Skip to main content
BuildBetter only records meetings according to rules you configure. You have complete control through:
  • Recording rules: Set criteria for which meetings to record
  • Calendar settings: Specify which calendars to monitor
  • Manual controls: Override automatic settings for specific meetings
  • Blacklist options: Exclude specific meeting types or participants
The system never records without your explicit configuration and permission, and always follows the consent workflows you’ve established.
Courts have generally ruled that AI-powered transcription is treated similarly to recording, particularly in states requiring all-party consent. For example, California’s TranscriptionStar case under Penal Code §632 established that transcription services are subject to the same consent requirements as recordings.This means that BuildBetter’s transcription process must also be compliant with:
  • State-specific recording consent laws
  • Relevant data protection regulations like HIPAA and CCPA where applicable
BuildBetter’s compliance certifications (SOC 2, GDPR, HIPAA) ensure that both recording and transcription processes meet regulatory requirements.
GDPR compliance for recordings requires several measures:
  1. Legal basis: Establish a legal basis for processing (consent, legitimate interest, etc.)
  2. Transparency: Clearly inform participants about recording before the meeting
  3. Data minimization: Only record necessary meetings and content
  4. Access controls: Limit access to recordings to those with a need to know
  5. Retention limits: Set appropriate retention periods
  6. Subject rights: Honor data subject requests (access, deletion, etc.)
BuildBetter provides tools to help with these requirements, including consent mechanisms, access controls, and retention settings. Our platform is fully GDPR compliant, giving you the necessary infrastructure to maintain compliance.
BuildBetter maintains several key compliance certifications:
  • SOC 2 Type 2: Covering security, availability, and confidentiality
  • GDPR: Full compliance with European data protection requirements
  • HIPAA: Healthcare data protection (available for healthcare customers)
  • CCPA/CPRA: California privacy requirements
We also provide an AI Transparency Policy detailing how our AI technologies are used and how data is handled.These certifications ensure that BuildBetter’s data handling practices meet the highest standards for security and privacy. For detailed documentation, enterprise customers can request access to our complete compliance package.
Yes. BuildBetter offers several documentation features:
  • Consent logs: Records of notification delivery and acknowledgments
  • Access logs: Tracking who has viewed recordings
  • Processing records: Documentation of data processing activities
  • Retention tracking: Records of when data is deleted according to policies
  • Policy management: Tools to document and implement compliance policies
Enterprise customers have access to additional compliance reporting features and can request access to our detailed security documentation.

Privacy Controls

BuildBetter offers several content protection features:
  • Automatic PII detection: Identifies potentially sensitive information
  • Redaction tools: Remove sensitive content from transcripts
  • Custom vocabulary filters: Set specific terms for automatic redaction
  • Access restrictions: Limit who can view sensitive recordings
  • Export controls: Manage how content can be shared
These tools help protect sensitive information while preserving valuable insights.
Yes. BuildBetter provides several post-recording editing capabilities:
  • Transcript editing: Modify or remove specific content
  • Redaction: Obscure sensitive information
  • Segment removal: Delete portions of recordings
  • Custom exports: Create sanitized versions for sharing
  • Annotations: Add context or corrections
Editing capabilities help you maintain compliance while preserving valuable information.
Retention periods are customizable based on your requirements:
  • Starter plan: 30-day default retention
  • Professional plan: 90-day default retention
  • Enterprise plan: Custom retention policies
You can configure different retention periods for different meeting types or content categories. Automatic deletion occurs at the end of the configured retention period.
Your organization retains full ownership of all data recorded and processed in BuildBetter. As our founder Spencer puts it: “BuildBetter excels at a lot of stuff, but one of the big ones is I can confidently say that no other call recorder can: ‘it’s your data.’”Your data is:
  • Never used to train our AI models
  • Never shared with third parties without your explicit permission
  • Fully exportable at any time
  • Deletable at your request
BuildBetter acts as a data processor, not a data controller (unless specifically arranged otherwise), meaning you maintain ultimate control over your information.

Best Practices

Effective team training should include:
  1. Policy education: Clear guidelines on when and how to record
  2. Legal requirements: Basic understanding of applicable laws (federal one-party consent and state-specific requirements)
  3. Consent procedures: Proper methods for obtaining and documenting consent
  4. System training: How to use BuildBetter’s consent features
  5. Scenario practice: Handling objections or special situations
  6. Regular updates: Refreshers when policies or laws change
BuildBetter provides training materials and getting-started videos that you can customize for your organization. These resources are available at app.buildbetter.app/getting-started.
Yes. We strongly recommend creating a formal recording policy that addresses:
  • When recording is permitted or required
  • Who has authority to initiate recordings
  • Proper consent procedures based on jurisdiction
  • Access and sharing restrictions
  • Retention and deletion schedules
  • Handling of sensitive information
  • Compliance with applicable regulations
Your policy should account for both federal standards (ECPA) and any state-specific requirements that apply to your operations. BuildBetter can provide policy templates as a starting point for your organization.For enterprise customers operating across multiple jurisdictions, we recommend a policy that defaults to the strictest applicable standards (typically all-party consent) to simplify compliance.

Risk Mitigation

For organizations operating across multiple states or countries, we recommend:
  1. Default to the strictest standard: Apply all-party consent rules to all recordings to simplify compliance
  2. Implement location detection: Configure settings based on participant locations when possible
  3. Document state-specific procedures: Maintain clear guidance for employees on jurisdiction-specific requirements
  4. Regular policy reviews: Update procedures as laws change
BuildBetter’s platform can accommodate these multi-jurisdiction strategies while maintaining consistent user experiences and workflows.

Need compliance assistance?

Contact our compliance specialists for personalized guidance