Privacy Policy
dot+ records and analyzes your meetings. This policy explains what data the app
handles, what leaves your device, and what stays on it — most processing happens on your device.
Summary
- Your recordings are captured and stored on your device.
- To produce summaries, action items, and notes, each recording's audio is sent to
Google's Vertex AI (Gemini) for analysis.
- Transcription and speaker labeling run on your device, or — on app versions
where we have enabled cloud transcription — with our transcription provider
AssemblyAI, which receives the recording's audio and returns the transcript.
- We use Firebase for app integrity (App Check) and to give each install an
account identifier when you sign in with Apple.
- Google Calendar is optional. If you connect it, your calendars and events stay on your
device; they are not sent to our AI or transcription providers and never used to train AI models
(see Google Calendar and Google sign-in).
- We use Sentry for crash and performance diagnostics. It receives no meeting
content — no audio, transcripts, or meeting titles — and its reports are not linked to your account.
- iCloud sync is optional and off by default. If you turn it on, your meetings,
notes, contacts, and recordings are copied to your own iCloud account so they appear
on your other Apple devices. They go to Apple, not to us.
- We do not use analytics or advertising SDKs, track you across other apps or
websites, or sell or share your data with data brokers.
- You can delete everything from within the app at any time
(Settings → Edit Profile → Delete User).
What we process, and where
Stays on your device
- Audio recordings of your meetings.
- On-device transcripts produced by Apple Speech or Apple's SpeechAnalyzer.
- Speaker diarization (who spoke when), computed on-device — unless cloud
transcription is enabled for your app version, in which case AssemblyAI performs it (see below).
- Your knowledge base of processed meetings, stored encrypted on the device.
- Contacts you import or create — used only to label speakers; not transmitted off the device.
- Location (optional) — an approximate location tag stored with the meeting on your device.
Sent off your device
- Audio + working transcript → Google Vertex AI (Gemini). Sent so Gemini can
generate the summary, key points, action items, and knowledge document. Processed to return your
results under Google Cloud's data-processing terms; used only to provide the app's functionality.
- Your question + the notes of relevant meetings → Google Vertex AI (Gemini), when you use Ask.
When you ask dot+ a question about your meetings, the question and the notes of the meetings it
needs to answer are sent to Gemini to write the answer, under the same terms.
- Audio → AssemblyAI (cloud transcription and speaker labeling), when enabled.
On app versions where we have turned cloud transcription on, the recording's audio is sent — through
a proxy we operate, so our provider key is never in the app — to AssemblyAI in the
United States, which returns the transcript and speaker labels. Processed only to
return your transcript, under AssemblyAI's data-processing terms; never for advertising or tracking.
When cloud transcription is off, this step happens entirely on your device and no audio is sent to
AssemblyAI.
- Meetings, notes, contacts & recordings → your iCloud account (Apple), when you turn
on iCloud Sync. Off by default, and set separately on each device (Settings → iCloud). When
it is on, dot+ keeps your library in the private database of your own iCloud account, so the same
meetings appear on your iPhone and your Mac. Apple handles it under Apple's iCloud terms; we have no
access to it, and it is not shared with Google, AssemblyAI, or anyone else. Recordings count against
your iCloud storage. Deleting a meeting on one device deletes it on the others.
- App integrity & identity → Firebase (Google). App Check attests requests come
from a genuine copy of the app; Authentication issues an account identifier (with
your name and email, as Sign in with Apple shares them).
- Crash & performance diagnostics → Sentry. When the app crashes, freezes, or
hits an error, Sentry receives a technical report: device model, OS and app version, the code path
that failed, and timing measurements. It is configured to exclude your content — audio, transcripts,
meeting titles, and file names are removed before anything is sent — and reports are not linked to
your account identifier. Screen recording (session replay) is never enabled.
We do not run analytics or advertising SDKs, and the app's analytics collection is disabled. The crash
and performance diagnostics described above are the only telemetry the app sends.
Sign in with Apple
If you sign in with Apple, Apple may share your name and email with the app so it can create your
account. You can choose to hide your email (Apple relays it). You can also sign in with Google (see
below).
Google Calendar and Google sign-in
Connecting a Google account is optional. If you connect one, dot+ asks Google for these permissions:
- See the list of your calendars (
calendar.calendarlist.readonly) — so you
can choose which ones dot+ shows.
- See and create events (
calendar.events) — to show your upcoming Google
events next to your device calendar, and, only when you tap to schedule a meeting from dot+, to create
the event with its guests and a Google Meet link in the calendar you pick. dot+ only deletes an event
when you ask it to.
- Your name, email, and profile picture (
openid, email,
profile) — only if you use Continue with Google to sign in, so dot+ can create your
account.
What dot+ reads
The list of your calendars, and for each event: title, time, location, description, guests (names and
emails), the Meet link, and whether it repeats.
Where it is stored
On your device only. Your Google sign-in tokens are kept in the device Keychain; calendars and events
are cached on the device so the calendar opens instantly. dot+ has no server that stores them, and they are
not included in iCloud Sync.
Who else sees it
No one, with one exception you control. When you save a recording made during a calendar event, dot+
suggests the event's title as the meeting's title. If you keep it, that title is part of the meeting, and it
goes to Google Vertex AI (Gemini) with the meeting's notes when you use Ask. Guests, emails, descriptions,
locations, and all other calendar data are never sent to our AI or transcription providers (Google Vertex
AI / Gemini, AssemblyAI). Google calendar data is not used for advertising, not sold, and not used to train
any AI model.
How to disconnect
In dot+, open Calendars and choose Disconnect. This deletes the tokens and the cached calendar data from
the device. You can also remove dot+'s access at any time at
myaccount.google.com/permissions.
Limited Use
dot+'s use and transfer to any other app of information received from Google APIs will adhere to the
Google API Services User Data
Policy, including the Limited Use requirements.
Permissions
- Microphone — to record meetings.
- Speech Recognition — for on-device transcription.
- Contacts — to link speakers to people you know (stays on device).
- Location (optional) — to tag a recording's location.
- Calendars (optional) — to show and prepare for upcoming meetings.
- Google account (optional) — see Google Calendar and Google sign-in.
- Face ID / passcode (optional) — to lock the app.
You can change or revoke any of these in iOS Settings.
Data retention & deletion
Your data lives on your device — dot+ has no server that stores your meetings. If you turn on iCloud
Sync, a copy also lives in your own iCloud account; turning the toggle off stops further syncing, and
deletions — a single meeting or Delete User — travel to iCloud and to your other devices.
Deleting a meeting
removes its recording, transcript, and knowledge document. Delete User (Settings →
Edit Profile) permanently erases all meetings, recordings, contacts, knowledge base, and account
credentials from the device. Audio sent to Google for a given analysis is processed to return your
results and is subject to Google Cloud's retention terms; we do not retain it on a server of our own.
Audio sent to AssemblyAI for transcription, on versions where cloud transcription is enabled, is likewise
processed to return your transcript and is subject to AssemblyAI's retention terms.
Crash and performance reports are held by Sentry under its retention terms; because they contain no
meeting content and are not linked to your account, deleting your data in the app does not remove them.
Age requirement
dot+ is not intended for anyone under 16. We do not knowingly collect data from users under 16.
Where your region sets a higher minimum age for consent to data processing, that age applies.
Changes
We may update this policy as the app evolves. Material changes will be reflected here with a new effective date.