Recall.ai provides an API to get recordings, transcripts and metadata from video conferencing platforms like Zoom, Google Meet, Microsoft Teams, and more. Get this data with our Meeting Bot API, Desktop Recording SDK, or Mobile Recording SDK.
Summary from the company’s website.
Publicly advertised compliance posture
As observed on September 8, 2026 on the organization’s public trust center.
-
SOC 2
Independent CPA audit of controls for security, availability, and confidentiality.
-
GDPR
Public claim of alignment with the EU General Data Protection Regulation.
-
HIPAA
Public claim of compliance with US health-data privacy and security rules. HIPAA has no certification; compliance is self-attested.
-
CCPA
Publicly advertised on the organization’s trust center.
-
ISO 27001
International standard for an information security management system, certified by accredited bodies.
Compliance timeline
-
September 8, 2026
Posture last observed by Trust Index
Subprocessors
Third parties Recall discloses on its trust center. Linked entries have their own profile in the Trust Index.
71% chain trust: 12 of 17 disclosed subprocessors are themselves in the Trust Index.
- Amazon Web Services Infrastructure Hosting
- Datadog Logging & Monitoring
- Svix Webhook Management
- Google Analytics Website analytics
- PostHog Website analytics
- Airbyte Data Integration
- Google Workspace Operations
- Metabase Data Analytics
- Pylon Support Ticketing System
- Slack Collaboration
- Snowflake Data Storage
- Stripe Payment Processor
- Vanta Security Portal
- Zapier Internal Operations
- Salesforce.com Sales
- AssemblyAI (Optional Subprocessor) Data storage and processing
- OpenAI (Optional Subprocessor) Data storage and processing
Named as a subprocessor by
Organizations in the Trust Index that disclose Recall as a subprocessor.
About this data
The Trust Index reports only what organizations publicly advertise. A missing framework here means no public claim was observed as of September 8, 2026; it never means an organization is non-compliant. HIPAA entries reflect a public claim of compliance; no HIPAA certification exists. Corrections are welcome and verified against public evidence. Read the full methodology.