Effective Date: June 19, 2026 · Last Updated: June 19, 2026
Network Security Assessment Group · 630 Davis St, Vacaville, CA 95688
The short version: Your meeting recordings and transcripts are processed on NSAG-controlled infrastructure in California. We never sell your data. We never use your recordings to train AI models. Audio files are deleted after transcription. You control your data.
This Privacy Policy describes how Network Security Assessment Group ("NSAG," "we," "us," or "our") collects, uses, and protects information when you use NSAG Meeting Intelligence ("the Service"), available at meetings.nsag.space.
NSAG is a Managed Security Service Provider based in Vacaville, California. We operate a 24/7 Security Operations Center and built this platform to the security standards we apply to our own operations. Data privacy is not a marketing commitment for us — it is an operational requirement.
By using the Service, you agree to the collection and use of information in accordance with this policy. If you do not agree, please do not use the Service.
Payment processing is handled by Stripe. We do not store your credit card numbers or payment details. We receive and store your Stripe customer ID and subscription status. Stripe's privacy policy governs how your payment information is handled.
We use the data we collect to:
We do not use your data for advertising. We do not sell your data. We do not share your data with third parties for their marketing purposes.
NSAG does not use your meeting recordings, transcripts, or any other content you upload to train, fine-tune, or improve AI models — ours or anyone else's.
Transcription is performed using Whisper, an open-source speech recognition model running on NSAG-controlled infrastructure. AI analysis is performed using the Anthropic Claude API. Neither your audio nor your transcripts are used as training data for these or any other AI systems.
This is a hard operational commitment, not a policy that is subject to change through a terms-of-service update. If this policy ever changes, we will provide explicit notice and the ability to delete your data before any change takes effect.
All data is processed and stored on NSAG-controlled servers located in Los Angeles, California, United States. We do not use shared consumer cloud infrastructure for processing your meeting data.
Specifically:
Raw audio files are automatically deleted from our servers after transcription is complete. We do not retain your audio recordings after processing.
Text data associated with your meetings is retained as long as you maintain an active account. You may delete individual meetings at any time from your dashboard. Deleted meetings are permanently removed.
Account information is retained for the duration of your account. If you close your account, we will delete your personal data within 30 days, except where retention is required by law.
Security audit logs are retained for 12 months for security and compliance purposes.
Financial records are retained for 7 years as required by applicable law.
We do not sell, rent, or trade your personal information. We share data only in the following limited circumstances:
We may disclose your information if required to do so by law, court order, or governmental authority, or if we believe in good faith that such disclosure is necessary to protect the rights, property, or safety of NSAG, our users, or the public.
If NSAG is involved in a merger, acquisition, or sale of assets, your data may be transferred as part of that transaction. We will notify you of any such change in ownership or control of your personal information.
NSAG is a Network Security Assessment Group. Security is not a feature we added — it is what we do. The platform has undergone a formal 15-point security audit. Security measures include:
No security system is perfect. In the event of a data breach that affects your personal information, we will notify you as required by applicable law, including California Civil Code Section 1798.82.
You have the following rights with respect to your data:
To exercise any of these rights, contact us at privacy@nsag.ai or call 707.452.3015.
If you are a California resident, you have specific rights under the California Consumer Privacy Act (CCPA) and the California Privacy Rights Act (CPRA):
To submit a CCPA/CPRA request, contact us at privacy@nsag.ai or call 707.452.3015. We will respond within 45 days.
We do not sell personal information to third parties. We do not share personal information with third parties for cross-context behavioral advertising.
The Service uses minimal cookies and local storage for essential functionality only:
We do not use advertising cookies, tracking pixels, or third-party analytics. We do not use Google Analytics or similar services on the platform application.
The Service is not directed to individuals under the age of 18. We do not knowingly collect personal information from children under 18. If you become aware that a child has provided us with personal information, please contact us at privacy@nsag.ai.
We may update this Privacy Policy from time to time. We will notify you of any material changes by email to the address associated with your account and by posting the new policy at this URL with an updated effective date. Your continued use of the Service after the effective date of the revised policy constitutes your acceptance of the changes.
We will never change our policy on AI training of your data without explicit advance notice and an opportunity for you to delete your data before any change takes effect.
Network Security Assessment Group
630 Davis St, Vacaville, CA 95688
Email: privacy@nsag.ai
Phone: 707.452.3015
For data deletion requests, account inquiries, or CCPA/CPRA requests, please include your account email address and a description of your request. We will respond within 45 days.