Security & Privacy Overview

At KolWrite, protecting your data is our top priority. We employ enterprise-grade security measures, strict data minimization policies, and robust encryption.

Client
HTTPS/TLS
WAF
AWS
Secure Processing
GPU

KolWrite General Security Posture

The following security protocols apply to both your personal user details and the content and files you upload, with stricter application to the content.

Data Security Measures

Encryption at Rest

Your data is protected using enterprise-grade AES-256 encryption standards.

Encryption in Transit

Data is transmitted securely via HTTPS/TLS protocols.

Infrastructure

The core system operates on highly secure cloud infrastructure (AWS and Google Cloud) which holds industry-leading certifications like SOC 2 Type II, ISO 27001, and HIPAA.

Organizational Compliance

KolWrite's practices are designed to adhere to current privacy guidelines, including HIPAA standards, and we are currently in the process of completing our full compliance documentation.

User Control and Data Privacy

AI Ethics and Training

You maintain full control over how your data is used. A dedicated option in your user profile allows you to toggle off data usage for service improvement, which strictly excludes your audio and transcripts from any model training or improvement processes. In the API console, your data is never used for any training process.

On-Premise Option

For clients handling highly sensitive data, KolWrite offers a custom on-premise installation, which ensures the data remains entirely within the client's controlled environment.

Data Deletion in App vs. API Console

With KolWrite, you can be sure that your data is always deleted on demand:

Feature Developers API Console Security Standard Web App (App Security)
Data Deletion Transcription artifacts are hard-deleted automatically after each use by design. Users are in charge of their own storage. Once the user deletes a file, it is hard-deleted from the system.