Privacy
This describes what Pinnal collects, who processes it, and how long it is kept. Plain terms, no gaps we know of.
What we collect
- Account details — your name and email address, when you sign up.
- Calendar data — if you connect Google Calendar, the titles, times, attendee addresses and conferencing links of events, so the bot can join the meetings you ask it to.
- Meeting content — when the bot is in a call, its audio is captured and transcribed for the length of that meeting.
- Derived records — the decisions, commitments, action items and topics extracted from that transcript.
- Slack — if you install the Slack app, an access token for your workspace.
Who processes it
- Recall.ai — joins the call, records and transcribes it.
- OpenAI — analyses transcript text and generates the spoken interventions. Content sent to the OpenAI API is not used to train their models.
- Clerk — authentication.
- Upstash — holds live meeting state while a meeting is running.
- Railway — application hosting and the database of record.
- Resend — sends the post-meeting summary email.
- Google — only the calendar access you explicitly authorise.
Recording
The bot joins as a visible, named participant. It is not hidden, and everyone in the meeting can see it is there. You are responsible for obtaining whatever consent your organisation or jurisdiction requires before recording a conversation.
How long it is kept
Live meeting state expires automatically four hours after the meeting ends. Meeting records and the decisions extracted from them are kept until you ask us to delete them.
What we do not do
We do not sell your data, and we do not share it with anyone beyond the processors listed above.
Access and deletion
To see what we hold about you, or to have it deleted, write to hello@pinnal.ai.
Last updated 27 August 2026.