Trust & data

Your calls train your team. Never our models.

Your client recordings and transcripts are never used to train models — ours or any vendor's — and never sold or monetized as data. This is contractual, not a settings toggle. A DPA is available on request.

How data flows

Four steps, every one under no-training terms.

AI providers in the production chain are Anthropic and OpenAI, both under enterprise no-training API terms. The sub-processor list below is the exhaustive source.

01

Encrypted ingestion

Calls arrive via Zoom OAuth, a signed partner API, or direct upload — encrypted in transit.

02

Stored in the US

Recordings and transcripts live in the United States (Supabase on AWS, us-west-2), encrypted at rest and isolated per organization.

03

Transcribed & audited

Vetted processors under enterprise no-training terms: Deepgram for transcription, Anthropic and OpenAI for the audit.

04

Delivered to your team

Results reach the right roles. Magic-link reports are read-only and expire in 7 days.

Sub-processors

Who touches your data, and where.

Each provider processes only the minimum required for its function. We update this page before adding a processor.

ProcessorPurposeRegion
ZoomCall source (OAuth)US
DeepgramTranscriptionUS
AnthropicAI audit — no-training termsUS
OpenAIAI audit failover — no-training termsUS
SupabaseDatabase · auth · storageUS · AWS us-west-2
VercelApplication hostingUS
StripeBillingUS

The complete sub-processor list is maintained in our Privacy Policy.

Access & tenancy

Isolation enforced at the database, not the UI.

  • Organization-scoped row-level security — no cross-tenant access, enforced at the database, not just the UI.
  • Role-based dashboards: admins, supervisors, and agents each see only what their role permits.
  • Caller-identity sanitization for managed engagements — voices are separated without exposing PII.
  • Audit log on every administrative action.
  • Magic-link reports are read-only and expire after 7 days.
Retention & deletion

You keep what your plan keeps — and you can delete anytime.

Deletion on request, always. Life-insurance workflows involve PII, not PHI; if your use case touches health data, talk to us first.

Starter

90 days

Team

13 months

Pro

2 years

Agency

10 years

Enterprise

Custom

Proof a prospect can verify before buying.

Every Compliance Certificate carries a public, cryptographic verifier — the one place anyone can confirm an audit is genuine without an account.