Privacy Policy

Last updated: December 19, 2024

Introduction

postcall.ai ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our meeting transcription and summarization service.

Information We Collect

Account Information

When you create an account, we collect:

  • Email address
  • Full name
  • Authentication credentials (managed by Clerk)

Meeting Content

When you upload audio files, we collect and process:

  • Audio recordings (MP3, WAV, M4A, WEBM, MP4 files)
  • Meeting titles (if provided)
  • Original filenames
  • Audio duration and file size

Generated Content

Our service automatically generates and stores:

  • Transcripts of your audio files
  • AI-generated meeting summaries
  • Extracted action items
  • Identified key decisions
  • Follow-up email drafts

Usage Data

We automatically collect:

  • Number of meetings processed per month
  • Processing costs (for internal accounting)
  • Upload and processing timestamps
  • Feature usage (exports, tabs viewed)

How We Use Your Information

We use your information to:

  • Provide and maintain our transcription and summarization service
  • Process your audio files using AI transcription and summarization
  • Store your meetings and generated content for your access
  • Enforce usage limits (3 meetings/month for free tier)
  • Communicate with you about your account and service updates
  • Improve our service quality and user experience
  • Detect and prevent fraud or abuse

Third-Party Services

We use the following third-party service providers to operate our service:

Clerk (Authentication)

Manages user authentication and account security. Processes your email and name.

Supabase (Storage & Database)

Stores your audio files, transcripts, and meeting data. All data is encrypted at rest and in transit.

OpenAI (Transcription)

Processes your audio files to generate transcripts using Whisper API. Audio is sent to OpenAI servers for transcription and is not retained by OpenAI.

Anthropic (AI Summarization)

Processes your transcripts to generate summaries, action items, decisions, and email drafts using Claude API. Your data is not used to train Anthropic's models.

Vercel (Hosting)

Hosts our web application. May collect standard web server logs (IP address, browser type, access times).

Data Security

We implement appropriate technical and organizational measures to protect your data:

  • All data is encrypted in transit using SSL/TLS
  • Audio files and database records are encrypted at rest
  • Access to data is restricted to essential service operations
  • We use secure authentication (Clerk) with industry best practices
  • Regular security monitoring and updates

Your Rights

You have the right to:

  • Access: Request a copy of your personal data
  • Delete: Delete your account and all associated data from your dashboard
  • Export: Download your meeting data as PDF or Markdown
  • Correct: Update your account information
  • Object: Object to processing of your data
  • Withdraw consent: Stop using our service at any time

To exercise these rights, contact us at privacy@postcall.ai

Data Retention

We retain your data as follows:

  • Active accounts: Data is retained as long as your account is active
  • Deleted meetings: Permanently deleted within 30 days
  • Deleted accounts: All data permanently deleted within 30 days
  • Backup retention: Backups may retain data for up to 90 days

What We DON'T Do

To be clear:

  • We do NOT sell your data to third parties
  • We do NOT use your data to train AI models
  • We do NOT access your calendar or email
  • We do NOT join your meetings with bots
  • We do NOT share your content except with the processors listed above
  • We do NOT use cookies for tracking or advertising

Children's Privacy

Our service is not intended for children under 18. We do not knowingly collect information from children under 18. If you believe we have collected information from a child, please contact us immediately.

International Data Transfers

Your data may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for such transfers in compliance with applicable data protection laws.

Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes by email or through a notice on our website. Continued use of the service after changes constitutes acceptance of the updated policy.

Contact Us

If you have questions about this Privacy Policy or our data practices, contact us: