1. Introduction
w3copilot ("we," "us," or "our") operates the w3copilot Chrome extension and the website at w3copilot.com (collectively, the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.
We are committed to protecting your privacy. Our product is built on the principle that your meeting conversations are yours — not ours. We do not sell your data, we do not use your transcripts to train AI models, and we do not serve ads.
By using our Service, you agree to the collection and use of information in accordance with this policy. If you do not agree, please discontinue use of the Service.
2. Information We Collect
Information you provide directly:
- Account information: name, email address, and password when you create an account
- Payment information: billing details processed through our third-party payment provider (Razorpay). We do not store your full credit card number
- Profile preferences: language settings, notification preferences, and integration configurations
- Support communications: messages you send to our support team
Information collected automatically:
- Meeting transcripts and audio: captured by the Chrome extension during meetings you choose to record. This data is processed to generate transcripts, summaries, and action items
- Usage data: features used, meeting frequency, extension interactions, and error logs
- Device and browser information: browser type, operating system, screen resolution, and Chrome extension version
- IP address and approximate location: used for security, fraud prevention, and service optimization
- Cookies and similar technologies: see our Cookie Policy for details
Information from third parties:
- OAuth data from Google, Microsoft, or Zoom when you connect your calendar or meeting platforms
- CRM data if you enable integrations with tools like HubSpot or Salesforce
3. How We Use Your Information
We use your information for the following purposes:
- To provide and maintain the Service, including generating transcripts, AI summaries, and action items from your meetings
- To process your transactions and manage your subscription
- To send you service-related communications including updates, security alerts, and support messages
- To improve and optimize our Service based on usage patterns and feedback
- To detect, prevent, and address technical issues, fraud, or security threats
- To comply with legal obligations
We do NOT use your information to:
- Train or improve AI or machine learning models
- Sell to third parties, data brokers, or advertisers
- Serve you targeted advertisements
- Build profiles for purposes unrelated to providing the Service
4. AI and Transcript Processing
Our AI features (summaries, action items, coaching insights) use third-party AI providers via enterprise API agreements. Important details:
- Your transcripts are sent to our AI providers solely to generate the features you request
- Our AI providers are contractually prohibited from using your data to train their models
- Transcript data sent to AI providers is not retained by them beyond the processing session
- You can disable AI features at any time in your settings
- All data transmission to AI providers uses TLS 1.3 encryption
5. Data Sharing and Disclosure
We do not sell your personal information. We share data only in these circumstances:
- Service providers: We use trusted third parties to help operate our Service (hosting, payment processing, AI processing, analytics). These providers are bound by data processing agreements and may only use your data to perform services on our behalf
- With your consent: When you explicitly choose to share transcripts with teammates, export to integrations, or connect third-party services
- Legal requirements: When required by law, regulation, or legal process, or to protect the rights, safety, or property of w3copilot, our users, or the public
- Business transfers: In connection with a merger, acquisition, or sale of assets, your data may be transferred. We will notify you before your data becomes subject to a different privacy policy
Our key third-party service providers include:
- Cloud infrastructure: Google Cloud Platform / AWS
- Payment processing: Razorpay (razorpay.com/privacy)
- AI processing: OpenAI (Enterprise API — data not used for training)
- Analytics: Mixpanel (anonymized usage data only)
- Email: Resend
6. Data Retention
- Meeting transcripts and summaries: Retained for as long as your account is active. You can delete individual transcripts at any time, and they are permanently removed within 30 days
- Account information: Retained for the duration of your account. Upon account deletion, personal data is removed within 30 days, except where retention is required by law
- Usage and analytics data: Retained in anonymized form for up to 24 months
- Payment records: Retained for 7 years as required by tax and accounting regulations
7. Data Security
We implement industry-standard security measures to protect your data:
- AES-256 encryption for data at rest
- TLS 1.3 encryption for data in transit
- SOC 2 Type II compliance (in progress)
- Regular security audits and penetration testing
- Role-based access controls for internal systems
- Automated threat monitoring and incident response
For full details, see our Security page.
8. Your Rights and Choices
Depending on your location, you may have the following rights:
- Access: Request a copy of the personal data we hold about you
- Correction: Request correction of inaccurate personal data
- Deletion: Request deletion of your personal data ("right to be forgotten")
- Portability: Request your data in a structured, machine-readable format
- Restriction: Request restriction of processing of your personal data
- Objection: Object to processing of your personal data for certain purposes
- Withdraw consent: Where processing is based on consent, withdraw it at any time
To exercise any of these rights, email us at [email protected]. We will respond within 30 days.
Account controls you can use directly:
- Delete individual transcripts from your dashboard
- Export all your data from Settings → Data Export
- Delete your entire account from Settings → Account → Delete Account
- Disable AI features from Settings → Privacy
- Manage cookie preferences via our cookie consent banner
9. International Data Transfers
We process data primarily in the United States. If you are located in the European Economic Area (EEA), United Kingdom, or other regions with data protection laws, your data may be transferred to and processed in the US. We rely on Standard Contractual Clauses (SCCs) approved by the European Commission to ensure adequate protection for international transfers.
10. Children's Privacy
Our Service is not intended for individuals under 18 years of age. We do not knowingly collect personal information from children. If we become aware that we have collected data from a child, we will take steps to delete it promptly.
11. California Privacy Rights (CCPA)
If you are a California resident, you have the right to:
- Know what personal information is collected about you
- Know whether your personal information is sold or disclosed and to whom
- Say no to the sale of personal information (we do not sell your data)
- Access your personal information
- Request deletion of your personal information
- Equal service and price, even if you exercise your privacy rights
To exercise these rights, contact us at [email protected].
12. Chrome Web Store Compliance
As a Chrome extension, w3copilot complies with Google's Chrome Web Store Developer Program Policies:
- We only request the minimum permissions necessary to provide our Service
- We encrypt all personal and sensitive user data in transit and at rest
- We do not sell user data to third parties
- We do not use or transfer user data for purposes unrelated to the extension's core functionality
- We do not use or transfer user data to determine creditworthiness or for lending purposes
13. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on our website and, where appropriate, sending you an email notification. The "Last updated" date at the top of this page indicates when this policy was last revised.
14. Contact Us
If you have questions about this Privacy Policy or want to exercise your data rights:
- Email: [email protected]
- Website: w3copilot.com/contact