Important notice: Autopen is an early cloud service. Its backend uses durable managed storage, but its operating controls remain under validation and the Service is not approved for regulated workloads. Record and upload content only when you have authority to do so and its sensitivity is appropriate for the safeguards described here.
Who we are and what this policy covers
Autopen is operated by Quiet Eye Advisors LLC ("Autopen," "we," "us," or "our"). This policy explains how we process personal information through getautopen.com, the Autopen iOS, Android, Windows, and macOS applications, our application programming interfaces, support, and related services (collectively, the "Service"). It does not govern a third-party service that you use under that provider's own account or terms.
How the Service works
Autopen 2.0 requires an account and cloud processing. Meeting audio is uploaded to Autopen and sent to a speech-to-text provider. Transcript text, your instructions, and relevant note-style information are then sent to a note-generation provider. Transcripts, notes, styles, and account data are stored by the Autopen service to synchronize across your devices. Autopen is not end-to-end encrypted because the Service must process content to transcribe, generate, edit, and synchronize it.
Protected accounts and your key
When you protect an account, the Autopen application creates an encryption key on your device. The application encrypts each meeting's title, folder name and speaker corrections on your device before sending them. Autopen's servers encrypt the finished transcript and notes to your account's key before storing them. Without a copy of your key, Autopen cannot decrypt the transcripts and notes saved on a protected account. A recovery copy, if you choose one, gives Autopen that copy.
Protection applies to what is stored. It does not apply while a meeting is being processed. Meeting audio is sent to the transcription provider and the transcript is sent to the note-generation provider in a readable form, because that is how a transcript and notes are produced. While notes are being generated, Autopen's servers hold a working copy of the transcript that Autopen's systems can read. When processing finishes, is cancelled, or permanently fails, that copy is scheduled for deletion; it stays readable until the deletion succeeds, and retries, stalled processing or a failed cleanup pass can keep it longer. When you use Ask, Autopen and the note-generation provider receive your question, relevant meeting passages, and recent turns of that conversation; on a protected account those passages are supplied by your device. Autopen does not retain an Ask conversation as server-side history, and the note-generation provider may retain content in its abuse-monitoring logs for up to 30 days. Content you send through Ask reaches the note-generation provider and may be retained in that provider's abuse-monitoring logs for up to 30 days. Meeting times, capture source, folder identifiers, note-style names and instructions, vocabulary you type, and your account email remain readable to Autopen.
The key is held in your device's operating-system credential store. Autopen shows you 12 recovery words, which are the key in a form you can write down. If you lose the words and every device that holds the key, the protected content cannot be recovered by you or by Autopen, unless you have asked Autopen to keep a recovery copy of your key (recovery from that copy is not available yet).
It's like leaving a spare key with your building's doorman. If you ever lose your 12 recovery words, Autopen will be able to use that copy to let you back in and restore your notes once the recovery path ships; it is not available in the apps yet, so until then losing your words and every device that holds your key still means losing access. The trade-off is the same as with the doorman: because Autopen holds a copy of your key, Autopen is technically able to open your notes for this account. If you lose your 12 recovery words and every device that holds your key, and you have no recovery copy, the protected content cannot be recovered by you or by Autopen. A recovery copy exists only if you choose it. A personal recovery copy can be turned off in Settings; turning it off stops future recoveries and does not retract a copy that has already been used. Where an organization manages your account, the organization may control the recovery copy and it cannot be turned off from the application.
A protected account can currently be used only on a device that already holds its key.
Information we collect
- Account and identity information: email address; name or profile information returned by Apple, Google, or an organization identity provider; provider and internal identifiers; sign-in method; verification and multifactor status; organization, domain, membership, and role; sessions; plan; and account state.
- Billing information: plan and subscription status; App Store transaction identifiers; renewal and cancellation dates; and monthly transcription minutes used. Apple processes App Store purchases and shares transaction data with us. Once web and Windows checkout is available, Stripe and Link will also provide Stripe customer and subscription identifiers, and Link (Stripe) will collect your payment details, name, and billing location as seller of record and handle tax; we never receive your card number.
- Customer Content: meeting audio; transcripts; speaker labels and corrections; generated and edited notes; note styles, instructions, and examples; vocabulary; meeting titles; folders; flags; and files or exports you request.
- Device, usage, and security information: device and request identifiers, platform, device name, app version, IP-derived network information, timestamps, feature and processing usage, job status, error codes, authentication events, and security or audit signals.
- Local desktop call detection: if you leave this optional setting enabled, the Windows and Mac apps inspect visible window titles and application names on your device to recognize supported Teams, Zoom, Webex, and Google Meet calls. Source titles and application names are discarded after each scan, are not stored or sent to Autopen, and recording never starts until you choose it.
