Privacy & security

Your data, protected to the highest standard.

Brieff holds your firm's client conversations and the context behind them. We treat the privacy and security of that data as foundational: encrypted, access-controlled, kept on trusted infrastructure, and never used to train AI.

Encrypted in transit and at rest.

Your data is encrypted at every step, both while it's moving and while it's stored, so it's protected end to end.

Multi-factor authentication.

Firm accounts are protected with multi-factor authentication, with enterprise single sign-on available for firms that need it.

Never used to train AI.

Your client data is never used to train AI models. The AI works on your firm's content only, to help you prepare and summarise.

Trusted infrastructure.

Runs on secure, production-grade cloud infrastructure from trusted technology providers, with clear separation between core application systems and recording workflows.

You control what's shared.

Clients only ever see what you choose to share. Transcripts, AI summaries and prep notes stay private to your firm.

GDPR compliant.

Brieff is GDPR compliant, with a data processing agreement available for your firm.

FAQ

Privacy & security questions.

Privacy

Brieff collects the account information you provide (your name, email and mobile number), the advisory content you and your clients create (pre-meeting check-ins, meeting recordings, transcripts, notes and action items), and standard usage and device data. You can read the full breakdown in our privacy policy.

Only the people in your firm you've granted access to. Your clients only ever see what you choose to share with them. Brieff staff don't access your content except in limited circumstances (such as responding to a support request or where required by law), and only under strict access controls.

Brieff stores your data in secure, managed cloud infrastructure provided by trusted technology partners. Core workspace data is stored in protected cloud databases, while meeting recordings and transcripts are handled through secure media systems designed specifically for recording workflows.

Access to your data is controlled through Brieff's workspace permissions, authentication, and operational security practices. For firms with specific data residency, compliance, or procurement requirements, we can provide more detailed information during security review.

We keep your data for as long as your account is active or as needed to provide the service. You can delete content from your workspace at any time, and when you close your account we delete or de-identify your data, except where we're legally required to retain certain records.

Security

Brieff is designed to protect sensitive firm and client information from the ground up. We use secure, production-grade cloud infrastructure, strong authentication, encrypted storage, and controlled access practices to keep your data protected.

Each workspace is access-controlled, so information is only available to authorised users. Meeting recordings, transcripts, client details, documents, and workflow data are handled through secure systems built for reliability, privacy, and operational control. For firms with deeper security requirements, Brieff can provide more detail on our infrastructure, data handling, and access controls during review.

Yes. Brieff supports multi-factor authentication for firm users through our secure sign-in system. For organisations with deeper security requirements, Brieff can also support single sign-on through your firm's identity provider as part of an enterprise setup.

Client access is handled separately through secure, controlled access links rather than shared passwords.

Brieff is built on secure, production-grade cloud infrastructure from trusted technology providers. We use managed cloud hosting, secure authentication, encrypted storage, and controlled operational access to keep the platform reliable and protected as we scale.

Our infrastructure is designed to support sensitive client work, with clear separation between core application systems and media/recording workflows. For firms with deeper security or procurement requirements, we can provide more detail on hosting, data handling, and access controls during review.

AI

No. Your client data is never used to train AI models. Brieff's AI works only on your firm's own content (check-ins, recordings and notes) to prepare, transcribe and summarise your advisory conversations. It's never fed back into model training.

Brieff's AI Notetaker securely captures meeting audio, creates a transcript, and turns the conversation into structured notes, follow-ups, and client-ready context inside Brieff. Recordings and transcripts are kept within the relevant workspace so your team can review the source material, confirm details, and reuse important context across the matter or engagement.

Access is controlled, so meeting content is only available to authorised users. Brieff is designed for sensitive client work, with recording and transcript workflows handled separately from the core application and protected with secure storage and access controls.

Legal & compliance

Yes. Brieff is GDPR compliant, and a GDPR-compliant data processing agreement (DPA) is available. The underlying platform also complies with the EU-U.S., UK and Swiss Data Privacy Frameworks for international data transfers.

Yes. A data processing agreement is available for firms that need one for their own compliance. Just get in touch and we'll provide it.

Have a privacy or security question?

Talk to one of our co-founders, or read the detail in our privacy policy and terms.