Security and data handling
Transcription runs on our own servers
Your audio and video are transcribed on hardware we own and operate. The recordings are not sent to an outside transcription service.
Minutes drafting uses OpenAI’s API
Speaker naming and minutes drafting send the transcript text to OpenAI’s API. The recording itself is never sent.
Storage is on Cloudflare
Recordings, transcripts and minutes are stored on Cloudflare R2 and D1. Your data is encrypted in transit and at rest.
Who can see what
Access is per person and per organization
Your organization is separate
Files, transcripts and minutes belong to your organization. No other customer can reach them.
Roles, not a shared login
Each person has their own account and role, so you decide who can upload, edit and administer.
Private folders
A folder can be kept private to its owner. Organization administrators can still reach it, so your organization never loses access to its own records.
Administrative actions are logged
Changes made by administrators are written to an audit log you can review.
Passwords
Stored as bcrypt hashes at cost 12. Nobody at Secure Minutes can read your password.
Repeated failed logins are throttled
After several failures from the same address, a bot check is required before another attempt.
Deleting things, and keeping them
Two different actions, deliberately
Deleting a recording is reversible for 90 days
Deleted recordings go to a recycle bin and can be restored for 90 days. After that the files are removed for good.
Your minutes are not on a timer
Archived transcripts and minutes are kept until your organization chooses to delete them. Nothing deletes them automatically.
Backups
Database backups are taken daily for data resilience. Recordings are stored in Cloudflare R2.
A question this page doesn’t answer?
If your IT or legal review needs something specific, ask and we’ll answer plainly.
30 days free. No credit card required.