// Trust & Security Report
Listnr
AI voice generation platform (text-to-speech, voice cloning, podcast hosting, AI video generation) with 1000+ voices in 142+ languages and full commercial rights for generated audio
Certifications held
3
Maturity
Growth
Trains on your data
No
Trust center
No
// Certification ledger
Each held certification is backed by a verbatim quote from the vendor's own trust or security page. “Not confirmed” means we could not verify it publicly, not that the vendor lacks it.
Verify on listnr.ai“Full compliance with global privacy regulations...Standard Contractual Clauses for international data transfers to EEA/UK; contractual mechanisms for DPDP compliance. Users have the right to access, correct, delete, restrict, or port their Personal Data, and to object to processing or withdraw consent at any time.”
Verify on listnr.ai“Listnr respects...California's CPRA...rights with jurisdiction-specific request procedures”
Verify on listnr.ai“Listnr respects...India's DPDP 2023...rights with jurisdiction-specific request procedures”
> Show 8 unconfirmed / not-held certifications
source: listnr.aiNo public evidence of SOC 2 Type 1 attestation on the listnr.ai domain. No 'SOC 2' or 'SOC 2-ready' claim appears on the ethics page or elsewhere on the vendor domain.
source: listnr.aiNo public evidence of SOC 2 Type 2 attestation on the listnr.ai domain. No 'SOC 2' claim appears on the ethics page or elsewhere on the vendor domain.
source: listnr.aiNo public evidence of ISO 27001 certification on vendor domain or independent sources.
source: listnr.aiNo public evidence of HIPAA compliance. Not applicable to standard voice generation use cases.
source: listnr.aiNo public evidence. Listnr uses Stripe, Apple Pay, Google Pay for payments (those processors are PCI-compliant) but no evidence that Listnr itself is PCI DSS certified.
source: listnr.aiNo public evidence of these ISO certifications on vendor domain.
source: listnr.aiNo public evidence. Company has documented ethical AI framework and responsible AI practices (https://listnr.ai/ethics) but no formal ISO 42001 certification.
source: listnr.aiNo public evidence of CSA STAR certification on vendor domain.
// Privacy & AI training
Trains on customer data
No
Data processing agreement
Not offered
Data region
AWS us-east-1 (USA) and eu-central-1 (Germany)
By default, Listnr does NOT train on customer data. Users can explicitly opt-in to model training via dashboard toggle. Explicit written consent required from every identifiable speaker whose voice is uploaded. Voice data retained 30 days by default, then deleted or irreversibly anonymized unless user requests retention. Generated outputs retained 90 days. Voice cloning explicitly prohibited without clear, verifiable consent of the individual.
// Security controls
Data encryption at rest
End-to-end encryption mentioned in ethics framework; encrypted voice storage
listnr.aiPrivacy by design
Data minimization, explicit consent model, user control over training participation
listnr.aiConsent management
Strict standards for voice data rights, transparent consent management, explicit opt-in for model training
listnr.aiContent safety
Prohibited: hate speech, harassment, explicit material, misinformation, IP infringement. Allowed: educational, creative works, parody. Discourages political deepfakes.
listnr.aiEthics & safety response
Ethics concerns: 48-hour response; Safety issues: 24-hour response. Whistleblower protections with confidentiality
listnr.aiSub-processor transparency
30-day notice before adding new sub-processors; list available at https://listnr.ai/subprocessors
listnr.aiData minimization
Collects only account details, usage logs, payment tokens, and user-uploaded content
listnr.ai// Products & data scope
Data it handles: User text input, voice selection, generated audio output (90-day retention)
1000+ voices, 142+ languages, supports SSML, speech styles, custom pronunciations
Data it handles: Voice samples (biometric data, 30-day default retention), cloned voice models
Requires explicit written consent from all identifiable speakers; prohibits cloning without clear consent
Data it handles: Podcast text, generated audio, hosting/distribution metadata
Multi-speaker support, distribution to Spotify, Apple Podcasts, Google Podcasts
Data it handles: Text input, generated video with voiceover (90-day retention)
Text-to-video with lip-sync, generates content for TikTok, YouTube, Instagram
Data it handles: API call parameters, text input, generated audio
Programmatic access for third-party applications; supports Zapier and Pabbly integrations
// What to watch
- No SOC 2 Type 1 or Type 2 attestation is published on the vendor domain, and no 'SOC 2' or 'SOC 2-ready' claim appears on the ethics page or elsewhere on listnr.ai. Listnr should not be treated as SOC 2 certified or 'SOC 2-ready'.
- Despite privacy-by-design and ethical AI practices, Listnr lacks the formal security certifications (SOC 2, ISO 27001, HIPAA, PCI DSS, etc.) that enterprise customers typically require.
- The terms of service cap liability at INR 10,000 or 12-month fees (whichever is greater), an extremely low cap for a production AI service used by enterprises and creators. The service is provided AS-IS with no guarantees on accuracy or uptime.
- No Data Processing Agreement is visible on the website. A privacy policy exists, but a formal DPA document is not linked.
- Listnr is a young company, founded in 2020 (about 6 years). It has scaled rapidly to 3.5M users but has a limited enterprise security track record.
- While the privacy policy claims GDPR compliance with SCCs, no independent audit or attestation backs this claim.
- Listnr also operates a marketplace of AI tools at listnr.ai/ai-apps. This report covers only Listnr's own voice generation product, not that marketplace platform.
// At a glance
Pricing model
Freemium + paid tiers; pay-as-you-go voice generation; subscription options for podcast hosting
Self-hostable
No
// How we verified this
Every certification marked HELD is confirmed against a verbatim quote on Listnr, Inc.'s own trust, security, or privacy pages. We reject certifications claimed only on third-party aggregators, on a cloud host's behalf, or by a similarly named company.
Last verified 2026-07-07. Compliance changes over time. Always confirm directly with the vendor before relying on any certification for a purchasing or compliance decision.
listnr.ai