What we collect when you use Ciev.ai, why, and what control you have over it.
Ciev.ai ("Ciev.ai", "we", "us") is operated by Saasflux Technologies LLP, a limited liability partnership registered in India. This policy explains how we handle personal data and customer content across the Ciev.ai web app, API, MCP (Model Context Protocol) server, and the Ciev Recorder browser extension (together, the "Service").
Ciev.ai is a business tool: organizations use it to ingest recordings of their own meetings (engineering reviews, onboarding calls, technical interviews) and make the content searchable for their team and their coding agents. If your organization invited you as a member, your organization's admin controls your access and content — see "If you were added by an organization" below.
vmcp_session cookie after sign-in, and (for OAuth-based sign-in or connector flows) a short-lived vmcp_oauth_state cookie during the handshake. Both are functional, not tracking, cookies.To make a recording searchable, we generate and store:
We log product usage at the organization and user level — logins, searches, ingestion volume, agent/MCP tool calls, and report generation — so we can operate the Service, debug problems, and understand what's actually useful. This is operational telemetry, not sold or shared for advertising.
Billing is handled by Dodo Payments, our merchant of record. We never see or store your card details — Dodo shares back only what we need to manage your subscription (plan, status, invoice history).
We do not sell personal data or customer content, and we do not use your recordings or transcripts to train any AI model outside of generating your organization's own search index and reports.
Transcription, OCR, and summarization are performed by third-party AI infrastructure we call on your organization's behalf — currently Amazon Web Services (Transcribe, Textract, and Bedrock-hosted foundation models). Your content is sent to these providers only to produce the outputs described above (transcript, captions, summaries) and is not used by us or, per AWS's own terms, by AWS to train their models.
Most Ciev.ai infrastructure — including your stored recordings, derived data, and database — is hosted in AWS's ap-south-1 (Mumbai) region. AI model inference on Bedrock currently runs in AWS's us-east-1 (N. Virginia) region, meaning content is transiently transmitted there for processing. See "International data transfers" below.
Ciev.ai exposes an MCP server so you can connect a coding agent — Claude, Claude Code, Claude Desktop, or any other MCP-compatible client — directly to your organization's indexed meeting content. This connection is something you deliberately set up, using your own API key or an OAuth consent flow:
Ciev Recorder is our Chrome extension for recording meetings you take part in. It only records when you tell it to: when you press Record (in the meeting, from its icon, or with its keyboard shortcut), or on a meeting site where you have turned on auto-record yourself.
The use of information received from Chrome APIs adheres to the Chrome Web Store User Data Policy, including its Limited Use requirements.
We share data only with the infrastructure and service providers ("subprocessors") needed to run Ciev.ai, and with parties you explicitly connect:
| Provider | Purpose | Data involved |
|---|---|---|
| Amazon Web Services | Hosting, storage (S3/RDS), transcription, OCR, AI model inference, transactional email (SES) | All stored content and derived data |
| Dodo Payments | Billing, merchant of record | Billing contact, subscription/plan data — no card data reaches us |
| Zoom / Google / Microsoft | Fetching recordings your organization authorizes via OAuth | Recording metadata and file access, scoped to what you authorize |
| Anthropic (or another MCP client provider) | Only if you connect a coding agent, per §4 | Content your agent retrieves, at your request |
| Glean | Only for organizations that opt in to the enterprise search push connector | Indexed content pushed into your org's Glean instance |
We do not sell data to data brokers or advertisers, and we disclose personal data to government or legal authorities only when legally required to.
We're based in India and store your data primarily in AWS's Mumbai (ap-south-1) region. As noted in §3, AI model inference currently runs in AWS's us-east-1 (United States) region, so content is transiently processed there. If you or your organization are located outside India, using the Service necessarily involves transferring data to India (and, for inference, briefly to the United States). We rely on our subprocessors' own compliance frameworks (AWS, Dodo) for these transfers and will update this section if that architecture changes.
No system is perfectly secure; if we become aware of a breach affecting your data, we'll notify affected organizations without undue delay.
If you're located in India, you have rights under the Digital Personal Data Protection Act, 2023 as a Data Principal — including the right to access, correct, or erase your personal data, and to withdraw consent. If you're located in the EU/UK or elsewhere with similar data-protection law, we'll honor equivalent access, correction, deletion, and portability requests. Contact us at contact@ciev.ai to exercise any of these.
Note that if you're a member of an organization on Ciev.ai rather than the account holder, some requests (e.g. deleting a meeting recording) may need to go through your organization's admin, since they control that content — see below.
Ciev.ai is provided to organizations, who act as the "controller" of the meeting content they choose to ingest — including any recordings that include you as a participant. We act as their processor. If you appear in a recording ingested by an organization you're not the admin of, please raise access or deletion requests with that organization first; we'll assist them in fulfilling it.
We use only functional cookies — vmcp_session for authentication and
vmcp_oauth_state during OAuth handshakes — plus a localStorage
entry for your light/dark theme preference. We don't run third-party advertising or
cross-site tracking cookies.
Ciev.ai is a business tool and is not directed at, or knowingly used by, children under 18.
We'll update the "Effective" date above when this policy changes, and for material changes we'll notify organization admins by email.
For privacy questions, data requests, or grievances under applicable Indian law:
Grievance Officer — Saasflux Technologies LLP
Email: contact@ciev.ai
Jurisdiction: Delhi, India
See also our Terms of Service.