minuted.
§

The legal bit.

Privacy, terms and recording consent in full. The short version: your minutes are yours, we do not train on your data, and Minuted never records in secret.

Privacy policy

Last updated 5 August 2026

What we collect

Your account email, your name if you give one, subscription status, and minute-usage totals for billing. We do not collect crash or diagnostic reports: if Minuted closes unexpectedly on Android, the app shows you what Android recorded about it so you can include it in a bug report if you want to, and that stays on your device unless you send it yourself. We do not run analytics or advertising trackers, and there is no third-party ad SDK in the app. If you joined the pre-launch mailing list, we hold your email address, and your name if you gave one, with Resend for that purpose only — no account is created, nothing is stored on our own servers, and every message carries a one-click unsubscribe. Your meeting audio, transcripts, and notes are yours — see below for how they're handled.

Who processes your data

We use a small number of sub-processors, each for one job:

In fully local mode, none of your meeting content reaches Anthropic or our servers at all.

How your meetings are processed

Google user data

Connecting Google Calendar grants Minuted read-only access to your events (calendar.readonly). We never create, change or delete anything in your calendar — we request no write access at all. We read only your primary calendar, only events between two hours ago and 36 hours ahead, and at most fifty of them.

We use it for one thing: showing your upcoming meetings in the app so you can start a recording against the right one, with the title and attendees pre-filled.

That list of events is read on your device, held only while the app is running, and discarded when you disconnect your calendar. We never store a copy of your calendar.

When you record a meeting against an event, that event's title, attendee names and its identifier are saved with that meeting, so your minutes stay correct afterwards. Two things follow, and we would rather say them plainly than let you discover them:

Minuted's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Specifically, we do not use Google user data to train AI models, we do not sell or transfer it, we do not use it for advertising, and no human reads it except where you have asked us to for support or where the law requires it. You can disconnect Google Calendar at any time in Settings, or revoke access at myaccount.google.com/permissions.

How we protect your data

Google asked us to set this out explicitly for the calendar permission, and it is worth stating for everything else at the same time. Each claim below describes a mechanism that is in the product today, not an intention.

In transit. Every connection between the app, our servers and any sub-processor uses TLS. Our servers accept nothing over plain HTTP, and minuted.io sends HSTS so a browser will not try.

Calendar credentials never leave your device. The token Google issues when you connect your calendar is stored by your operating system's own secure storage — the Android Keystore, via encrypted shared preferences, and DPAPI on Windows — and it is never sent to us. It is deleted when you disconnect the calendar or delete the app.

Your calendar is not stored on our servers. Events are fetched by the app, held only in memory while it runs, and never written to our database. The single exception is the one described above: when you record a meeting against an event, that event's title, attendee names and identifier are saved with that meeting, and sync with it if you use cloud sync.

At rest. Account and synced text live in a Cloudflare D1 database, encrypted at rest by Cloudflare. Every row is scoped to one account and is only reachable with that account's session. Passwords are stored as PBKDF2-SHA-256 hashes with 100,000 iterations and a per-user salt — we cannot read yours. Session tokens are stored hashed, so a leaked database row cannot be replayed as a login.

Audio. Recordings never leave your device on any plan, so there is no server-side copy to protect. That is the strongest protection we can offer and it is the reason the app is built the way it is.

Access. Administrative endpoints require a separate secret that no customer holds, and the credentials our servers use to reach sub-processors are held as encrypted secrets, never in the app or in our source code. No member of staff reads your meeting content except where you ask us to for support, or where the law requires it.

Retention. Deleting a meeting or your account removes the data, on your device and on our servers. Separately, a scheduled job deletes content older than twelve months. The short-lived rows created while connecting an integration are deleted as soon as the app collects the result, and swept daily in any case, so an abandoned connection does not leave a credential behind.

If you believe you have found a security problem, please write to hello@minuted.io — see our security page for what we hold and what we cannot.

