Privacy policy
Recap records conversations you choose to record, transcribes them, and writes summaries and action items. Your recordings and notes are yours. We use them only to provide the service to you, and you can delete everything at any time from inside the app.
This policy explains what HM Verge Consulting (“we”) collects when you use the Recap apps for iPhone, Android and Apple Watch, why we collect it, who processes it on our behalf, and the choices you have.
1. What we collect
Account
- Email address. Sign-in is by a one-time code sent to your email. There are no passwords and no third-party login providers.
- Profile and settings. An optional display name, your time zone (used to resolve due dates such as “by Friday”), and preferences such as transcription language, audio retention period, appearance, Wi-Fi-only uploads and whether to show a consent reminder when a recording starts.
Content you create
- Audio recordings you make in the app, on your watch, or import from another app or the share sheet.
- Transcripts with speaker labels, and the speaker names you assign.
- Summaries and action items generated from the transcript, plus any edits, completions, due dates and owners you set.
- Questions you ask in “Ask your notes” and the answers, kept as chat history so you can return to them.
- Organisation such as note titles, folders, favourites and flags you add while recording.
- Search data. Transcript excerpts are converted into numeric embeddings so that questions can search across your notes. Embeddings are derived from your content and are deleted with it.
Device and diagnostics
- Push notification token, so we can tell you when a recap is ready.
- Crash reports. If the app crashes we may receive a stack trace, app version, OS version and device model, tied to an opaque user identifier rather than your email.
- Usage analytics. Product events such as “recording started” or “recap shared”, tied to the same opaque identifier. We do not record your screen or capture the contents of your notes in analytics.
- Usage metering. The number of minutes transcribed each month, to enforce the plan limits described in the Terms.
Permissions we ask for
| Permission | Why |
|---|---|
| Microphone | To record conversations you start. Recording never begins on its own. |
| Notifications | To tell you when a recap is ready, and on Android to show the required recording notification. |
| Calendar and Reminders | Only if you choose to add an action item to your calendar or reminders. We do not read your events. |
| Files | Only when you import an audio file. We access the file you pick and nothing else. |
2. How we use it
- To transcribe, summarise and extract action items from your recordings.
- To sync your notes between your phone, your watch and any other device you sign in on.
- To answer questions you ask about your notes.
- To send you the emails and notifications needed to sign in and to use the service.
- To enforce monthly usage limits and keep the service running.
- To find and fix crashes and to understand which features are used.
We do not sell your data, show advertising, or use your recordings, transcripts or notes to train AI models.
3. Who processes your data
We rely on a small number of providers to run the service. Each one receives only what it needs, processes it under a contract with us, and is not permitted to use your content for its own purposes.
| Provider | What it does | What it receives |
|---|---|---|
| Supabase | Database, file storage, sign-in and server functions | Everything listed in section 1, stored in private, access-controlled buckets and tables |
| Deepgram | Speech-to-text with speaker identification | Your audio recordings, for the duration of transcription |
| OpenAI | Summaries, action items, answers to your questions, and search embeddings | Transcript text and your questions. No audio. |
| Expo | Push notification delivery | Your push token and the notification text (for example “Your recap is ready”) |
| Sentry | Crash reporting | Crash diagnostics and an opaque user identifier |
| PostHog | Product analytics | Feature usage events and an opaque user identifier |
We may also disclose data when the law requires it, or to protect the rights and safety of our users and the service. If the company is sold or merged, your data may transfer to the new owner under this same policy.
4. How long we keep it
- Audio recordings are deleted automatically after the retention period you choose in Settings. The default is 30 days. Transcripts and summaries are not affected.
- Transcripts, summaries, action items and chat history are kept until you delete the note or your account.
- A local copy of your notes is cached on your device so the app works offline. It is removed when you sign out, clear the cache in Settings, or uninstall the app.
- Crash reports and analytics are retained for up to 90 days.
- Backups of our database may hold deleted data for up to 30 days before they are overwritten.
5. Your choices and rights
- Export. Any note can be shared as PDF, Markdown or plain text from inside the app.
- Delete a note. Deleting a note removes its recording, transcript, summary, action items and embeddings.
- Delete your account. Settings → Account → Delete my account removes every note and your account immediately. See Delete your account for details and for how to request deletion without the app.
- Retention. Choose how long audio is kept in Settings → Retention.
- Permissions. You can revoke microphone, calendar and notification access in your device settings at any time. Recording will not work without the microphone.
Depending on where you live you may also have rights to access, correct, port or restrict the processing of your personal information, and to complain to a data protection authority. To exercise any of these, email support@recap.app from the address you sign in with. We will respond within 30 days.
6. Recording other people
7. Security
Data travels over encrypted connections. Recordings and notes are stored in private storage that only your signed-in account can read, enforced by row-level access rules on the server. Your session is stored in your device’s secure keychain or keystore. No system is perfectly secure; if we learn of a breach affecting your data we will notify you as the law requires.
8. International transfers
Our providers operate in the United States and other countries. Where required, we rely on contractual safeguards to transfer your data there.
9. Children
Recap is not directed at children under 13 and we do not knowingly collect their data. If you believe a child has created an account, contact us and we will delete it.
10. Changes
If we make a material change to this policy we will update the date above and let you know in the app or by email before it takes effect.
11. Contact
HM Verge Consulting
support@recap.app