Data Processing Agreement
Last updated: July 8, 2026
For controlled beta use. Counsel review is required before broad public launch.
1. Purpose
This Data Processing Agreement ("DPA") describes how Cognora processes personal data on behalf of customers and workspace administrators during the controlled beta. It supplements the Privacy Policy and Terms of Service. A separately signed agreement may supersede this page where executed in writing.
2. Parties and roles
- Customer — the account holder or workspace administrator who determines how meeting and workspace data is captured and shared.
- Cognora — the beta service provider that processes data to deliver capture, transcription, summarization, recall, integrations, and billing features.
For Personal-scope use, you are typically both user and controller of your data. For Workspace use, the workspace administrator directs how shared workspace data is processed.
3. Scope of processing
Processing is limited to providing Cognora services, including:
- Storing and indexing meeting audio, transcripts, summaries, and related metadata.
- Operating search, recall, and Cognora AI over authorized memory.
- Running connected integrations you enable.
- Billing, account administration, security, and support.
4. Customer instructions
Cognora processes data according to your use of product features, workspace settings, and documented instructions in these terms. Do not use Cognora to process data you are not authorized to share.
5. Confidentiality
Cognora limits access to personal data to personnel and contractors who need it to operate the service and who are bound by confidentiality obligations.
6. Security measures
We apply access controls, authenticated APIs, server-side token handling, and separation between Personal and Workspace memory. See the Security page for a beta summary.
7. Subprocessors
Cognora uses category-based subprocessors, including providers for:
- Cloud hosting, database, cache, and object storage.
- Speech-to-text transcription.
- Large language model inference.
- Semantic memory/index services.
- Payment processing (Razorpay).
- Connected integrations when you authorize them.
We may update subprocessors as the product evolves. We require subprocessors to process data only to deliver the service.
8. Data subject requests
Requests from individuals to access, correct, export, restrict, or delete personal data may be sent to getcognora@gmail.com. Workspace administrators should route employee or participant requests according to their own policies and applicable law.
9. International transfers
Data may be processed in India and in other countries where our infrastructure or subprocessors operate. Where required, we will use appropriate safeguards consistent with applicable law and the beta stage of the product.
10. Deletion and return
Upon verified request or account termination, Cognora will delete or return personal data where technically feasible. Deletion from all third-party systems (including semantic index providers) may be limited by provider capabilities and legal retention requirements.
11. Contact
DPA inquiries: getcognora@gmail.com
Questions? Contact getcognora@gmail.com