Skip to main contentSkip to preferences

Help us understand how Novilyze is used?

We would like to measure how people use the product. It sets cookies in your browser and links what it records to your account. It is entirely optional and Novilyze works exactly the same either way.

Privacy Policy

Last updated:

Novilyze converts a recording of a meeting into a transcript with separated speakers, a summary and a list of action items, and lets you question the material you have recorded. This notice refers to that as the Service.

About this notice

This notice sets out what the Service collects, who processes it on our behalf, how long it is kept, and the rights you hold over it. Read it together with our Terms of Service. A term defined in the Terms carries the same meaning here.

Novilyze is operated in Israel by Guy Tagger, trading as Novilyze. He is the controller of the database and the personal data described in this notice for the purposes of the Privacy Protection Law. Address any privacy question, and any request to exercise a right set out below, to support@novilyze.com.

Personal data means information relating to an identified or identifiable living person. On the Service it may include account and authentication information; email address and display name; recordings and voices contained in them; transcripts and other outputs generated from recordings; speaker and project names; chat messages; shared-project membership; voiceprints; subscription and billing data; IP address; browser and device information; activity and security logs; usage events; and preferences stored on your device.

Recording a conversation is regulated, and the applicable rules vary by jurisdiction. Some require the agreement of every participant. You decide what to record and what to upload, so obtaining that agreement is your responsibility. The Terms set out that obligation in full.

What we collect

Account data: your email address, a display name if you set one, secure authentication data, your plan, and the date on which you accepted these documents. Your password is not stored by us in readable form.

Content you upload: audio and video recordings, together with everything derived from them: transcripts, speaker labels, summaries, action items, notes, and the names you assign to speakers and projects.

Chat data: the messages you exchange with the assistant about your meetings and projects.

Voiceprints: a mathematical representation of a speaker's voice. This is off unless you turn it on, and a dedicated section below deals with it.

Usage and operational data: sign-in times, use of plan allowances, significant actions within the Service, IP address, browser and device information, and technical logs required to operate and secure the Service, prevent misuse and investigate errors.

Subscription data: where you buy a paid plan, our payment provider handles the transaction and tells us what is needed to give you the plan and display billing information: customer and subscription identifiers, the plan, its status, currency and renewal date, invoice information, and sometimes the payment-card type and last four digits. We do not receive or store your full payment-card number.

Providing your information

You are under no legal obligation to provide any of it. Each item is provided voluntarily, and withholding each has a different effect.

An email address and a password are required to hold an account. Without them an account cannot be created, since they are how your data is distinguished from another user's.

Recordings are at your discretion. Where none is uploaded, there is nothing to transcribe or summarise.

A display name is optional. It affects only how you appear to other members of a shared project.

Saving voices is off unless you turn it on, in Settings. While it is off, naming a speaker labels that meeting and no voiceprint is created. Turning it on means a named speaker is recognised in later meetings.

Account-linked usage measurement in your browser is optional and runs only after you consent. Declining does not restrict the Service. Separately, we process basic operational events required to operate and secure the Service, prevent misuse and investigate errors. The Usage measurement section below explains both.

How we use it

To provide the Service: transcribing recordings, identifying speakers, generating summaries and action items, answering your questions about your own meetings, and applying your plan's limits.

To operate the Service: diagnosing errors, preventing abuse, and monitoring security.

We do not sell your data. We do not use your recordings, transcripts or chats to train AI models.

Service providers

To operate the Service, we use external providers that supply authentication, cloud hosting and storage, recording processing and transcription, artificial-intelligence processing, speaker recognition, message delivery, usage measurement, security, backup and billing services.

Personal data is provided to these providers only to the extent necessary for the purpose for which they supply their services and under the terms and obligations applicable to them. Some providers may retain limited operational, security, abuse-prevention or troubleshooting records under their applicable terms.

Automatic transcription: the recording is processed to produce a transcript.

Artificial-intelligence processing: transcript excerpts, instructions and chat context are processed to produce summaries, action items and answers. Audio is not provided through this processing path.

Speaker recognition: selected audio segments are processed to create a voiceprint only where saving voices is enabled.

Transactional email: the message-delivery provider receives the recipient's email address and the message content. Certain messages, such as shared-project invitations, may also include the inviter's name and project name.

Subscription and payments: Polar Software, Inc. sells our paid subscriptions as Merchant of Record. It takes the payment, handles transaction taxes and issues your receipt or invoice, and processes payment and contact details under its privacy policy. To create a payment session, we may send Polar your email address, Novilyze account identifier, selected plan and billing period, and IP address for country, tax and currency determination. It returns to us the information needed to grant you the plan and display billing information.

We do not sell personal data and do not use customer Content to train our own models.

Each provider is identified by name on request to support@novilyze.com.

Usage measurement

In your browser: account-linked usage measurement runs only after you consent. If you decline, no measurement cookies are placed, no account-linked usage profile is created, and your email address and display name are not provided for this purpose. You may change your choice at any time using the link at the bottom of the website or in Settings, with immediate effect.

Aggregated measurement: we may measure page views and aggregated information such as the page viewed, referring source, approximate country, browser type, device type and operating system. This measurement does not place measurement cookies or create an individual profile across pages.

On our servers: when you are signed in, actions such as completing an upload or generating a summary may be recorded against your account identifier to operate, secure and improve the Service. These records do not include the contents of recordings, transcripts or chat messages and are not controlled by your browser-measurement choice.

