Compliance and Security

    At Knap, your trust is our top priority. We understand that data security and privacy are critical to our users, and we are committed to meeting the highest standards in these areas. The foundation for this is our privacy policy.

    How we keep your data private

    Knapsack Assistant

    Our desktop app creates transcripts and meeting notes without storing any of your data in the cloud. We transcribe audio files and generate meeting notes, then delete all data before it gets stored on a cloud server. This is known as ephemeral compute. The transcript and notes are sent back to you and stored on your computer for you to access in the app.

    Knapsack Studio

    The Studio also uses ephemeral compute, but it stores your chat conversations and the content of your Knaps for you to access in the browser. We never train on your data; we never sell your data to AI companies (or anyone else).

    Knapsack Memory

    Memory allows you to connect your data across AI systems. So if you have years of context saved in one chatbot, you can connect it to another chatbot from a different company and you'll be able to access that context. Just like with Knapsack Studio, we do not train on this data or sell it to anyone.

    Illustration of a lone hiker in a lush field
    SOC2 & HIPAA-Compliant

    Current Compliance

    We are proud to be HIPAA-compliant, ensuring that sensitive health data is protected in accordance with the strictest regulations. This demonstrates our ongoing commitment to safeguarding personal and confidential information.

    We are also proud to be SOC 2 - Type 1 compliant and are undergoing an observation period to be SOC 2 - Type 2 compliant. For users who use cloud inference, we use Groq, who are already SOC 2 Type 2 compliant.

    Our compliance team has 30 years of experience working on security and compliance. This represents an area of ongoing investment for us.

    The Knap security program is led by IT and Security Senior Leadership and is responsible for the following areas:

    • Application Security
    • Infrastructure and Network Security
    • Compliance
    • Privacy
    • Corporate Security
    • Physical Security

    Our employees are required to attend annual security awareness training and are informed of their security responsibilities.

    Talk to Our Team
    hiker
    Placeholder Text

    Future Proofing

    Ongoing Efforts

    In addition to HIPAA, we are actively working towards full compliance with:

    • SOC 2 Type 1 and 2: To ensure we maintain strong controls over security, availability, and confidentiality.
    • CCPA: So we meet the privacy rights and data protection standards expected in California and beyond.
    • GDPR: Aligning with the rigorous privacy requirements for protecting user data in the European Union
    Talk to Our Team

    Frequently Asked Questions

    Canyon illustration
    Download

    Keep your data out of the clouds

    Use pre-built AI automations on your data without uploading your files to a server.

    Have Questions?

    Please reach out if you have questions, we're always happy to chat.

    Loading...