Privacy Policy
Last updated: 06. September 2026
This policy explains what happens to your data when you use the Duckwork website and the Duckwork macOS app. Duckwork is built to be local-first: most of what it does never leaves your Mac. Where data does leave your Mac, it's because you configured it to — for example, by choosing a cloud model provider — not because Duckwork sends anything to servers we run.
Duckwork itself does not operate any backend servers that receive your audio, transcripts, or conversations. There is no Duckwork account and nothing is uploaded to us. This section describes data handled by the app locally and by the third-party services you choose to connect.
1. Who is responsible
The controller responsible for this website and the Duckwork app is listed in the Imprint. Contact them at the email address listed there for any privacy question or request.
2. Data processed by the Duckwork app
Voice and speech recognition. By default, Duckwork uses on-device speech recognition (Apple's Speech framework, with on-device processing enabled) — your voice never leaves your Mac. If you enable the optional server-based recognition setting for better accuracy, audio is sent to Apple for transcription, governed by Apple's own privacy policy.
Transcripts and session history. Everything you say during a session is stored locally on your Mac, in the app's local storage. Nothing is synced to a cloud service. You can delete session history from within the app at any time.
Model backends (Echo and Full Assistant modes). When you escalate to Echo or Full Assistant, the relevant transcript excerpt is sent to whichever backend you've configured:
- Ollama — if run locally, this stays entirely on your machine.
- OpenAI-compatible or Anthropic APIs — the transcript excerpt is sent to that provider using the API key you supplied, and is processed under that provider's own privacy policy and terms, not ours.
Duckwork does not see, log, or retain a copy of what is sent to these providers beyond what's needed to display the response to you locally.
MCP tool calls (Full Assistant mode). If you connect MCP servers, tool calls and their arguments are sent to the endpoints you configure, under whatever privacy terms those services publish. Duckwork does not vet or control third-party MCP servers you add.
API keys and tokens. Any API keys or bearer tokens you enter are stored in the macOS Keychain, encrypted by macOS itself. They are never transmitted to us and are only used to authenticate directly with the provider you configured.
Diagnostics. Duckwork does not collect telemetry, analytics, or crash reports automatically.
3. Data processed by this website
Hosting. This site is hosted on Cloudflare Pages. As a content delivery network and reverse proxy, Cloudflare automatically processes technical connection data — such as your IP address, the requested URL, browser type, referring page, and timestamp — in order to serve the site and protect it against attacks. Cloudflare acts as our processor for this; its handling of that data is described in the Cloudflare Privacy Policy. We do not run our own web server and do not keep separate access logs.
Analytics. We use Umami, an open-source analytics tool, running on a server we operate ourselves. It is used to understand aggregate traffic — page views, referring sites, country-level location, browser, and operating system. Umami sets no cookies, does not track you across other websites, and does not store your IP address; visitor counts are derived from a non-reversible hash that rotates daily rather than a persistent identifier. The data is not shared with anyone and never leaves our server. Because no personal data is retained and no cookies are used, this runs without a consent banner — confirm this position with counsel for your jurisdiction before publishing.
- This site does not use advertising or third-party tracking cookies.
- If you use the "Copy install command" button, nothing is transmitted — it only copies text to your clipboard locally.
4. Your rights (GDPR)
If you are located in the EU/EEA, you have the right to request access to, correction of, deletion of, or a copy of any personal data a controller holds about you, and to object to or restrict certain processing. Because we do not hold your app data on any server, most of these rights apply to data held by the third-party providers you've connected (Anthropic, OpenAI-compatible providers, your MCP servers) directly with them, and to the connection data processed by Cloudflare as our hosting provider. You also have the right to lodge a complaint with your local data protection supervisory authority.
5. Children
Duckwork is not directed at children and is not intended for use by anyone under 16.
6. Changes to this policy
We may update this policy as the app changes. Material changes will be reflected here with an updated date at the top of this page.
7. Contact
Questions about this policy can be sent to the contact address listed in the Imprint.