Legal
Privacy Policy
Last updated 9 September 2026
Cruxwing helps you transcribe calls, work with their context, and review decisions. This notice explains how Cruxwing Inc. handles personal information through the Mac app, website and related services, and which choices remain yours.
Who is responsible for your data
Cruxwing Inc. is a Delaware corporation formed on 10 August 2026, Delaware file number 10729495. Its registered office is 16192 Coastal Highway, Lewes, Delaware 19958, United States.
Correspondence address: Cruxwing Inc., 5700 Central Gardens Way, Apt 202, Palm Beach Gardens, FL 33418, United States. For privacy questions and requests, write to this address or email artem@cruxwing.ai.
We act as a controller when we decide why and how to use account, billing, support, security and website information. Where we handle meeting content on a customer's instructions, we process it on that customer's behalf; the customer determines the purpose of recording and using that content. The role depends on the particular processing and the customer's instructions. If your employer or another organization provides your access, its own privacy notice and instructions may also apply. Contact that organization about its use of your meeting content; you can contact us for help identifying the appropriate route.
Your main choices
- Transcription defaults to your Mac. A previously selected, available engine can remain selected. Choosing an optional cloud engine sends audio to that provider.
- Local transcription and cloud AI are separate. A cloud AI feature sends the relevant transcript and context for processing even when transcription happened on your Mac.
- Optional analytics needs your choice. Declining prevents optional analytics tags from loading on subsequent page loads and stops consent-gated event forwarding; it does not stop first-party service requests or an embedded calendar from loading.
- Deletion has limits. Account deletion, clearing local history, and deleting shared team records are different actions. See the retention and controls sections below.
Information we handle and its sources
- Account and subscription information. Your email address, sign-in identifiers, plan, purchase status and usage records come from you, your sign-in provider, the app and payment providers. We use them to provide account access, apply allowances and administer subscriptions.
- Meeting content. Audio from your microphone or system audio while you record; transcripts, speaker labels, prompts, AI outputs, decisions, owners and source quotes. This comes from the calls you capture, content you submit and processing you request. It can concern participants who do not have a Cruxwing account and can include sensitive information depending on what is discussed.
- Connected context. Documents, messages, calendar information and other material returned by accounts or tools you connect, together with connection credentials or tokens needed for access. The available information depends on the permissions and features you authorize.
- Support and business inquiries. Information you submit in forms or email, including your contact details, organization and the contents of your request.
- Technical, usage and security information. Service requests, usage counts, limited event properties, identifiers, and records needed to secure accounts, investigate problems and administer the service. Network requests expose technical information such as an IP address to the receiving service. A random or pseudonymous identifier is not the same as anonymous data.
We do not provide personal information to data brokers or use it to build cross-site advertising audiences. We do disclose information to the service providers and other recipients described below to operate the features you use.
What this website collects
- Demo request. Your name, work email, company and team size, submitted through the form on /demo. We use them to contact you about the demo you asked for, and only if you tick the separate optional box, to send product updates.
- Enterprise inquiry. Your name, company, phone number and work email, submitted through the Enterprise form on the home page. We store these details in our database and HubSpot to respond to your request. This form does not subscribe you to product updates.
- Download. Your name, company, phone number and work email, entered on the download page before the Mac app download begins. We store these details in our database and HubSpot to send your download and help you get set up. Product updates are a separate optional tick; leaving it unticked does not affect your download.
- Booking a slot. The home page and /demo offer a Calendly calendar. On the home page it loads as the booking section approaches the viewport. On /demo it loads after you submit the demo request. Loading the calendar shares your IP address and browser details with Calendly; booking sends your name and email to create the invite. Calendly's own cookie choices and privacy policy apply within its calendar.
- Optional analytics. Where configured, HubSpot and Google Analytics through Google Tag Manager load only after you accept analytics. Advertising features are disabled in our analytics configuration. Our server forwards permitted usage events to Google Analytics and Amplitude only when the event carries analytics consent.
- First-party page and funnel counts. The website sends limited page and button events to our API, using a random identifier in session storage. These records can be made even if you decline optional analytics. They do not include your meeting transcript or the values entered in the landing-page calculator or qualifying quiz.
