aggregate song counts, not advertising or cross-company tracking.
Sung by X users counts installations with a completed singing attempt, including shared-code recipients, using existing analytics. Multiple installations may count one person more than once. We publish only song fingerprints, aggregate counts, and report dates; no individual identifiers, content, or recordings.
Sentry receives crash reports and limited diagnostics for reliability, excluding screenshots, recordings, and song content. They are not linked to Mixpanel.
Purchases and notifications
Apple processes payments. RevenueCat receives an app-specific customer identifier and purchase or subscription history for offers, access, restores, subscription management, support, and analytics. Verified production installs use the same random identifier as Mixpanel, without creating an account or providing full payment-card details.
OneSignal manages optional new-song notifications and aggregate delivery and open statistics. You control notifications through Apple's permission prompt and iOS Settings.
Why we use information
We rely on legitimate interests for improvement, aggregate song counts, reliability, and subscription measurement; performance of a contract for purchases, access, and requested support; and legal obligations where required. You can withdraw optional permissions and notification consent at any time.
Howli makes no solely automated decisions with legal or similarly significant effects on you.
Sharing, retention, and transfers
We share personal information only with Apple, Mixpanel, RevenueCat, Sentry, OneSignal, Vercel, GitHub, their subprocessors, or where legally required. GitHub processes analytics into public song counts without retaining raw events or identifiers. Our contracts require protection consistent with this policy and applicable law.
Mixpanel and Sentry use European Union data endpoints. Other providers may process information outside the UK using an adequacy decision or approved contractual safeguards where required. Contact us for details.
On-device information remains until you delete it. Service data is kept only as long as needed for statistics, purchases, notifications, reliability, support, or legal and accounting duties, then deleted or anonymised under our provider settings and contracts.
Your choices and rights
You may have rights to access, correct, delete, restrict, copy, or object to our use of your information. Use the control above for website analytics, iOS Settings for permissions and notifications, or contact support@candidgo.com for app analytics or another request.
Without an account, we may need device information to locate your data and cannot always connect it to you. You can complain to the UK Information Commissioner's Office.
Changes
We will update this page and notify you of material new uses when required.