Notelo
Privacy Policy
Last updated: September 28, 2026
This Privacy Policy explains what information Notelo collects when you use the Notelo website (notelo.ai), the Notelo AI Chrome extension, and the Notelo API (api.notelo.ai), how that information is used, and who processes it on our behalf.
1. Summary
- Notelo records audio only from a Google Meet tab, and only after you click Start recording in the extension. Recording stops when you click Stop recording or close the tab.
- When you stop, the recorded audio is sent to Notelo's servers and to our transcription provider, AssemblyAI, to produce a transcript.
- The transcript and basic meeting information are saved to your Notelo account. Notelo does not keep a copy of the audio after transcription.
- We do not sell your data, use it for advertising, or use analytics or tracking tools in the extension.
2. Information We Collect
Account information
You sign in with Google through Firebase Authentication. We receive and store your Google account's unique user ID, email address, display name, and profile photo URL. We store these in our database so we can associate meetings with your account.
Authentication information
To sign you in, the sign-in page at notelo.ai/auth/extension returns a Google sign-in credential to the extension, which exchanges it for a Firebase session. The extension then sends a short-lived Firebase ID token with each request to the Notelo API so we can verify who you are. The Firebase session is stored in the extension's local storage until you sign out, and a copy of the ID token is held in the browser's temporary session storage while a recording is being processed. Notelo never receives or stores your Google password.
Meeting audio
When you click Start recording, the extension captures the audio output of the current Google Meet tab, which is what you hear from other participants, and the audio from your microphone, so that your own voice is included in the transcript. This audio may include other participants' voices and statements. The microphone is used only while you are recording, including while you are muted in Google Meet, and is turned off when you stop. The two sources are combined into a single recording. Audio is held in memory in your browser while recording and is uploaded to the Notelo API over HTTPS when you stop. The extension does not capture video, your screen, or audio from any other tab. Google Meet does not show other participants that Notelo is recording, so you are responsible for telling them.
Transcripts
The text transcript produced from your recording is stored with the meeting in your Notelo account. A copy of your most recent transcript is also stored locally in the extension so it can be shown in the extension popup; you can remove it with the Clear button, and it is removed when you sign out.
Meeting metadata
For each recording we store: your user ID, a title ("Google Meet"), the platform, the recording status, the audio duration, the AssemblyAI transcript ID, any processing error message, and creation/update timestamps. The extension checks the tab address locally to confirm it is a Google Meet page but does not send the meeting link, meeting code, participant names, or calendar information to Notelo.
Information we do not collect
Notelo does not collect your browsing history, the content of other websites, keystrokes, location, payment information, or analytics/usage-tracking data.
3. How We Use Information
We use the information above only to:
- sign you in and verify requests to the Notelo API;
- capture the meeting audio you choose to record and transcribe it;
- save and show your meetings and transcripts to you;
- troubleshoot problems and protect the security of the service.
Notelo currently produces transcripts. It does not yet generate AI summaries, action items, or other insights, and it does not send your transcripts to any large language model provider. If we add these features, we will update this policy before doing so and will describe any additional providers involved.
4. Meeting Recording and Consent
Recording only starts when you click Start recording in the extension. It never starts automatically when you open Google Meet, sign in, or install the extension. While recording, the extension shows a "REC" badge on its toolbar icon and Chrome shows its own tab-capture indicator.
You are responsible for informing meeting participants and obtaining any consent required by applicable law and your organization's policies before recording or transcribing a meeting.
5. Service Providers and Where Data Is Processed
We share information only with the following providers, and only as needed to run Notelo:
- Google Firebase / Google Cloud — Firebase Authentication (sign-in) and Cloud Firestore (storage of your account information, meeting metadata, and transcripts).
- AssemblyAI — receives the recorded meeting audio from our servers and returns the transcript (speech-to-text, with speaker detection enabled). After the transcript is saved to your Notelo account, we ask AssemblyAI to delete its copy of the transcript. AssemblyAI's handling of data is also governed by its own terms and privacy policy.
- Vercel — hosts the notelo.ai website and the Notelo API, so meeting audio and API requests pass through Vercel's infrastructure while being processed.
We may also disclose information if required by law or to protect the rights, safety, and security of Notelo and its users.
6. Retention and Deletion
- Audio: the Notelo API writes the uploaded audio to a temporary file only while it is being sent to AssemblyAI, and deletes that file as soon as the request finishes. Notelo does not store meeting audio in its database or in cloud file storage.
- Transcripts, meeting metadata, and account information: kept in your Notelo account until you ask us to delete them.
- Extension data: kept in your browser until you sign out, clear it, or uninstall the extension.
To delete your account data, meetings, or transcripts, email us at the address below from the email address on your Notelo account. We will respond to your request and delete the requested data from Notelo's database.
7. Sale, Advertising, and Limited Use
Notelo does not sell user data and does not use it for advertising, marketing profiles, creditworthiness, or lending purposes. We do not transfer user data to third parties except as described in Section 5.
Notelo's use of information received from the Chrome extension complies with the Chrome Web Store User Data Policy, including its Limited Use requirements. Humans at Notelo do not read your transcripts unless you ask us to (for example, for support), it is necessary for security or abuse investigation, or it is required by law.
8. Security
Data is sent over HTTPS. Every API request must include a valid Firebase ID token, and meetings can only be read or modified by the account that created them. Server-side credentials, including the AssemblyAI API key, are never included in the extension. No method of transmission or storage is completely secure, but we work to protect your information.
9. Your Choices and Rights
You can choose not to record, stop a recording at any time, sign out, clear the local transcript, or uninstall the extension. You can contact us to request access to, correction of, export of, or deletion of your personal information. Depending on where you live, you may have additional rights under local law, and we will honor requests as required by applicable law.
10. Chrome Extension Permissions
- tabCapture — record the Google Meet tab's audio after you click Start recording.
- activeTab — when you open the extension, confirm the current tab is a Google Meet page. No access to other tabs or sites.
- offscreen — run audio recording and the sign-in frame in a hidden extension page.
- storage — keep your sign-in session, recording state, and your latest transcript in the browser.
The extension does not use content scripts and does not run on or read the content of the websites you visit.
11. Children
Notelo is not directed to children under 13, and we do not knowingly collect personal information from them.
12. Changes to This Privacy Policy
We will update this policy when Notelo's data practices change, and we will update the "Last updated" date above. If a change materially expands how we use your data, we will ask for your consent before applying it to your data.
13. Contact Us
For questions about this policy or to make a privacy request, contact us at:
jabo.byusa@gmail.com