Beyond Brains logo
Beyond Brainsby Beyond Solution

Privacy Policy

Last updated: September 6, 2026

This Privacy Policy explains how Beyond Brains ("Beyond Brains", "we", "us", or "our"), a product of Beyond Solution, collects, handles, stores, and shares user data when you use:

Together these are the "Service". By using the Service, you agree to this Policy. If you do not agree, do not use the Service.

Required disclosures

1. Who we are

Beyond Brains is an AI knowledge-intelligence platform that captures meetings, recordings, documents, and messages, transcribes and indexes them, and lets you query that knowledge with AI grounded in real sources. The Chrome extension's single purpose is to help you capture, transcribe, and organize meetings and related workspace content into your Beyond Brains account.

2. User data collection

This section describes user data collection for the web application and the Chrome extension. We collect only data needed to provide the Service, and we collect sensitive data only after you take an action that starts collection (for example signing in, connecting an integration, uploading a file, or starting a recording). The categories below use Chrome Web Store labels so they match the Data usage form on the item listing.

Personally identifiable information

We collect name, email address, profile photo, and account identifiers when you sign in with Google or email. We do not collect government ID numbers, home address, or date of birth.

Authentication information

We collect credentials needed to keep you signed in: a Beyond Brains session token (and, if you use email sign-in on the web app, a password that we store only as a one-way hash). The Chrome extension stores the session token locally so it can upload recordings to your account. We do not collect security questions or PINs. We do not see your Google password.

User activity

We collect product interactions required to run the extension: starting or stopping a recording, which meeting platform you are using, recording status, and similar in-product actions. We do not collect keystrokes, mouse position, or page scroll as analytics, and we do not operate a keylogger.

Personal communications

When you start a recording, we collect meeting audio (microphone) and, if you enable them, camera video. That audio and video may include conversations. Collection does not start until you press record (or send a meeting bot) and grant the browser permission prompt.

Website content

When you start a screen or tab recording, we collect the audio, video, images, and on-screen text of the tab or screen you choose. That is website content. We do not scrape other sites in the background.

Web history

We read the URL (and, when available, the title) of the active tab to detect Google Meet, Zoom, or Microsoft Teams and to label the recording. We do not build or store a list of all pages you visit. Host access is requested so you can record a tab you choose, not to inventory your browsing.

Other content you provide

We do not collect health information. The Chrome extension does not collect financial or payment information or precise location. Billing for the web app is handled by Stripe on Stripe's pages; card numbers are not stored by Beyond Brains.

3. User data handling

This section describes user data handling and usage — how we process data after collection. We handle personal and sensitive user data solely to operate the Service for you.

We do not use Chrome extension user data, Google user data, or other personal data to train generalized AI/ML models for other customers. We do not use user data for advertising. We do not sell user data. Humans at Beyond Brains do not read your content except as needed to provide support you request, to investigate security or abuse, to comply with law, or with your explicit consent.

Recording, transcription, and tab-URL collection in the extension happen only after you consent by signing in and then starting the relevant feature (for example pressing record or enabling a meeting bot). You can stop a recording at any time. You can revoke Google access in your Google Account permissions. You can uninstall the extension to stop local collection.

4. User data storage

This section describes user data storage — where data is kept, how long, and how it is protected at rest.

Data Where it is stored
Personally identifiable information (name, email, photo) Cloud database (Supabase / PostgreSQL)
Authentication information (session token) Locally in Chrome storage on your device; transmitted to our servers over HTTPS
User activity (recording start/stop, meeting-platform detection) Briefly on-device; operational logs on our servers as needed to run the feature
Personal communications (meeting audio / camera) LiveKit in transit, then encrypted cloud object storage (Supabase Storage)
Website content (screen or tab capture) LiveKit in transit, then encrypted cloud object storage (Supabase Storage)
Web history (active tab URL and title for meeting detection) Attached as metadata on the recording in our cloud database; not stored as a browsing-history list
Extension settings and cached preferences Locally in Chrome storage on your device

Data is transmitted using HTTPS/TLS. Cloud storage is encrypted at rest. Access is limited by account and workspace permissions. Local Chrome storage remains on your device until you sign out, clear site/extension data, or uninstall the extension.

We retain account data and content while your account is active and as needed to provide the Service. You may delete recordings and other content in the app. Deleted recordings are removed from active storage and purged from backups on a rolling basis (typically within 30 days). If you request account deletion, we delete associated personal data except where we must retain a limited record for legal, security, or billing reasons.

5. User data sharing

This section describes user data sharing. We do not sell, rent, or trade personal information. We do not share Chrome extension user data with third parties for advertising or unrelated purposes.

We share data only as follows:

Subprocessors may process data in the United States or other countries where they operate. We do not allow subprocessors to use your content for their own advertising.

Sharing by Chrome Web Store data type:

6. Chrome Web Store data types

The table below is the disclosure for the Chrome Web Store Data usage form. For every type we collect, this policy states collection, handling, storage, and sharing. Omission of any of those four topics is not intended.

Data type Collection Handling Storage Sharing
Personally identifiable information Name, email, profile photo at sign-in Account identity and product UI Supabase database Supabase; Google if you use Google sign-in
Authentication information Session token; hashed password on email sign-in (web app) Keep you signed in and authorize API calls Chrome storage (token); hashed password on our servers Beyond Brains API over HTTPS only
User activity Recording controls and meeting-tab detection — not keystrokes or mouse tracking Operate the extension's single purpose On-device and operational server logs Our servers only; not sold
Personal communications Microphone (and optional camera) when you start a recording Upload, transcribe, search, and confirm meetings LiveKit in transit; Supabase Storage at rest LiveKit, storage, transcription/AI providers; Recall.ai if you send a bot
Website content Screen or tab capture when you start a recording Save the meeting or page you chose to record LiveKit in transit; Supabase Storage at rest Same subprocessors as recordings
Web history Active tab URL and title for Meet / Zoom / Teams detection — not a full history list Label and file the recording Recording metadata in our database Our servers only; not sold
Health information Not collected
Financial and payment information Not collected by the Chrome extension. Web-app billing is processed by Stripe; we do not store card numbers.
Location Not collected (no precise geolocation). Server logs may include IP address for security.

7. Google user data

When you choose to connect your Google account, we request only the scopes needed for the features you use:

Google Limited Use disclosure. Beyond Brains' use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. We do not sell Google user data, use it for advertising, or allow humans to read it except as necessary for security, to comply with law, or with your explicit consent.
Chrome Web Store Limited Use. Use of information received from the Chrome extension and from Google APIs will adhere to the Chrome Web Store User Data Policy, including the Limited Use requirements. Extension user data is used only to provide or improve the extension's single purpose described above.

8. Security

We use industry-standard safeguards including encryption in transit (HTTPS/TLS), access controls, and hashed credentials. No method of transmission or storage is 100% secure, but we work continuously to protect your data.

9. Your rights

Depending on your location, you may have rights to access, correct, export, or delete your personal data, and to withdraw consent. To exercise these rights, contact us using the details below. You can revoke Google access at any time via your Google Account permissions. You can uninstall the Chrome extension at any time from chrome://extensions.

10. Children

The Service is not directed to children under 16, and we do not knowingly collect their personal information.

11. Changes to this Policy

We may update this Policy from time to time. Material changes will be reflected by updating the "Last updated" date above and, where appropriate, by additional notice in the app or extension.

12. Contact us

If you have questions about this Policy or your data, contact us at privacy@beyondbrains.ai.