Cookies, storage and browser signals
We use browser storage to remember your analytics choice and a session identifier for first-party measurement. Optional analytics may use cookies and similar technologies. The app has separate analytics controls in Settings; a website choice does not change the app's settings.
To withdraw website analytics consent, go to Privacy choices on the home page, select Privacy choices, then choose Decline and reload the page to stop tags that were already loaded. You can continue using the site. Browser settings also let you clear or restrict cookies and storage; clearing the stored choice can cause the banner to appear again.
The home page's first-party funnel counter recognizes supported Do Not Track settings. We do not currently interpret Global Privacy Control automatically as an analytics choice, and the Do Not Track behavior should not be read as a site-wide opt-out from every request. Use the control above for optional analytics, or contact us to exercise any applicable privacy rights. These controls do not govern independent third-party websites or Calendly's own choices.
Where transcription and AI processing happen
On-device transcription is the default in the current Mac app. A saved, available engine choice takes precedence. Local transcription processes audio on your Mac. Deepgram is an optional cloud transcription engine; when selected and configured, it receives the audio needed to transcribe the session. The current app does not offer legacy Cruxwing Whisper or direct OpenAI transcription as new Settings choices, but a previously saved, available engine can still run. Those legacy routes send audio to our transcription service or OpenAI; our backend can also use OpenAI transcription when that fallback is configured.
Managed AI features send relevant transcript excerpts, prompts and connected context to our backend and the model providers used for the request. This includes enabled background AI features during a call. Managed-provider API keys are held on the backend. Routing and fallback can involve OpenRouter and a downstream model provider automatically; choosing a feature or model does not necessarily mean a separate prompt appears for each recipient. Web-assisted fact-checking can send a search query to Exa when that service is configured.
If you choose an LM Studio model, requests go to the endpoint configured for that model. The default endpoint is on the same Mac, but you can configure another workstation or server. A remote endpoint receives the content sent to it; selecting LM Studio alone does not guarantee that content stays on your Mac.
Connected services and Google data
Connecting a service allows Cruxwing to use the permissions you grant for the requested context or action. Connected information may be included in AI requests where the feature uses it. Disconnecting access stops future use of that connection but does not by itself delete material already copied into a session, an output or another service.
Google data. Cruxwing's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We never sell this data, never use it for advertising, and never let humans read it except with your explicit permission or where required by law. Connecting Google is optional; the scopes and purposes are described in how we use Google data.
Purposes and EU/UK legal bases
Where we act as a controller and EU or UK data protection law applies, we use the following bases, according to the processing involved:
- Contract or requested pre-contract steps: providing an individual account and the service you request, administering a subscription, and responding to a request about entering a contract.
- Legitimate interests: operating and securing the service, preventing abuse, administering business relationships, responding to organizational inquiries and support requests, and understanding service use. These interests must be balanced against your rights.
- Consent: optional marketing and analytics where requested. You can withdraw it through the relevant unsubscribe link, app setting or website privacy control, without changing the lawfulness of earlier processing.
- Legal obligations: keeping required accounting records and responding to valid legal requirements.
For content processed on a customer's behalf, the customer is responsible for identifying its legal basis and any additional conditions for sensitive information. An account agreement or a recording-confirmation prompt is not a substitute for those conditions or another participant's required consent.
Some information is needed to provide a requested feature: without an account email we cannot provide a signed-in account, and without the necessary audio or transcript a transcription or AI feature cannot perform the requested processing. Optional marketing, analytics and connected accounts are not required simply to download the app.