What we never do

Deleting your data or your account

To delete a single meeting, and everything in it — notes, transcript, minutes, tasks and audio — open the meetings list, press the × on the meeting and confirm. There is a short undo window, after which it is removed from your device and, if you use cloud sync, from our servers. You do not need an account to do this and you do not need to delete your account.

To delete your whole account: open Minuted → Settings → your account card → Delete account, and type your email address to confirm. It takes effect immediately.

If you can't get into the app — you've uninstalled it, changed device, or lost access — email privacy@minuted.io from the address on the account and ask for deletion. We complete these within 30 days and confirm by email.

Deleting your account removes, permanently and without a recovery window:

Any active subscription is cancelled as part of the deletion. Three things survive it. Records Stripe must keep for financial and tax law (payment records, typically seven years). Our hosting provider's request logs, which hold no meeting content and identify an account only by an internal id — once the account is gone, that id refers to nothing. And your email address, kept with Resend on a suppressed list, explained just below. Recordings you exported or saved elsewhere yourself are outside our reach — delete those where they live.

Why we keep the address. It sounds like the opposite of deleting you, so here is the reasoning. If we erased it we would lose the record that you had asked not to be emailed — and nothing would then stop you being added back by a later signup, an import, or a mistake at our end. The next message you got from us would be one you had already refused. So the address stays in a state that cannot be mailed: unsubscribed, with your name cleared and removed from every list. It is there to keep us away from you, not to keep you.

If you would rather it were gone entirely, email hello@minuted.io and we will remove it — knowing that if you ever sign up again, nothing on our side will remember that you once said no.

If you test a pre-release build for us

Testers are sometimes sent a build and an acceptance script, and a form to record what happened. That form asks for an email address so we can come back with questions, and for notes about anything that went wrong. Bug reports often carry more than people intend — a meeting title, a colleague's name, what the meeting was about — so treat that box as something we will read, and leave out anything you would not want us to see.

We keep the address and the report for twelve months, then delete them. They are used to fix the thing you reported and nothing else: testers are not added to any mailing list, and taking part does not change anything about your account. Ask at any time and we will delete your report sooner.

Your rights

Under UK GDPR you can request access to, correction of, or deletion of your personal data at any time by emailing privacy@minuted.io.

Terms of service

Last updated 5 August 2026

The service

Minuted provides meeting capture, transcription, AI-generated minutes, and related features on supported platforms. Beta features are provided as-is and may change.

Your responsibilities

You're responsible for complying with recording laws that apply to you, for obtaining any consent required from meeting participants, and for the content you record. Don't use Minuted to record people unlawfully or covertly — that violates these terms and gets your account closed.

Subscriptions & minutes

Paid plans renew automatically until cancelled and are billed through Stripe. Plan changes are prorated in both directions. Cancelling stops the next renewal rather than ending the plan there and then: you keep the plan, and its full allowance, until the end of the period you have already paid for, and no partial refund is due — because the allowance is a quantity you can spend on day one, not something that accrues by the day. This does not affect your statutory rights, including the 14-day right to cancel a new subscription under the Consumer Contracts Regulations; email hello@minuted.io and we will deal with it. Every plan has a stated monthly allowance of cloud minutes, which resets on the 1st of each month: unused minutes do not roll over into the next month. If you upgrade mid-month, minutes you have not used move onto the new plan — but they are minutes for that period only, and the reset on the 1st clears them along with everything else. Carried minutes never survive more than the billing period you moved in. Local processing is not metered on any plan. Prices may change with at least 30 days' notice before your next renewal.

Content & AI output

You own your notes, transcripts and minutes. AI-generated minutes are drafts produced from your content — review them before relying on them; transcription and summarisation can make mistakes.

Liability

To the extent permitted by law, Minuted is provided without warranties, and our liability is limited to the amount you've paid us in the twelve months before a claim.

Contact

Questions about any of this: hello@minuted.io.