The legal bit.
Privacy, terms and recording consent in full. The short version: your minutes are yours, we do not train on your data, and Minuted never records in secret.
Privacy policy
Last updated 5 August 2026
What we collect
Your account email, your name if you give one, subscription status, and minute-usage totals for billing. We do not collect crash or diagnostic reports: if Minuted closes unexpectedly on Android, the app shows you what Android recorded about it so you can include it in a bug report if you want to, and that stays on your device unless you send it yourself. We do not run analytics or advertising trackers, and there is no third-party ad SDK in the app. If you joined the pre-launch mailing list, we hold your email address, and your name if you gave one, with Resend for that purpose only — no account is created, nothing is stored on our own servers, and every message carries a one-click unsubscribe. Your meeting audio, transcripts, and notes are yours — see below for how they're handled.
Who processes your data
We use a small number of sub-processors, each for one job:
- Anthropic — receives your transcript and typed notes to generate enhanced minutes and answer your questions about a meeting. Anthropic does not train on this content.
- Cloudflare — hosts our servers and the database holding your account and synced text.
- Stripe — payments. We never see or store your card details.
- Resend — sends account email (welcome, password reset, plan changes), and holds the pre-launch mailing list if you joined it.
- Todoist — only if you connect it, and only for the tasks you choose to push.
- monday.com — only if you connect it: the tasks you choose to push, and the write-up itself if you send it to a board.
- Notion — only if you connect it, and only the write-up for the meetings you choose to file: the title, the date, who was in the room, and the minutes themselves.
In fully local mode, none of your meeting content reaches Anthropic or our servers at all.
How your meetings are processed
- Audio is captured and transcribed on your device, on every platform and every plan. It is never uploaded — there is no route in the app that sends audio anywhere, so this is not a setting you have to find.
- The write-up is where the choice is. In fully local mode it runs on-device too. Otherwise your transcript and typed notes are sent to our AI provider to generate the enhanced note and to answer your questions. These requests are processed and not retained for training.
- Notes, transcripts and tasks are stored on your device. With an account, text is synced via our servers so your devices stay in step; audio never leaves your device.
- On Android we switch off the operating system's automatic backup, so your recordings and transcripts are not copied to Google Drive. That is deliberate, and it has a cost worth knowing: what is on a device stays on that device. If you lose the phone or move to a new one, local recordings do not come back. Text follows your account if you use cloud sync; audio does not.
- Audio retention is yours to set — 30, 90 or 365 days, or forever — with automatic clean-up. Transcripts are always kept, and audio for an un-transcribed meeting is never purged.
- If you connect Google or Outlook calendar, we read your events to show upcoming meetings and pre-fill recordings. If you connect Todoist or monday.com, we create and sync the tasks you choose to push — and, on monday, the write-up itself if you send it to a board. If you connect Notion, we create a page for each meeting you choose to file. All of them use OAuth and can be disconnected at any time.
Google user data
Connecting Google Calendar grants Minuted read-only access to your events (calendar.readonly). We never create, change or delete anything in your calendar — we request no write access at all. We read only your primary calendar, only events between two hours ago and 36 hours ahead, and at most fifty of them.
We use it for one thing: showing your upcoming meetings in the app so you can start a recording against the right one, with the title and attendees pre-filled.
That list of events is read on your device, held only while the app is running, and discarded when you disconnect your calendar. We never store a copy of your calendar.
When you record a meeting against an event, that event's title, attendee names and its identifier are saved with that meeting, so your minutes stay correct afterwards. Two things follow, and we would rather say them plainly than let you discover them:
- If you use cloud sync, those details sync to your own account on our servers along with the rest of the meeting, so your meetings match across your devices. They are visible only to you, and they are deleted when you delete the meeting or your account.
- If you use cloud AI, the attendee names from that meeting are sent to our AI provider — they are what lets it label who said what in the transcript, and address a follow-up email to the right people. Nothing else from your calendar is sent. In fully local mode nothing is sent anywhere.
Minuted's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Specifically, we do not use Google user data to train AI models, we do not sell or transfer it, we do not use it for advertising, and no human reads it except where you have asked us to for support or where the law requires it. You can disconnect Google Calendar at any time in Settings, or revoke access at myaccount.google.com/permissions.
How we protect your data
Google asked us to set this out explicitly for the calendar permission, and it is worth stating for everything else at the same time. Each claim below describes a mechanism that is in the product today, not an intention.
In transit. Every connection between the app, our servers and any sub-processor uses TLS. Our servers accept nothing over plain HTTP, and minuted.io sends HSTS so a browser will not try.
Calendar credentials never leave your device. The token Google issues when you connect your calendar is stored by your operating system's own secure storage — the Android Keystore, via encrypted shared preferences, and DPAPI on Windows — and it is never sent to us. It is deleted when you disconnect the calendar or delete the app.
Your calendar is not stored on our servers. Events are fetched by the app, held only in memory while it runs, and never written to our database. The single exception is the one described above: when you record a meeting against an event, that event's title, attendee names and identifier are saved with that meeting, and sync with it if you use cloud sync.
At rest. Account and synced text live in a Cloudflare D1 database, encrypted at rest by Cloudflare. Every row is scoped to one account and is only reachable with that account's session. Passwords are stored as PBKDF2-SHA-256 hashes with 100,000 iterations and a per-user salt — we cannot read yours. Session tokens are stored hashed, so a leaked database row cannot be replayed as a login.
