How Secure is Fireflies AI - 2024

This is an email and links from Fireflies in April 2024. Communicating how they manage and think about security being mindful of US and international laws and expectations.

 

Links 

https://fireflies.ai/blog/security-at-fireflies-ai 

https://fireflies.ai/blog/is-fireflies-ai-safe

https://fireflies.ai/blog/the-top-15-frequently-asked-questions-about-fireflies-security-2

Thank you for trusting Fireflies for your meetings.

We understand that your meetings often contain sensitive information, and that's why we're committed to building the most secure AI notetaker on the market.
This commitment is reflected in our recent releases, which include private storage and custom data retention, as well as our compliance with stringent security frameworks like SOC 2 Type II, HIPAA, and more. We never share, sell, or use your data for training purposes, and give you complete control over it—you can delete your data at any time, permanently and irreversibly.
With that said, we have now updated our Privacy Policy to ensure transparency and compliance with international data protection standards, including the EU-U.S. Data Privacy Framework (DPF) and the Swiss-U.S. Data Privacy Framework.
Starting May 1, 2024, our updated Privacy Policy will take effect and apply to all Fireflies products. The key highlights include:
  1. Disclosure of Personal Information: We inform users about the type or identity of third parties to which Fireflies discloses personal information, and the purposes for which it does so.
  2. Access to Personal Data: Users have the right to access their personal data. Learn more here.
  3. Choice and Means for Limiting Use and Disclosure: Fireflies offers users choices and means for limiting the use and disclosure of their personal data. More information here.
  4. Compliance with Data Privacy Frameworks: Fireflies complies with the EU-U.S. Data Privacy Framework, the UK Extension to the EU-U.S. Data Privacy Framework, and the Swiss-U.S. Data Privacy Framework. For more details, please visit the U.S. Department of Commerce’s Data Privacy Framework (DPF) program website here.
  5. European Data Protection Authorities: Fireflies is committed to cooperating with relevant European data protection authorities to address complaints concerning our handling of personal data and human resources (HR) data.
  6. FTC and DOT Compliance: Fireflies is subject to the investigatory and enforcement powers of the Federal Trade Commission (FTC) and/or the U.S. Department of Transportation (DOT).
  7. Binding Arbitration: Under certain conditions, users have the possibility to invoke binding arbitration. Fireflies follows the terms as set forth in Annex I of the DPF Principles.
  8. Disclosure to Public Authorities: Fireflies may disclose personal information in response to lawful requests by public authorities, including to meet national security or law enforcement requirements.
  9. Onward Transfers: Fireflies acknowledges its liability in cases of onward transfers to third parties.
No action is required from you at this time, but we encourage you to familiarize yourself with the updated policy. Your continued use of any Fireflies product constitutes your acceptance of these updated terms.
If you have any questions or concerns, feel free to contact security@fireflies.ai.
To learn more about our approach to security, here are some helpful resources:
Best regards,
Fireflies Security and Compliance Team