← Ciev.ai

Privacy Policy

What we collect when you use Ciev.ai, why, and what control you have over it.

Effective 26 September 2026 · Published by Saasflux Technologies LLP

Ciev.ai ("Ciev.ai", "we", "us") is operated by Saasflux Technologies LLP, a limited liability partnership registered in India. This policy explains how we handle personal data and customer content across the Ciev.ai web app, API, MCP (Model Context Protocol) server, and the Ciev Recorder browser extension (together, the "Service").

Ciev.ai is a business tool: organizations use it to ingest recordings of their own meetings (engineering reviews, onboarding calls, technical interviews) and make the content searchable for their team and their coding agents. If your organization invited you as a member, your organization's admin controls your access and content — see "If you were added by an organization" below.

1. Data we collect

Account & organization data

Content you or your organization provide

Data we derive from your content

To make a recording searchable, we generate and store:

Usage & telemetry data

We log product usage at the organization and user level — logins, searches, ingestion volume, agent/MCP tool calls, and report generation — so we can operate the Service, debug problems, and understand what's actually useful. This is operational telemetry, not sold or shared for advertising.

Payment data

Billing is handled by Dodo Payments, our merchant of record. We never see or store your card details — Dodo shares back only what we need to manage your subscription (plan, status, invoice history).

2. How we use this data

We do not sell personal data or customer content, and we do not use your recordings or transcripts to train any AI model outside of generating your organization's own search index and reports.

3. How AI/ML processing works

Transcription, OCR, and summarization are performed by third-party AI infrastructure we call on your organization's behalf — currently Amazon Web Services (Transcribe, Textract, and Bedrock-hosted foundation models). Your content is sent to these providers only to produce the outputs described above (transcript, captions, summaries) and is not used by us or, per AWS's own terms, by AWS to train their models.

Most Ciev.ai infrastructure — including your stored recordings, derived data, and database — is hosted in AWS's ap-south-1 (Mumbai) region. AI model inference on Bedrock currently runs in AWS's us-east-1 (N. Virginia) region, meaning content is transiently transmitted there for processing. See "International data transfers" below.

4. Connecting a coding agent (MCP)

Ciev.ai exposes an MCP server so you can connect a coding agent — Claude, Claude Code, Claude Desktop, or any other MCP-compatible client — directly to your organization's indexed meeting content. This connection is something you deliberately set up, using your own API key or an OAuth consent flow:

5. The Ciev Recorder browser extension

Ciev Recorder is our Chrome extension for recording meetings you take part in. It only records when you tell it to: when you press Record (in the meeting, from its icon, or with its keyboard shortcut), or on a meeting site where you have turned on auto-record yourself.

The use of information received from Chrome APIs adheres to the Chrome Web Store User Data Policy, including its Limited Use requirements.

6. Who we share data with

We share data only with the infrastructure and service providers ("subprocessors") needed to run Ciev.ai, and with parties you explicitly connect:

ProviderPurposeData involved
Amazon Web ServicesHosting, storage (S3/RDS), transcription, OCR, AI model inference, transactional email (SES)All stored content and derived data
Dodo PaymentsBilling, merchant of recordBilling contact, subscription/plan data — no card data reaches us
Zoom / Google / MicrosoftFetching recordings your organization authorizes via OAuthRecording metadata and file access, scoped to what you authorize
Anthropic (or another MCP client provider)Only if you connect a coding agent, per §4Content your agent retrieves, at your request
GleanOnly for organizations that opt in to the enterprise search push connectorIndexed content pushed into your org's Glean instance

We do not sell data to data brokers or advertisers, and we disclose personal data to government or legal authorities only when legally required to.

7. International data transfers

We're based in India and store your data primarily in AWS's Mumbai (ap-south-1) region. As noted in §3, AI model inference currently runs in AWS's us-east-1 (United States) region, so content is transiently processed there. If you or your organization are located outside India, using the Service necessarily involves transferring data to India (and, for inference, briefly to the United States). We rely on our subprocessors' own compliance frameworks (AWS, Dodo) for these transfers and will update this section if that architecture changes.

8. Data retention & deletion

9. Security

No system is perfectly secure; if we become aware of a breach affecting your data, we'll notify affected organizations without undue delay.

10. Your rights

If you're located in India, you have rights under the Digital Personal Data Protection Act, 2023 as a Data Principal — including the right to access, correct, or erase your personal data, and to withdraw consent. If you're located in the EU/UK or elsewhere with similar data-protection law, we'll honor equivalent access, correction, deletion, and portability requests. Contact us at contact@ciev.ai to exercise any of these.

Note that if you're a member of an organization on Ciev.ai rather than the account holder, some requests (e.g. deleting a meeting recording) may need to go through your organization's admin, since they control that content — see below.

If you were added by an organization

Ciev.ai is provided to organizations, who act as the "controller" of the meeting content they choose to ingest — including any recordings that include you as a participant. We act as their processor. If you appear in a recording ingested by an organization you're not the admin of, please raise access or deletion requests with that organization first; we'll assist them in fulfilling it.

11. Cookies

We use only functional cookies — vmcp_session for authentication and vmcp_oauth_state during OAuth handshakes — plus a localStorage entry for your light/dark theme preference. We don't run third-party advertising or cross-site tracking cookies.

12. Children's privacy

Ciev.ai is a business tool and is not directed at, or knowingly used by, children under 18.

13. Changes to this policy

We'll update the "Effective" date above when this policy changes, and for material changes we'll notify organization admins by email.

14. Grievance Officer & contact

For privacy questions, data requests, or grievances under applicable Indian law:

Grievance Officer — Saasflux Technologies LLP
Email: contact@ciev.ai
Jurisdiction: Delhi, India


See also our Terms of Service.