Security standards

Security isn't an add-on at Kuno — it's a core principle. This page explains how we protect your recordings and data, technically and organizationally, throughout the EU.

At a glance

  • All data is stored and processed exclusively in EU data centers (Germany) - no transfer to third countries
  • Encryption throughout: TLS 1.3 in transit, AES-256 at rest; the Bluetooth connection between device and app is encrypted
  • No permanent copies remain on the Kuno device - recordings are deleted after secure transfer
  • Strict access controls, two-factor authentication, and logged employee access on a need-to-know basis
  • GDPR-compliant, with a Data Processing Agreement (DPA) and EU-based processors
  • You stay in full control: export and delete your data anytime in the Kuno app

At Kuno, we treat your voice recordings for what they are: highly sensitive data. That’s why security and EU data sovereignty are built firmly into the device, the app, and the infrastructure — not bolted on afterward.

Where your data lives

All recordings, transcripts, and account data are stored and processed exclusively in data centers within the European Union (located in Germany). There is no transfer to third countries such as the US. This means your data is fully subject to European data protection law.

Encryption at every step

Your data is protected at every stage:

  1. On the device: Recordings are cached in encrypted form on the Kuno recorder.
  2. In transit: The Bluetooth connection between the Kuno device and the Kuno app is encrypted; uploads to our servers use TLS 1.3.
  3. At rest: In the EU cloud, your data is stored encrypted with AES-256.

Note: After a recording has been successfully and securely transferred to the Kuno app, no permanent copies remain on the device. This keeps recordings protected even if the recorder is ever lost.

Access control

Access to systems is strictly governed by the need-to-know principle. Employee access requires two-factor authentication and is logged. No one at Kuno listens to your recordings out of curiosity — access happens only when you explicitly request support, and only to the extent necessary.

GDPR and data processing

Kuno is fully aligned with the GDPR. For business use, we provide a Data Processing Agreement (DPA). The processors we use are carefully vetted and based in the EU.

Important: Voice recordings of conversations are subject to Section 201 of the German Criminal Code (StGB) in Germany. Only record with the consent of everyone involved. The visible recording LED on the Kuno device helps you establish transparency.

Your control over your data

You decide what happens to your data. In the Kuno app, you can at any time:

  1. delete individual recordings or your entire account,
  2. export your data.

Deleted data is permanently removed from our systems.

Questions?

For questions about our security standards, reach us at [email protected]. We answer transparently and concretely.

Still need help?

We usually reply within one business day.