Last updated: September 1, 2026
Penny is a personal, independent voice assistant app. This page explains what data the app accesses, why, and what happens to it. Penny is built around one rule: it only ever acts when you directly ask it to — nothing runs, listens further, or sends data anywhere on its own initiative.
If you choose to connect a Google account, Penny requests exactly three permissions:
Penny never requests broader access to your Google account than this.
If you connect Spotify, Penny can control playback (play, pause, skip, search, volume) on your behalf. It does not access your listening history, saved library, or any personal data beyond what's needed to control playback.
Account sign-in tokens are stored encrypted on your device (Android's secure keystore) and are used only to talk directly to Google's or Spotify's own servers on your behalf — Penny does not run its own backend server, and tokens are never sent anywhere else. App preferences (language, app color, saved parking location, etc.) are stored as plain files on your device only.
To understand and respond to what you say, your requests are sent to Google's Gemini API. Speech recognition and voice output use Google Cloud's speech APIs. These providers process the request text/audio needed to answer you; Penny does not share your data with advertisers, data brokers, or anyone else, and nothing is sold.
You can disconnect your Google or Spotify account at any time from within the app, which revokes Penny's access immediately. Because Penny doesn't run its own server, there is no separate copy of your data to delete elsewhere — disconnecting is the deletion.
Questions about this policy or your data? Contact info@pennyvoice.com.
If Penny's features change in a way that changes what data it accesses, this page will be updated accordingly.