1. Controller
Zernote is operated by Anatolii Lakarov.
2. Data we collect
We may collect account information, email address, login data, uploaded research materials (audio and video recordings, text files such as .txt/.md, and PDFs), generated transcripts and derived analysis (summaries, notes, claim-cards, JTBD trees, speaker labels/voiceprint data where enabled), usage logs, device information, and support messages.
Uploaded audio/video and documents may contain personal data of third parties (for example, interview participants whose voices or identifying details appear in a recording or PDF). We process that content as instructed by the customer account that uploads it.
3. Why we process data
We process personal data to provide the service, authenticate users, store and process uploaded files, generate transcripts from audio/video, analyze research content, maintain account security, respond to support requests, and comply with legal obligations.
4. Uploaded content
Audio and video: Recordings you upload (including interviews with living people) are stored and processed to deliver transcription, speaker diarization, and related research features. Speech-to-text and related providers process the media solely to provide those features.
Text and PDF: Documents you upload are stored and may be analyzed for research features (summaries, search, notes, JTBD, claim-cards). They are not run through speech-to-text transcription.
Customers are responsible for ensuring they have a lawful basis (including any required notices or consents from participants) to upload and process such content in Zernote.
5. Payment data
Payments are processed by Stripe. We do not receive or store full payment card details. Stripe may process buyer identity, billing, tax, and transaction data under its own privacy notice available at stripe.com/privacy.
6. Sharing
We may share data with infrastructure, hosting, analytics, support, and payment service providers only where necessary to operate the service and comply with law.
7. MCP and AI assistant connections
Zernote provides an MCP (Model Context Protocol) server that lets you connect your own Zernote account to an AI assistant of your choice (for example, Claude) as a connector or custom connector.
The connection uses OAuth: you explicitly authorize the specific assistant or client to access your own Zernote data. Zernote never shares your data with any AI assistant unless you have completed this OAuth authorization for that specific client.
Once authorized, the connected assistant can, only on your own explicit request or prompt within that assistant, read from your own account: folder names and descriptions; interview lists, metadata, summaries, notes, JTBD trees, and claim-cards; interview transcripts; and semantic search results across your interviews.
With your approval, the connected assistant can also create or rename folders; rename or move interviews; write or replace interview notes and summaries; confirm speaker labels / voiceprint suggestions; re-run transcription with a language choice where supported; and open an in-chat upload widget so you can upload audio, video, text (.txt/.md), or PDF directly to your Zernote workspace (files go to our storage over a short-lived presigned HTTPS upload — not through the assistant's chat context). Audio/video is transcribed; text and PDF are stored without STT. All of that content is retained under the same rules as other uploaded content in this policy.
All of this access is strictly limited to your own account and tenant. A connected assistant cannot access another user's data.
8. Retention
While your account remains active, we retain uploaded audio, video, text, and PDF files, generated transcripts, derived research artifacts, and interview notes indefinitely. We do not automatically delete an active account's content based on a time limit.
If you delete your account, or request deletion of specific content, we delete the corresponding data immediately upon that request.
We may retain certain records where necessary to comply with legal obligations.
9. Security
We use reasonable technical and organizational measures to protect personal data from unauthorized access, misuse, loss, or disclosure.
10. Your rights
Depending on applicable law, you may have rights to access, correct, delete, restrict, or object to the processing of your personal data.
11. Contact
Privacy / support email: report@zernote.com
Product and privacy contact: @sagotly
Stripe privacy: stripe.com/privacy
Last updated: 2026-07-31