m
Margin
security

Your meetings are your data.

Otter sends every word to OpenAI. We don't, and we let you not, either. Self-host the model on your own GPUs. Set retention to 30 days. Encrypt with your own key. Margin still works.

SOC 2 Type II

In progress with Vanta. Type I letter available on request. Annual third-party penetration tests planned.

Self-hosted ML

Enterprise tier runs the LLM in your VPC. Transcripts never leave your network. We are the only AI notetaker that offers this.

Per-workspace retention

30 / 90 / 365 days, or 'delete after extraction'. Admin sets, no override.

Encryption

TLS 1.3 everywhere. AES-256 at rest. Optional BYOK for column-level encryption on transcript text.

Auth

Magic-link by default. SAML SSO on Enterprise. SCIM provisioning. Session JWT cookies.

Consent

Recall.ai bot announces itself in the meeting and shows a consent banner. Required by two-party-consent states.

contact

Security questions: security@margin.app

Vulnerability disclosure: security@margin.app · PGP key on request.