Security & privacy

Built for privileged conversations.

If you record therapy sessions, client calls, board meetings or contract negotiations, you can't use a transcription service that retains audio, trains on it, or sneaks a bot into the room. So we built one that doesn't.

No bot ever joins your call

Scribr is mobile-first. The phone in your pocket is the recorder. There is no Scribr bot, ever, in any meeting. Nobody on the call sees "Scribr has joined".

On-device transcription option

On Pro+, you choose where your audio is transcribed. On-device uses Apple Speech (iOS 26+) or WhisperKit. Audio never leaves your phone for this path. Cloud path uses Deepgram nova-2 — also acceptable for most use cases, with zero retention.

Vault Mode — AES-GCM at rest

Any note can be marked Vault. Vaulted notes are encrypted with AES-GCM using a key derived from your device's Secure Enclave-backed biometrics. Vault notes are excluded from the main list, from search and from the web view at getscribr.app.

Zero-retention partner contracts

Deepgram (cloud transcription) and Anthropic (Claude 3.5 Haiku for summaries) operate under zero-data-retention agreements with MRVL Technologies. Your audio is not stored beyond processing. Your transcripts are never used to train any model.

Your data, your choice

Free tier keeps everything on the device. Pro tier syncs to Scribr Cloud (Supabase storage in the EU) for cross-device continuity. You can disable cloud sync in Settings.

No third-party trackers in the iOS app

Scribr ships with Attribr by MRVL for install attribution and Apple's own crash analytics. No Facebook SDK, no Google Analytics, no ad-network SDKs.

Compliance posture

Honest about where we are.

We don't print SOC 2 / ISO 27001 badges we haven't earned. Here's the truth about Scribr's compliance posture today:

  • GDPR-aligned

    MRVL Technologies is UK-based, data lives in EU regions, data subject requests honoured.

  • Apple App Privacy

    Apple's privacy nutrition label is published and current; review it on the App Store listing.

  • HIPAA

    We support the controls (on-device transcription, no retention, Vault Mode) but don't currently sign Business Associate Agreements. Talk to us if you need one — see Enterprise tier.

  • SOC 2 / ISO 27001

    Not yet — small studio, in the queue for 2026.

Got a question?

Email us. A human answers.

Security questionnaires, BAA enquiries, data-residency conversations, breach notification — same email, same person who built the app.

Direct contact

support@mrvltechnologies.com

Reference the full MRVL legal entity: MRVL Technologies, registered in the United Kingdom.

Try it

Test it on a hard meeting.

Record one privileged conversation, switch to on-device transcription, lock it in Vault Mode. If it doesn't fit your security bar, you've wasted nothing.