- Communications: information you include in support, privacy, security, feedback, or other messages to us. Please do not send Customer Content, passwords, access tokens, or other secrets in a support message.
Diagnostics: crash and error reports from the Autopen server and the iPhone and Windows apps contain the error type, where in the code it happened, app version, OS version, and device model. They never contain meeting content, titles, audio, email, account identifiers, or any per-install identifier. Server errors are always reported this way. "Send crash reports" in Settings on iPhone and Windows turns off app reporting only. The provider keeps reports for 90 days.
We collect this information from you and your devices, from the sign-in provider you select, from an organization that manages your account, and from the service providers that process requests for us.
How we use information
We use information to provide, authenticate, transcribe, generate, edit, organize, synchronize, export, maintain, and support the Service; administer accounts and organizations; protect users and the Service; prevent fraud and abuse; debug and improve reliability; measure usage and enforce plan limits; communicate with you; comply with law; and establish, exercise, or defend legal claims.
We do not sell personal information or Customer Content, and we do not share it for cross-context behavioral advertising. Autopen does not use Customer Content to train an Autopen model.
Service providers and disclosures
We disclose only the information needed for providers to perform services for us. Our current service stack includes:
- WorkOS: identity, authentication, account management, authentication lifecycle emails such as email verification and password reset, multifactor authentication, and organization SSO. WorkOS receives identity, sign-in, session, and organization information—not meeting audio or note content.
- Apple and Google: optional social sign-in. The provider you choose receives an authentication request and returns identity information under its own privacy terms. Autopen does not give Apple or Google your meeting audio, transcript, or notes merely because you use that provider to sign in.
- Stripe and Link (future merchant of record for web and Windows purchases: payments, tax, receipts): once web and Windows checkout is available, will receive the billing identifiers and transaction status needed to provide plans and customer support.
- Apple: Apple sells App Store subscriptions as merchant of record under its own privacy policy and shares transaction status with us.
- Netlify: public website hosting and desktop installer delivery. Netlify processes web request information and release files and metadata. Downloading an installer does not require an Autopen account and does not set an Autopen session cookie.
- Railway: API hosting and service operations. Requests and the information needed to process them pass through Railway-hosted infrastructure.
- AssemblyAI: speech-to-text processing. AssemblyAI receives uploaded audio and may receive language or vocabulary context, then returns transcription results. Autopen's account-wide Model Improvement Program opt-out is enabled.
- OpenAI API: note generation. OpenAI receives transcript text, note-style instructions, and related context needed to generate a note. OpenAI states that API inputs and outputs are not used to train its models by default unless the customer affirmatively opts in. Autopen sends stateless requests with provider response storage and prompt caching disabled.
- Microsoft Azure Key Vault: holds the wrapping key used for optional recovery copies. It receives wrapped key material only, never meeting audio, transcripts or notes.
- Sentry (Functional Software, Inc., US): diagnostics only. Sentry receives crash and error reports from the Autopen server and the iPhone and Windows apps—the error type, where in the code it happened, app version, OS version, and device model—and never meeting content, titles, audio, email, account identifiers, or any per-install identifier.
AssemblyAI no-training controls: Effective August 5, 2026, Autopen has enabled AssemblyAI's account-wide Model Improvement Program opt-out. Under that control, AssemblyAI states that it will not use Customer Data to train its AI or machine-learning models or to perform benchmarking, and will not use de-identified data to train those models. The control applies to future requests across the account, including pre-recorded and streaming APIs and current or future account keys. Autopen has also set AssemblyAI's asynchronous audio and transcript time-to-live to one day, and the Autopen server requests deletion of each provider transcript immediately after retrieving the result. Certain operational, security, and billing metadata may be retained under provider terms.
OpenAI data controls: Autopen's integration sets store=false, disables implicit prompt caching, and does not use provider-hosted files, conversations, background mode, web search, MCP, or other hosted tools for note generation. These application settings do not by themselves eliminate OpenAI's separate abuse-monitoring logs. Unless and until Autopen documents an approved Zero Data Retention or Modified Abuse Monitoring configuration for the exact production project, OpenAI states that such logs may contain customer content and may be retained for up to 30 days by default, subject to documented legal and safety exceptions. Autopen does not currently claim Zero Data Retention. Content you send through Ask reaches the note-generation provider and may be retained in that provider's abuse-monitoring logs for up to 30 days.
We may also disclose information when you direct us to do so, to professional advisers under confidentiality obligations, in connection with a merger, financing, acquisition, reorganization, or sale of assets, or where reasonably necessary to comply with law, protect rights and safety, and investigate fraud or misuse.
