Security and digital sovereignty

At SecureTranscript, security goes beyond encryption. Our service is designed to guarantee complete independence from the US Cloud Act and extra-European jurisdictions: your transcriptions never leave the European continent.

Digital sovereignty and data security

Why is digital sovereignty essential?

Transcriptions often contain sensitive or confidential information: personal data, medical information, business strategies, or private testimonies.

When such data is entrusted to a provider subject to the US Cloud Act, it can be requisitioned by US authorities — even when stored on European servers. SecureTranscript processes your data exclusively on servers located on the European continent, operated by a European entity, guaranteeing protection according to the strictest GDPR standards.

Our approach is not just an additional feature — it's the very foundation of our service.

Our security guarantees

1

Independent from the US Cloud Act

Our infrastructure is built entirely on European servers operated by a European entity. No extra-European jurisdiction can compel disclosure of your data.

2

European hosting and processing

Your files and transcriptions are hosted and processed exclusively on the European continent. No transit or storage in the USA, Asia, or any other jurisdiction. 100% local AI using the open-source Mistral model, with no calls to external APIs.

3

Multi-factor authentication (MFA)

Enhanced protection for account access: OTP apps, FIDO U2F security keys (YubiKey, Nitrokey, Token2…) or biometric recognition depending on your hardware.

4

Automatic deletion after processing

As soon as transcription is complete, audio/video source files are immediately and permanently deleted from our systems. No backups, no archive copies, no extended retention.

5

End-to-end encryption

All data transfers are encrypted. Our processes are transparent and clearly explained, avoiding any "black box" in the processing of your data.

6

Full GDPR compliance

Our practices are in full compliance with the European Union's General Data Protection Regulation (GDPR), ensuring legal and secure management of all personal and medical information.

MFA and end-to-end encryption

Access to your account is protected by multi-factor authentication beyond a simple password, and all data transfers are encrypted end-to-end.

Authentication mobile app

Use your preferred authentication app to generate OTP (one-time password) access codes.

FIDO U2F security key

We support FIDO U2F physical security keys. Compatibility with YubiKey, Nitrokey, and Token2 is ensured.

Biometric recognition

Biometric authentication, such as fingerprint or facial recognition, is available for account access if your hardware supports it.

Independent from the US Cloud Act

SecureTranscript is operated by a European entity and does not rely on any infrastructure subject to extra-European data requisition laws.

European entity and servers

Our company is incorporated under European law and our infrastructure runs exclusively on servers located on the European continent. No American cloud provider (AWS, Google Cloud, Azure) or Asian provider is involved in the processing chain.

100% local AI, no foreign API

We run the open-source Mistral language model locally. No calls to ChatGPT, OpenAI, or any other foreign API. Your data is never used to train our models.

Automatic deletion after processing

No source file is retained beyond the time strictly required for transcription.

Immediate erasure

As soon as transcription is complete, source audio/video files are automatically and permanently erased from our servers.

Zero retention, zero backup

We keep no backups or archive copies of your source files. Only the text transcription remains accessible in your account, deletable at any time.

No AI training, no sharing

Your data is never used to train our AI models nor shared with third parties. Strictly confidential, it serves only to deliver the requested service.

Regulatory compliance

SecureTranscript complies with the strictest data protection regulations.

GDPR

Our service is fully compliant with the European Union's General Data Protection Regulation (GDPR), which establishes strict rules regarding the collection, storage, and processing of personal data.

European host

Our servers are operated by a European hosting provider, without recourse to non-European clouds (AWS, Google Cloud, Azure, etc.) or American/Asian AI services.

Frequently asked questions about security

Is my data subject to the US Cloud Act?
No. SecureTranscript is operated by a European entity and uses exclusively servers located on the European continent. Your data is outside the jurisdiction of the US Cloud Act and other extra-European data requisition laws.
Where is my data stored?
All your data is processed and stored exclusively on our secure servers located on the European continent. We do not use any third-party American or Asian cloud services for processing or storing your information.
How long do you keep my audio files?
We do not keep your audio files after transcription. Once the transcription process is completed, the source files are automatically and permanently deleted from our systems.
How do you protect my transcriptions?
Your transcriptions are securely stored and are only accessible to you via your password-protected account. We strongly recommend enabling multi-factor authentication (MFA) — OTP, FIDO U2F key, or biometrics. You can delete your transcriptions at any time.
Do you use my data to train your AI models?
No, we never use your data to train our AI models. Your information is used exclusively for providing the transcription service and is never reused for other purposes.

Ready to try SecureTranscript?

Create your account for free and get 30 minutes of free transcription.

Create account