Browse documentation

Privacy & Audit Log

On-device modes, enforced offline mode, and the data-egress audit log.

RecorderDesk is built so you can verify where your data goes rather than take anyone's word for it.

Privacy modes & offline mode

  • Privacy modes — the app runs in On-Device, Hybrid, or Cloud mode; the current mode is always shown in the sidebar.
  • Offline Mode — enforced at the network boundary. Every cloud-capable feature is gated, with no silent fallback, so a sensitive meeting never leaves the room.

Data & Compliance

The Data & Compliance page is a dedicated dashboard with:

  • • A data-flow disclosure describing what each feature would send, and where — including the update checker, which reaches GitHub Releases on launch, every 6 hours, and whenever you ask, but never in Offline Mode or if you've turned auto-check off.
  • • An Activity Log (audit log) recording app actions and data-egress events, tagged by category (recording, transcript, summary, export, model, MCP, automation, privacy, settings, …) and severity. Egress events carry a badge.
  • Filter by category, egress-only, date range, or search; export as CSV or JSON; set retention (30 / 90 / 180 days or forever); and clear the log.

Consent & storage

  • On-screen consent notice — optionally show participants a recording-consent notice; when shown, it's written to the same audit trail.
  • • Storage is encrypted via the OS secure store, with Electron security hardening.
  • Crash reports stay local — uncaught exceptions and crashes are written to the local Activity Log only; there's no crash-reporting server to send them to.
Fully private recipe. Choose Local transcription, an on-device summary provider, and turn on Offline Mode — then confirm in the Data & Compliance log that no egress occurred.
Was this page helpful? Get RecorderDesk