Privacy Policy
v1.0 · Last updated May 24, 2026
Attesta records what you ask it to, transcribes it, and gives you back
a structured summary. This page describes exactly what data Attesta
handles, how, and on whose servers.
We wrote this from scratch against the actual code. It is not boilerplate.
If you find an inconsistency between this page and the app, write to
legal@attesta.cc.
The three load-bearing promises
- Audio capture, on your tap — never in the background.
- Audible signature tone — every recording begins with a clearly audible tone so anyone nearby knows.
- Private to your account — recordings stay tied to your account, are never shared, and are never used to train AI.
Every claim below either reinforces or constrains these three statements.
If we ever change them, this policy changes first.
What Attesta is
A paid iOS, iPadOS, and macOS app that:
- Records audio when you tap the Record button on your device.
- Uploads the recording to our backend for transcription and structured-summary generation.
- Returns the transcript and summary to your device.
- (Pro only) Keeps a server-side copy so the recording shows up on your other devices.
You sign in with Apple or Google. Sign-in is required to record because we
meter usage per account.
What we collect
Account information
- Your email address and display name from your sign-in provider (Apple or Google)
- An Attesta-internal account ID
- Your sign-in provider (Apple / Google)
Recording data
- The audio file of each recording you start
- The transcript produced from that audio
- The structured summary generated from that transcript (key topics, action items, decisions, open questions, people mentioned)
Device information (technical, no extra permissions required)
- Device model (e.g. “iPhone 16 Pro”)
- OS version
- Network type (cellular / WiFi)
- Free disk space — an indicator only, to know if a sync is feasible
- Battery level — an indicator only, to back off uploads when battery is low
We collect this to support you and to mitigate abuse. It is never shared
outside the service providers listed below.
Purchase information
- A receipt token from Apple’s StoreKit when you subscribe or top up minutes
- The number of minutes credited to your account
We do not see your credit card. Apple handles all payments.
What we don’t collect
- Your contacts
- Your calendar
- Your location
- Your photos
- Your microphone, except when you actively tap Record
- Your screen
- Anything we don’t list above
What we never do
- Train AI models on your audio, transcripts, or insights. Not ours, not anyone else’s.
- Sell your data. Not to advertisers, not to data brokers, not in aggregate.
- Show ads. Attesta is paid; ads are not part of the business model.
- Capture in the background. Recording only starts when you tap Record. There is no always-on, lifelog, or ambient mode.
- Listen between recordings. The microphone is engaged only during an active session.
Service providers (sub-processors)
Attesta runs on third-party infrastructure. Each provider sees only the
data it needs for its part of the work. None of them train on your data
under our contracts with them.
| Provider | What they handle |
| Apple Inc. | Sign in with Apple, StoreKit subscriptions and in-app purchases, App Store distribution |
| Google LLC | Sign in with Google |
| Supabase Inc. | Our backend — Postgres database, authentication, audio file storage |
| Deepgram Inc. | Cloud speech-to-text — your audio is sent here for transcription |
| Anthropic PBC | The language model that turns your transcript into the structured summary |
| Cloudflare Inc. | Domain (attesta.cc), DNS, email routing for our public addresses |
If we add or change a provider, we update this list before the change
goes live in the app.
Where data lives
- Audio files (Pro only): Supabase Storage, US-East region
- Transcripts and structured summaries (Pro only): Supabase Postgres, US-East region
- Free recordings: nothing is retained server-side after transcription completes — only the transcript flows back to your device
- On your device: the local database holds every recording you’ve made on that device, regardless of tier
Retention
| Data | How long we keep it |
| Audio files (Pro) | Until you delete the recording, downgrade from Pro, or delete your account |
| Transcripts and summaries (Pro) | Same as above |
| Account profile | Until you delete your account |
| Purchase receipts | As long as required for accounting (typically 7 years per tax law) |
| Free recordings (server side) | Not retained |
If you downgrade from Pro to free, server-side audio files are deleted
within 30 days. The transcripts and insights on your device are unaffected.
Your rights
You can:
- Access every recording you’ve made — they’re already on your device in the app.
- Delete any recording from the app. If you were Pro at the time, the server copy is removed too.
- Delete your account from Account → Delete Account. Every server-side row associated with your account is cascade-deleted within 30 days. Your iOS subscription keeps renewing until you cancel it in Settings → Apple ID → Subscriptions.
If you’re in the EU/UK (GDPR), California (CCPA), India (DPDP), or
anywhere with similar rights, the rights above apply to you. You can also
write to legal@attesta.cc with any
specific request (data export, correction, restriction of processing). We
respond within 30 days.
Children
Attesta is not designed for users under 13. We do not knowingly collect
data from anyone under 13. If you believe a child is using Attesta,
write to legal@attesta.cc and we
will close the account and delete the data.
Changes
We will update this page when our behavior changes. The
“Last updated” date at the top is the source of truth.
Material changes will be announced in-app before they take effect.
Contact
legal@attesta.cc