Legal

Privacy Policy

Effective Date: June 19, 2026 · Last Updated: June 19, 2026
Network Security Assessment Group · 630 Davis St, Vacaville, CA 95688

Contents
1. Overview 2. Data We Collect 3. How We Use Your Data 4. No AI Training on Your Data 5. Data Storage and Infrastructure 6. Data Retention 7. Data Sharing 8. Security 9. Your Rights 10. California Privacy Rights (CCPA/CPRA) 11. Cookies 12. Children's Privacy 13. Changes to This Policy 14. Contact Us

The short version: Your meeting recordings and transcripts are processed on NSAG-controlled infrastructure in California. We never sell your data. We never use your recordings to train AI models. Audio files are deleted after transcription. You control your data.

1. Overview

This Privacy Policy describes how Network Security Assessment Group ("NSAG," "we," "us," or "our") collects, uses, and protects information when you use NSAG Meeting Intelligence ("the Service"), available at meetings.nsag.space.

NSAG is a Managed Security Service Provider based in Vacaville, California. We operate a 24/7 Security Operations Center and built this platform to the security standards we apply to our own operations. Data privacy is not a marketing commitment for us — it is an operational requirement.

By using the Service, you agree to the collection and use of information in accordance with this policy. If you do not agree, please do not use the Service.

2. Data We Collect

Account Information

Meeting Data

Usage and Security Data

Billing Data

Payment processing is handled by Stripe. We do not store your credit card numbers or payment details. We receive and store your Stripe customer ID and subscription status. Stripe's privacy policy governs how your payment information is handled.

3. How We Use Your Data

We use the data we collect to:

We do not use your data for advertising. We do not sell your data. We do not share your data with third parties for their marketing purposes.

4. No AI Training on Your Data

NSAG does not use your meeting recordings, transcripts, or any other content you upload to train, fine-tune, or improve AI models — ours or anyone else's.

Transcription is performed using Whisper, an open-source speech recognition model running on NSAG-controlled infrastructure. AI analysis is performed using the Anthropic Claude API. Neither your audio nor your transcripts are used as training data for these or any other AI systems.

This is a hard operational commitment, not a policy that is subject to change through a terms-of-service update. If this policy ever changes, we will provide explicit notice and the ability to delete your data before any change takes effect.

5. Data Storage and Infrastructure

All data is processed and stored on NSAG-controlled servers located in Los Angeles, California, United States. We do not use shared consumer cloud infrastructure for processing your meeting data.

Specifically:

6. Data Retention

Audio recordings

Raw audio files are automatically deleted from our servers after transcription is complete. We do not retain your audio recordings after processing.

Transcripts, summaries, and action items

Text data associated with your meetings is retained as long as you maintain an active account. You may delete individual meetings at any time from your dashboard. Deleted meetings are permanently removed.

Account data

Account information is retained for the duration of your account. If you close your account, we will delete your personal data within 30 days, except where retention is required by law.

Audit logs

Security audit logs are retained for 12 months for security and compliance purposes.

Billing records

Financial records are retained for 7 years as required by applicable law.

7. Data Sharing

We do not sell, rent, or trade your personal information. We share data only in the following limited circumstances:

Service providers

Legal requirements

We may disclose your information if required to do so by law, court order, or governmental authority, or if we believe in good faith that such disclosure is necessary to protect the rights, property, or safety of NSAG, our users, or the public.

Business transfers

If NSAG is involved in a merger, acquisition, or sale of assets, your data may be transferred as part of that transaction. We will notify you of any such change in ownership or control of your personal information.

8. Security

NSAG is a Network Security Assessment Group. Security is not a feature we added — it is what we do. The platform has undergone a formal 15-point security audit. Security measures include:

No security system is perfect. In the event of a data breach that affects your personal information, we will notify you as required by applicable law, including California Civil Code Section 1798.82.

9. Your Rights

You have the following rights with respect to your data:

To exercise any of these rights, contact us at privacy@nsag.ai or call 707.452.3015.

10. California Privacy Rights (CCPA/CPRA)

If you are a California resident, you have specific rights under the California Consumer Privacy Act (CCPA) and the California Privacy Rights Act (CPRA):

To submit a CCPA/CPRA request, contact us at privacy@nsag.ai or call 707.452.3015. We will respond within 45 days.

We do not sell personal information to third parties. We do not share personal information with third parties for cross-context behavioral advertising.

11. Cookies

The Service uses minimal cookies and local storage for essential functionality only:

We do not use advertising cookies, tracking pixels, or third-party analytics. We do not use Google Analytics or similar services on the platform application.

12. Children's Privacy

The Service is not directed to individuals under the age of 18. We do not knowingly collect personal information from children under 18. If you become aware that a child has provided us with personal information, please contact us at privacy@nsag.ai.

13. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by email to the address associated with your account and by posting the new policy at this URL with an updated effective date. Your continued use of the Service after the effective date of the revised policy constitutes your acceptance of the changes.

We will never change our policy on AI training of your data without explicit advance notice and an opportunity for you to delete your data before any change takes effect.

14. Contact Us

Privacy Inquiries

Network Security Assessment Group

630 Davis St, Vacaville, CA 95688

Email: privacy@nsag.ai

Phone: 707.452.3015

For data deletion requests, account inquiries, or CCPA/CPRA requests, please include your account email address and a description of your request. We will respond within 45 days.