> ## Documentation Index
> Fetch the complete documentation index at: https://docs.aircaps.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Data & privacy

> What AirCaps keeps, for how long, and how to delete it.

**We don't use your audio or transcripts to train or improve models.** Your data is used only to process your requests.

## What we keep

| Data | Kept for |
| - | - |
| **Streaming audio and transcripts** (A5S v2 Streaming) | Not stored. Audio is processed in memory and the text is sent only to you. |
| **Uploaded files** (`POST /v1/files` or an upload URL) | Deleted as soon as the transcript that uses them finishes (completed, failed or canceled). Unused uploads are deleted after 24 hours. |
| **Audio from `audio_url`** | Downloaded only while the transcript is processed, then deleted. |
| **Processing copies** of the audio | Deleted when the transcript finishes. |
| **Transcripts** (text, words, speakers) | 30 days after completion, or until you delete them with [`DELETE /v1/transcripts/{id}`](/api-reference/delete-transcript). |
| **Transcript details you send** (`metadata`, `audio_url`, webhook URL) | Removed when the transcript is deleted or expires. |
| **Webhook auth header** (`webhook_auth_header_value`) | Removed as soon as the webhook is delivered or delivery fails for good. |
| **Usage records** (duration, status, timestamps) | Kept for usage reporting and billing; they contain no audio, text or metadata. |
| **Account** (email, name, limits) | For the life of the account. API keys are stored only as SHA-256 hashes. |
| **Logs** | Requests (endpoint, status, timing and IDs). Logs don't contain audio or transcripts. |

## Deleting data

* **A transcript:** `DELETE /v1/transcripts/{id}` deletes it immediately. If it is still processing, it is canceled.
* **Uploads:** deleted automatically, as above.
* **Your account and all its data:** [contact us](https://research.aircaps.com/contact).

## Security

* **In transit:** every connection uses TLS: your client to the API, between our services, to storage and to our database (with certificate verification).
* **At rest:** stored data is encrypted with AES-256.
* **Isolation:** every request is scoped to your account; no account can read another's data.
* **Keys and webhooks:** API keys are stored as hashes and can be revoked at any time; webhooks are signed ([Standard Webhooks](/guides/webhooks)).

## Where data is processed

In the United States, using these infrastructure providers:

| Provider | Used for |
| - | - |
| Modal | Running the API and the models |
| Cloudflare (R2) | Storing uploads and transcripts |
| Supabase | Account and transcript records |
| Render | The public API endpoint (`api.aircaps.com`) and the console |

For a data processing agreement, custom retention or a dedicated deployment, [talk to sales](https://research.aircaps.com/contact).


This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.