How MoPilot handles your data
Where the audio goes, what the server keeps, what the app holds on your machine, and how the build is signed. Written against the code rather than from a template.
Speech is turned into text by a cloud provider. Audio from your microphone and from your computer’s own output is streamed there while a call is running and discarded as soon as the text comes back. No recording is written to disk, on your machine or on ours, and there is no setting that turns recording on.
What the server keeps
Answering sends the recent lines of the call as context. Operational counts are kept without their words. Only if you explicitly opt in may encrypted prompts, answers and attached screenshots be retained for support, abuse, reliability and model-quality investigation, for no more than 30 days. Access requires an authorised staff member to reauthenticate and is logged; withdrawing consent stops capture and schedules existing content for scrubbing, and account deletion removes it. The transcript, answers and debrief on your computer follow the retention setting you control.
Credentials and provider keys
- The app holds a device token and nothing else — encrypted with the operating system’s own keystore, and never handed to the renderer
- No provider API keys exist on the client; answering, vision and transcription all go through this site’s proxies
- Signing in uses RFC 8252 with PKCE — the browser hop, not a password typed into the app
The build itself
The macOS build is signed with a Developer ID and notarised by Apple. That is not cosmetic: macOS records a code-signing requirement rather than an app name, so an unsigned update would silently revoke screen recording, the microphone and the audio tap. The Windows build is signed too.
What it does not do
- It does not join your meetings, so it has no access to anything a meeting platform holds
- It does not read files you did not give it, and it does not browse the web to answer
- It does not watch your screen continuously — a screenshot is sent only with a question you asked
- It cannot promise its window will never be captured; a few recent macOS recorders still can, and the app says so in its own settings
The privacy policy is the authoritative document and it is linked from every page. The help centre’s privacy collection covers the same ground question by question, in all thirteen languages.