Audio. Recordings never leave your device on any plan, so there is no server-side copy to protect. That is the strongest protection we can offer and it is the reason the app is built the way it is.
Access. Administrative endpoints require a separate secret that no customer holds, and the credentials our servers use to reach sub-processors are held as encrypted secrets, never in the app or in our source code. No member of staff reads your meeting content except where you ask us to for support, or where the law requires it.
Retention. Deleting a meeting or your account removes the data, on your device and on our servers. Separately, a scheduled job deletes content older than twelve months. The short-lived rows created while connecting an integration are deleted as soon as the app collects the result, and swept daily in any case, so an abandoned connection does not leave a credential behind.
If you believe you have found a security problem, please write to hello@minuted.io — see our security page for what we hold and what we cannot.
What we never do
- Train AI models on your notes, transcripts, or audio.
- Sell or share your content with advertisers or data brokers.
- Record without a visible indicator.
Deleting your data or your account
To delete a single meeting, and everything in it — notes, transcript, minutes, tasks and audio — open the meetings list, press the × on the meeting and confirm. There is a short undo window, after which it is removed from your device and, if you use cloud sync, from our servers. You do not need an account to do this and you do not need to delete your account.
To delete your whole account: open Minuted → Settings → your account card → Delete account, and type your email address to confirm. It takes effect immediately.
If you can't get into the app — you've uninstalled it, changed device, or lost access — email privacy@minuted.io from the address on the account and ask for deletion. We complete these within 30 days and confirm by email.
Deleting your account removes, permanently and without a recovery window:
- Your account record: email, name, password hash, and any linked Google sign-in.
- Every meeting, note, transcript and task synced to our servers.
- Your usage totals and billing history against the account, and any connected Todoist, monday.com or Notion authorisation.
- Everything Minuted has stored on the device you delete from, including local audio.
Any active subscription is cancelled as part of the deletion. Three things survive it. Records Stripe must keep for financial and tax law (payment records, typically seven years). Our hosting provider's request logs, which hold no meeting content and identify an account only by an internal id — once the account is gone, that id refers to nothing. And your email address, kept with Resend on a suppressed list, explained just below. Recordings you exported or saved elsewhere yourself are outside our reach — delete those where they live.
Why we keep the address. It sounds like the opposite of deleting you, so here is the reasoning. If we erased it we would lose the record that you had asked not to be emailed — and nothing would then stop you being added back by a later signup, an import, or a mistake at our end. The next message you got from us would be one you had already refused. So the address stays in a state that cannot be mailed: unsubscribed, with your name cleared and removed from every list. It is there to keep us away from you, not to keep you.
If you would rather it were gone entirely, email hello@minuted.io and we will remove it — knowing that if you ever sign up again, nothing on our side will remember that you once said no.
If you test a pre-release build for us
Testers are sometimes sent a build and an acceptance script, and a form to record what happened. That form asks for an email address so we can come back with questions, and for notes about anything that went wrong. Bug reports often carry more than people intend — a meeting title, a colleague's name, what the meeting was about — so treat that box as something we will read, and leave out anything you would not want us to see.
We keep the address and the report for twelve months, then delete them. They are used to fix the thing you reported and nothing else: testers are not added to any mailing list, and taking part does not change anything about your account. Ask at any time and we will delete your report sooner.
Your rights
Under UK GDPR you can request access to, correction of, or deletion of your personal data at any time by emailing privacy@minuted.io.
Recording consent
Minuted is a minute-taking tool, not a surveillance tool, and it's built to keep you on the right side of both the law and common courtesy.
- A recording indicator is visible on your device for the entire duration of any capture, on every platform. On Android, recording additionally uses the system microphone permission and Android's own microphone indicator, which cannot be disabled.
- Recording laws differ between countries and situations. Telling people you're recording is often legally required and always good practice. If you're unsure, ask everyone on the call — it takes five seconds.
Terms of service
Last updated 5 August 2026
The service
Minuted provides meeting capture, transcription, AI-generated minutes, and related features on supported platforms. Beta features are provided as-is and may change.
Your responsibilities
You're responsible for complying with recording laws that apply to you, for obtaining any consent required from meeting participants, and for the content you record. Don't use Minuted to record people unlawfully or covertly — that violates these terms and gets your account closed.
Subscriptions & minutes
Paid plans renew automatically until cancelled and are billed through Stripe. Plan changes are prorated in both directions. Cancelling stops the next renewal rather than ending the plan there and then: you keep the plan, and its full allowance, until the end of the period you have already paid for, and no partial refund is due — because the allowance is a quantity you can spend on day one, not something that accrues by the day. This does not affect your statutory rights, including the 14-day right to cancel a new subscription under the Consumer Contracts Regulations; email hello@minuted.io and we will deal with it. Every plan has a stated monthly allowance of cloud minutes, which resets on the 1st of each month: unused minutes do not roll over into the next month. If you upgrade mid-month, minutes you have not used move onto the new plan — but they are minutes for that period only, and the reset on the 1st clears them along with everything else. Carried minutes never survive more than the billing period you moved in. Local processing is not metered on any plan. Prices may change with at least 30 days' notice before your next renewal.
Content & AI output
You own your notes, transcripts and minutes. AI-generated minutes are drafts produced from your content — review them before relying on them; transcription and summarisation can make mistakes.
Liability
To the extent permitted by law, Minuted is provided without warranties, and our liability is limited to the amount you've paid us in the twelve months before a claim.
Contact
Questions about any of this: hello@minuted.io.