Privacy Policy

Last updated: 30 June 2026

Transcriber (“we”, “the service”) records or accepts uploaded meeting audio and turns it into transcripts, notes and action items. This policy explains what we collect, why, who we share it with, and your rights.

What we collect

  • Account data: your email and (optionally) display name and avatar, via Google sign-in or email/password.
  • Meeting content: audio you upload or record, the resulting transcripts, notes, and any edits you make.
  • Usage data: minutes transcribed per month (for quota/billing) and basic, privacy-first product analytics (no session recording, no autocapture).
  • Billing data: handled by Stripe — we never see or store your card number.

How we use it

To provide the service (transcription, notes, sharing), enforce plan limits, take payment, send you transactional email you requested, and keep the service secure. We do not sell your data and do not use your meeting content to train models.

Sub-processors

We share data only with the providers needed to run the service:

ProviderPurposeRegion
SupabaseDatabase, authentication, file storageEU (eu-central-1)
VercelApplication hosting / serverless functionsEU/US
DeepgramSpeech-to-text transcriptionUS
ElevenLabsSpeech-to-text transcription (fallback)US
GroqSpeech-to-text transcription (fallback)US
OpenRouter / OpenAINote & summary generation (LLM)US
PostHogPrivacy-first product analytics (no session replay)EU
ResendTransactional email (share invites)US
StripePayments & subscription billingUS/EU

Audio sent to transcription providers is processed to return text and is not used by them to train models under their API terms. Some providers are in the US; transfers rely on their standard contractual clauses.

Retention & deletion

Your meetings, audio and transcripts are kept until you delete them. Deleting a meeting removes its transcript, notes and audio file. Deleting your account removes your meetings, audio, API keys and usage records. You can request export or deletion at any time by emailing us.

Your rights

Subject to your local law (incl. GDPR), you can access, correct, export or delete your data, and object to or restrict processing. Contact us to exercise these rights.

Security

Data is encrypted in transit (HTTPS) and at rest by our infrastructure providers. Access to your meetings is scoped to your account.

Contact

Questions or requests: phktistakis@gmail.com.

This document is a starting template and not legal advice; have it reviewed before relying on it.