Common compliance questions about Autocapture, answered in one place.
Is this a form of employee monitoring?
Scribe focuses on the work, not the people.
- You have full control to choose which teams and apps you want visibility into and where work gets captured, and you can edit this at any time. Any activity outside of those apps is never captured.
- Your activity is private by default. Everyone sees their own activities. On pro, seeing team-wide activity requires admin to request an access to the activity owner.. On Enterprise, there's a second layer. Team activity is pseudonymized by default. Even admins see a stand-in name rather than the employee's.
- Our Smart Privacy Screen is configurable and customizable to detect and redact sensitive information before captured data leaves your local environment
- Each team member can remove discovered activities from their own list, which will also be removed from team activity and provide feedback to help prevent similar activities from being recommended in the future. And nothing captured by Autocapture is ever published without human review.
What compliance standards does Scribe meet?
Scribe is SOC 2 Type II audited, and supports customer compliance with workplace monitoring and data protection laws like HIPAA, FERPA, CCPA and the EU/UK GDPR. For compliance resources and more details on Scribe's information security and compliance programs, visit Scribe's Trust Center.
Does Scribe sign a HIPAA Business Associate Agreement (BAA)?
Yes, for Enterprise customers. See HIPAA Compliance for details.
Can I show my team a notice before Autocapture is turned on?
Yes. Scribe's Trust Center includes resources — including sample employee notices — that you can adapt and share with your team before Autocapture is deployed.
Is my data used to train AI models?
Scribe does not use Enterprise customer data to develop, train or fine-tune AI models, and doesn't permit any third party to do so either.
Where can I find detailed security documentation for a review?
Scribe's Trust Center has documentation for security reviews, including audit reports, Scribe's cyber and technology errors & omissions insurance certificates, and compliance certifications.
Good to know
Compliance requirements can vary by industry, your location or the location of your users. If you need something specific for your organization, like a signed BAA, reach out to your Scribe contact or Scribe Customer Support at support@scribehow.com.