Storage and retention
Autopen's current production-configured backend uses managed PostgreSQL, Redis, and a private object store on Railway in its U.S. East region. Meeting records and account data are durable application records rather than restart-only memory. Staged audio is encrypted by Autopen with AES-256-GCM before it is placed in private object storage. Identity records can remain at WorkOS, and providers may retain information under their terms and the controls described above, including OpenAI's default abuse-monitoring period unless a stronger account control is approved and verified. The public website is hosted on Netlify and uses no Autopen advertising or analytics cookies.
During Windows and Mac recording, Autopen writes audio to an authenticated local crash-recovery journal only after encrypting it. The journal supports recovery after an interruption and is cryptographically erased after successful processing or explicit discard. Recovery eligibility is capped at seven days and may be shorter under an organization's transcript-retention policy; expired journals are removed when the desktop app next performs cleanup.
Staged audio is designed to be deleted after a terminal transcription attempt, including a failed attempt; incomplete uploads have a short expiry. Transcripts, notes, styles, and account data remain until deleted or until an applicable retention rule expires them. Personal meeting deletion is designed to move an item to Trash for 14 days before permanent deletion. A managed organization may set different Trash, transcript, notes, and offline-cache retention. Permanent and account deletion remove applicable data from active systems, subject to provider processing, backup expiry, security records, legal obligations, and dispute preservation. Content that was saved before an account was protected may remain in an encrypted database backup until that backup expires. We have not yet verified a maximum retention period covering every backup. Backup restoration, backup-expiry, key-rotation, deletion, and operating-control evidence remain active reliability priorities and prerequisites for any future regulated-workload claim. When a recovery copy is turned off or its account is deleted, Autopen keeps a content-free revocation record (the account identifier, the copy's generation and a request identifier; no key and no content) so that a restored backup can never bring the copy back.
Billing records (plan, subscription and transaction identifiers, invoice and refund records) are kept for up to seven years after the last transaction to meet tax and accounting obligations, including after account deletion. They never include your notes, transcripts, or recordings.
Security
We use administrative, technical, and organizational safeguards appropriate to the nature of the Service, including encrypted transport, restricted credentials, access controls, application-layer encryption for staged audio, and data-minimizing telemetry. No transmission or storage method is completely secure. Availability, recovery, deletion, monitoring, and independent security validation continue to mature, and the Service is not approved for regulated workloads.
Managed organizations and devices
If an organization provides or manages your account, its authorized administrators may manage membership, require SSO or app lock, restrict features such as export, set retention rules, revoke sessions, view enrolled-device and aggregate-usage information, request deletion of local app data, and delete organization-controlled data. Ordinary organization administrators are not provided a feature for opening a member's private transcript or notes, but an organization may control the account and its lifecycle. Remote deletion is completed only after an app reconnects and acknowledges the command; an offline device cannot be represented as erased.
Your choices and privacy rights
You can choose a sign-in provider, correct transcript text, export permitted content, delete meetings, permanently delete Trash items, delete all meetings, and delete a personal account from the iPhone, iPad, or Windows app. In-app deletion is currently unavailable on Android and Mac; Android and Mac users can delete their account from the iPhone, iPad, or Windows app, or by following the account-deletion help instructions. The public account-deletion guide gives the exact in-app path, describes what deletion covers, and explains the managed-account process. A managed account is handled through its organization so that access and deletion can be administered and audited.
Depending on where you live, you may have rights to know, access, correct, delete, or obtain a portable copy of personal information; restrict or object to certain processing; or withdraw consent where consent is the basis for processing. You may also have a right to appeal a denial. To make a request, email info@quieteyegroup.com. We may verify your identity and may be unable to delete information that we must keep by law or that an organization controls on your behalf. You may authorize an agent where applicable law permits it.
International processing and legal bases
Autopen's current Railway application services are configured in the U.S. East region. Autopen and its other providers may process information in the United States and other countries whose laws may differ from those where you live. Before enterprise or regulated-workload use, we will publish the final provider regions and applicable transfer safeguards. Where a legal basis is required, we process information as necessary to provide the Service and perform a contract, for legitimate interests such as security and reliability, with consent where requested, and to comply with legal obligations.
Recording responsibility
Recording, wiretap, biometric, employment, confidentiality, and privacy laws vary by location and context. You are responsible for determining whether you may record and process a meeting, notifying all participants, and obtaining any required consent. Autopen may provide reminders but cannot determine which laws or contractual duties apply to you.
Children
Autopen is a workplace product and is not directed to children. We do not knowingly collect personal information from anyone under 16. If you believe a child has provided information, contact us so we can investigate and delete it where appropriate.
Changes and contact
We may update this policy as the Service, providers, or law changes. We will post the new effective date and provide any additional notice required by law. We will materially review this policy as the beta expands and whenever our providers, storage, retention, or processing purposes materially change.
Autopen is operated by Quiet Eye Advisors LLC, 228 Park Avenue South, New York, NY 10003.
Privacy, security, or data-rights questions: info@quieteyegroup.com. Also see the Terms of Use.