Service providers and other recipients
The table describes providers used by available processing routes. Optional means use depends on a feature, configuration, connection or consent; it does not mean every route requires a separate provider-selection step. Fallback routing can be automatic. Location identifies the provider's base or a known regional option, not a promise that all processing or storage occurs there.
| Vendor | Purpose | Data | Location |
|---|---|---|---|
| OpenAI | Managed AI responses; legacy or configured optional audio transcription | transcript, prompt and relevant context content; meeting audio for transcription | US |
| Anthropic | Managed AI model responses | transcript, prompt and relevant context content | US |
| Google (Gemini, Workspace APIs) | AI model responses; connected Google services and files Cruxwing creates at your instruction | transcript, prompts and context; information available through authorized Google permissions | US |
| Moonshot AI (optional) | AI model responses (Kimi), depending on model and routing | transcript, prompt and relevant context content | China |
| DeepSeek (optional) | AI model responses, depending on model and routing | transcript, prompt and relevant context content | China |
| Zhipu AI (optional) | AI model responses (GLM), depending on model and routing | transcript, prompt and relevant context content | China |
| Alibaba Cloud (DashScope) (optional) | AI model responses (Qwen), depending on model and routing | transcript, prompt and relevant context content | China |
| OpenRouter (optional) | Configured model routing and automatic fallback to downstream providers | transcript, prompt and relevant context content | US; downstream providers vary |
| Deepgram (optional) | Cloud transcription when selected and configured | meeting audio | US |
| AssemblyAI (optional) | Cloud speaker-labelling routes where available | meeting audio | US |
| Exa (optional) | Web search for fact-checking when configured | search queries that can contain relevant call context | US |
| Lemon Squeezy | Merchant of Record for web subscriptions | name, email, billing address, payment details, purchase and tax records | US |
| Stripe | Direct and fallback subscription payments | name, email, payment details and subscription records | US |
| Apple | Sign-in and applicable distribution or purchase services | sign-in identifiers and purchase records where used | US |
| HubSpot | Demo, download and Enterprise inquiries, marketing contacts; optional website analytics after consent | name, work email, company, phone, team size, inquiry details and permitted page views | US; regional configuration can vary |
| Google Analytics 4 (through Google Tag Manager) (optional) | Website and product analytics after the relevant consent; advertising features off | page views, random or pseudonymous identifiers, event names and limited properties | US |
| Amplitude (optional) | Product and funnel analytics after the relevant website or app choice | random or pseudonymous identifiers, event names and limited properties | US provider; EU or US processing region depends on configuration |
| Calendly (optional) | Demo scheduling; the home page calendar loads as its section approaches the viewport and /demo loads it after a demo request | IP address, browser details, name, email and selected time | US |
| Twilio (optional) | Phone verification where used | phone number | US |
| Connected apps you authorize (optional) | Reading or acting on connected material within granted permissions, including Notion, Asana, Linear, Atlassian, Fireflies, Zoom, HubSpot, Attio, Affinity, Intercom, Sentry, PostHog, Zapier and Slack | information returned by the connected account and content sent for the requested action | Varies by provider and account |
| Configured LM Studio endpoint (optional) | AI responses from the endpoint you configure | transcript, prompt and relevant context content | Your Mac for the default local endpoint; otherwise the configured host |
Shared team records are available according to workspace permissions. Where a permitted user creates a sharing link for a decision or action item, someone with that link can access the shared content until the link expires or is revoked. Payment, sign-in, scheduling and connected-service providers may also act independently under their own terms and privacy notices. We may disclose information where required by law or needed to establish, exercise or defend legal claims. This list is a processing inventory, not evidence that a particular contractual transfer safeguard has been executed.
International processing and transfers
Cruxwing Inc. is incorporated in the United States. Providers listed above include businesses in the United States and China; some services support regional processing in the EU. Configurable model endpoints and connected accounts can introduce other locations. A provider's corporate address does not establish where every request, log or backup is handled.
Providers in China. Moonshot AI, DeepSeek, Zhipu AI and Alibaba Cloud are based in China, which has no EU adequacy decision. The recipients of a cloud request depend on the model, configuration and routing, including any fallback.
EEA and UK transfer requirements depend on the route and parties involved. Coverage by executed data-processing agreements, Standard Contractual Clauses or a UK Addendum has not been verified for every listed route. We do not claim that all transfers have these safeguards. Contact artem@cruxwing.ai for the arrangements applicable to your proposed use and to request copies of any applicable safeguards. Choosing a provider does not itself establish a lawful international-transfer mechanism.