Information in shared projects

When you join a shared project, the project owner and other members can see your display name, membership and shared Content according to their permissions. Recordings, transcripts, summaries, action items, notes and messages added to the project may be available to project members.

If you leave or are removed from a project, you will lose access to Content belonging to other members. Content you uploaded may remain in the project until you or the project owner deletes it.

Information about participants who do not have accounts

Recordings and their derived Content may contain personal data about participants who do not have Novilyze accounts. The user who uploads a recording is responsible for providing any required notice and obtaining any permission required by law.

A person who believes that the Service holds personal data about them may contact us to request access, correction or deletion. We may request information necessary to verify their identity and locate the relevant Content. We may also contact the account holder who uploaded the Content before deciding how to respond, unless prohibited by law.

Voice recognition and voiceprints

Saving voices is off by default. It is turned on in Settings, and while it is off no voiceprint is created for any speaker.

Where it is on and you name a speaker in a meeting, a mathematical representation of that person's voice is stored. That representation is a voiceprint, and it allows the same speaker to be recognised in later meetings within the same project. The person whose voice it is may not be a user of this Service, which is why the setting is off until you choose otherwise, and why the Terms require you to hold their permission before you turn it on.

A voiceprint is biometric information. Under the Privacy Protection Law as amended in 2025 it constitutes data of special sensitivity, and it is treated accordingly. A voiceprint is created only where a speaker is expressly named, is never derived without that step, and the time of creation and the user responsible are recorded.

A voiceprint is a set of numbers rather than a recording, and it is not played back. It is not used to identify any person outside your own projects, and is not disclosed to our transcription provider.

A saved voice may be deleted at any time from the meeting screen, which removes the active voiceprint and its associated samples from the Service's active systems. Copies may remain in encrypted backups for up to 30 days and are not used during that period except where a backup must be restored for disaster recovery. Deleting the project or the account removes all active voiceprints associated with it.

Turning the setting off stops any further voiceprint being created. It does not delete those already stored, which are deleted individually from the meeting screen or from Settings.

Where a voiceprint of you is held within another user's project and you wish it removed, write to us and we will remove it.

Where your data is stored

Personal data may be processed outside Israel by providers that assist in operating the Service. Such transfers will be carried out in accordance with applicable law and subject to appropriate data-protection commitments.

Using the Service does not constitute consent to a new or unrelated use of personal data. Where consent is required for a new purpose, it will be requested separately.

Retention and deletion

A recording is retained for seven days after processing completes, so that it remains available for playback within the Service, and is then deleted automatically. Generating a summary restarts that window rather than shortening it. Deleting the meeting deletes the recording immediately. Where an account is closed, any remaining recording is removed by the storage provider within a few days.

Transcripts, summaries, notes and chats are retained until you delete them or close your account. Deleting a meeting or a project removes its content from the Service.

Closing your account removes the account and its Content from active systems. Certain operational and security records may be retained after account closure for security, fraud prevention, legal compliance and dispute-resolution purposes. Direct account identifiers will be removed or pseudonymised where reasonably possible.

An encrypted backup of the database is taken every night and kept for 30 days. Data you delete leaves the backups within that time.

Your rights

You have the right to know what personal data is held about you, to inspect it, and to have it corrected where it is inaccurate.

Transcripts and summaries may be exported from within the Service at any time, and any meeting or project may be deleted by you. An account may be deleted from Settings.

You may also ask us to confirm what is held about you, to correct it, to export it, or to erase your account. Write to support@novilyze.com. We respond within 30 days.

Security

We use technical and organisational measures designed to protect personal data, including encryption in transit and at rest, access controls and permission restrictions. Users are limited to their own information and to Content in shared projects of which they are members. Administrative and operational access is limited to what is reasonably necessary to operate, secure and support the Service.

No system is entirely secure. Where a security incident affects your data, we will notify you where the law requires it or where the Privacy Protection Authority directs, and we will report to the Authority where we are required to do so.

Novilyze is a first version. The safeguards described here are in place today; we extend them as the Service matures and update this section when they change.

Cookies and device storage

We use necessary cookies for authentication, security, account recovery, routing and remembering preferences such as language, reduced motion and task filters.

Your usage-measurement choice is stored for six months. If you consent to browser-based usage measurement, measurement cookies may be stored to recognise your browser between visits. Declining or withdrawing consent stops this measurement and removes the persistent browser data stored for that purpose.

The Service also uses local device storage for interface preferences, notification state, temporary processing state and temporarily preserving an upload that has not yet completed. This information is not used for advertising.

We do not use advertising cookies or perform cross-site advertising tracking.

Age

The Service does not permit anyone under the age of 18 to create an account. Content uploaded by users may contain information about other participants, including minors. The user who uploads the Content is responsible for obtaining any authorisation or consent required for recording and processing it. If you become aware that information about a minor was uploaded without appropriate permission, contact us and we will review the request and remove the information where required.

Marketing communications

Messages about your account and the Service are not marketing, and are sent because they are necessary: password resets, project invitations, notices about your subscription, and material changes to the Service.

Promotional email is sent only where you have chosen to receive it, and agreeing is never a condition of using the Service. Every such message carries a means of stopping them, and we keep a record of your choice so that it is respected.

Changes to this notice

Novilyze is a first version, and this notice will change as the Service does. Each version carries its date at the top.

A change that adds a new use of your data or a new category of provider is announced by email at least 30 days before it takes effect, and where the law requires your agreement to it we ask for it rather than assume it. Other changes take effect when published.

Back to home