Storage, retention and deletion
Local sessions are stored in the app's Application Support folder on your Mac. The backend holds account, subscription, usage and shared-workspace records and receives content needed for managed processing. Optional providers and a remote model endpoint also receive content sent to their routes.
Retention depends on the purpose and location of the record, whether an account or inquiry remains active, legal recordkeeping duties, security and abuse-prevention needs, and the rights of other people in shared records. We do not promise one deletion deadline for every category or provider.
- Local sessions and exports: retained until cleared or deleted locally. Deleting an account does not by itself erase all local session files, exports or backups. Clear local history separately, preferably before account deletion.
- Account records: the in-app deletion process removes the account and related records covered by that process. Shared team decisions and source quotes, and the teams themselves, can remain for the other people who use them. Audit records and certain recovery-proof hashes are also retained. Those recovery-proof hashes currently have no scheduled automatic expiry; deleting the account does not make every retained record anonymous.
- Demo, Enterprise and marketing contacts: retained according to the ongoing inquiry or relationship, the purpose of follow-up, consent records and applicable legal requirements. You can ask for deletion or object to marketing.
- Usage and security records: retained according to configured retention settings and operational needs for measurement, billing integrity, abuse prevention and investigation. Shared audit records are separate from short-lived usage measurements.
- Billing and legal records: retained for the periods required by applicable tax, accounting and other laws, or as needed for a legal claim. These duties can continue after an account is deleted.
- Third-party processing: retention depends on the provider, product configuration and applicable terms. Local transcription does not create a cloud audio copy, but optional cloud processing is not covered by a blanket zero-retention promise.
Your controls and privacy rights
You can delete your account in the app, clear local history, export supported session content, choose a transcription engine, and disconnect connected accounts. For website analytics, use Privacy choices on the home page. App analytics choices are separate in Settings.
Email artem@cruxwing.ai to request access, correction or deletion, or to raise a concern. Tell us which account or interaction your request concerns; do not send identity documents or meeting recordings unless we explain why they are needed. We may request proportionate information to verify your identity or an agent's authority. A request does not require a new account.
EEA and UK: where the relevant law applies, you may have rights of access, rectification, erasure, restriction and data portability, and may withdraw consent. You can object to processing based on legitimate interests and to direct marketing. Rights depend on the circumstances and are subject to lawful exceptions. You may complain to your competent data-protection authority, including the UK Information Commissioner's Office or an EEA supervisory authority.
United States: depending on your state and whether its law applies to the processing, you may have rights to know or access information, obtain a portable copy, correct or delete it, receive information about disclosures, and opt out of sale, targeted advertising, sharing for cross-context behavioral advertising, or certain profiling. California law may also provide a right to limit certain uses of sensitive personal information. You may use an authorized agent where allowed. We will not discriminate against you for exercising applicable rights.
Timing and appeals: we respond within the period required by applicable law, generally one month for EEA/UK requests and 45 days for covered US state requests. Where a lawful extension is needed, we explain it within the initial response period. If we decline a request, we explain the reason and available review or complaint options. Where your state provides an appeal right, reply to our decision at the same email address with “Privacy appeal.” For a covered Delaware appeal, the response period is 60 days; if denied, you may complain to the Delaware Department of Justice.
Recording and sensitive content
You are responsible for recording lawfully and providing participants with any notice or obtaining any consent required by the applicable law and your organization's rules. A first-use confirmation in the app does not determine the law for every participant or authorize every later call. Only submit sensitive information where you have the necessary authority and legal basis.
AI outputs support your review and can be wrong. They should not be treated as a verified account of a person's conduct or used without human review to make consequential decisions about them.
Children
Cruxwing is intended for adult workplace use and is not directed to children. If you believe a child has provided personal information without appropriate authorization, contact us so we can assess the request and any required action.
Changes and contact
We publish changes on this page and update the date above. For a material change affecting how we use or disclose personal information, we provide additional notice through the service or available account contact details where required by law.
Privacy contact: artem@cruxwing.ai, Cruxwing Inc. Further information: Terms of Service and Security.
