Scope and controller
1. What this policy covers
This policy applies specifically to Meeting Summarizer by Chat Everywhere, including the remote MCP server at /mcp and its tools in ChatGPT or another MCP-compatible client. It supplements the Chat Everywhere general privacy notice. If the policies conflict about this plugin, this plugin-specific policy controls.
The data controller is Explorator Technology Inc., operating as Explorator Labs, registered in Ontario, Canada. Contact us at team@chateverywhere.app.
Tool transparency
2. Inputs we receive and outputs we return
The plugin processes a tool call only after you ask ChatGPT to use Meeting Summarizer or approve its use. Depending on the selected tool, the input can contain:
- a meeting search phrase;
- optional date filters and a result limit;
- a Meeting Summarizer meeting ID;
- a pagination cursor; or
- a question used to find relevant transcript excerpts.
Depending on the request, the output can contain meeting titles, dates, summaries, reports, mind maps, source filenames or source metadata, transcript availability, transcript excerpts, or bounded pages of a transcript. The plugin also returns links that let you open the meeting in Chat Everywhere.
| Tool | Inputs received | Data returned | Action behavior |
|---|---|---|---|
search | Search text. | Up to 10 matching meeting IDs, titles, and links. | Read-only. Does not change Meeting Summarizer data. |
fetch | Search-result ID. | A complete citable meeting document containing its summary, report, mind map, available transcript, metadata, and link. | Read-only. Does not change Meeting Summarizer data. |
search_meetings | Optional search text, start and end dates, result limit, and pagination cursor. | Meeting IDs, titles, creation dates, statuses, summaries, and the next-page cursor. | Read-only. Does not change Meeting Summarizer data. |
get_meeting | Meeting ID. | Meeting summary, creation and update dates, status, report, mind map, source metadata, transcription model, and transcript availability. | Read-only. Does not change Meeting Summarizer data. |
search_meeting_transcript | Meeting ID, transcript question, and optional result limit. | Relevant transcript excerpts with start and end timestamps and, when available, a relevance-distance score. | May create or refresh a derived transcript search index when needed. It does not modify the meeting or source transcript. |
read_meeting_transcript | Meeting ID, optional pagination cursor, and result limit. | A bounded page of timestamped transcript blocks, the next-page cursor, and whether more blocks remain. | Read-only. Does not change Meeting Summarizer data. |
What is not sent to us
The MCP server does not request or receive your ChatGPT password, full ChatGPT conversation history, unrelated ChatGPT memories, or the final answer ChatGPT generates after a tool call. It receives only the explicit tool arguments selected for the request.
Collection and use
3. Data categories, purposes, and retention
We collect only what is needed to authenticate the connection, retrieve your meetings, protect the service, and understand whether tools operate successfully.
| Category | Purpose | Retention |
|---|---|---|
| Identity and access Chat Everywhere user ID, OAuth identity claims, and paid-plan eligibility. | Sign you in, enforce the openid scope, confirm plan access, and restrict every result to meetings you own. | While your account is active. We complete an approved account deletion request within 30 days, unless law requires longer. |
| Tool request data Search text, meeting ID, date range, cursor, limit, or transcript question. | Execute the tool you or ChatGPT selected. A transcript question is converted to an embedding to find relevant transcript passages. | Processed for the request and not saved as meeting content or in our product analytics. OpenAI may retain embedding API abuse-monitoring logs for up to 30 days. |
| Meeting content Titles, dates, summaries, reports, mind maps, source metadata, and transcript text. | Return the meeting information you requested to ChatGPT or your selected MCP client. | Until you delete the meeting or request account deletion. Active records and associated stored files are removed when meeting deletion succeeds; residual backup or security copies are removed or overwritten within 30 days, unless law requires longer. |
| Transcript search index Transcript chunks and numerical embeddings created when transcript search needs them. | Find transcript excerpts relevant to your question without returning an unbounded transcript. | Stored with the meeting until that meeting is deleted. The index is deleted with the meeting record. |
| Tool usage analytics User ID, tool name, success or failure, duration, and an error category when applicable. | Monitor reliability, investigate failures, and prevent abuse. Analytics do not include search text, meeting IDs, transcript text, or tool output. | Until account deletion or an approved deletion request, which we complete within 30 days. Limited security records may be retained longer when legally required. |
| Rate-limit counter A one-way hash derived from your user ID and a request count. | Limit automated abuse without placing your raw user ID in the rate-limit key. | Up to 60 seconds. |
Service providers
4. Who receives or processes the data
We do not sell plugin data. The following recipient categories process data only to provide, secure, or operate this plugin:

Explorator Technology Inc.
Operates the service and provides customer support.
OpenAI / ChatGPT
Receives tool output requested through ChatGPT. OpenAI’s embedding API also processes transcript chunks and transcript-search questions when semantic transcript search is used.
Clerk
Provides sign-in, OAuth authorization, and identity verification.
Vercel
Hosts the application and processes MCP network requests.
Neon
Stores meeting records, summaries, reports, transcript indexes, and embeddings.
Google Cloud Storage
Stores source recordings and transcript files used by Meeting Summarizer.
Upstash
Stores the short-lived, hashed rate-limit counter.
PostHog
Processes the limited tool-usage analytics described above.
We may also disclose data when required by law, to protect users or the service from fraud or harm, or as part of a corporate transaction subject to appropriate confidentiality and legal safeguards.
OpenAI and ChatGPT
5. How ChatGPT and the embedding API handle data
When you use the plugin in ChatGPT, the tool inputs and outputs can become part of your ChatGPT conversation. OpenAI controls how that conversation is retained and whether it is used to improve its services based on your ChatGPT plan and data controls. Disconnecting this plugin stops new access; it does not delete earlier ChatGPT conversations. You must manage or delete those conversations in ChatGPT.
Separately, semantic transcript search uses OpenAI's /v1/embeddings API. Explorator Labs does not opt in to share this API data for model training. OpenAI states that API data is not used to train its models unless the API customer opts in, that the embeddings endpoint stores no application state, and that abuse-monitoring logs can be retained for up to 30 days.
Your choices
6. User controls
- 1. Choose when the plugin runs. You control whether ChatGPT calls a Meeting Summarizer tool and what meeting request you make.
- 2. Disconnect access. Remove Meeting Summarizer in ChatGPT's plugin settings or your MCP client. This prevents future tool calls but does not delete meetings already stored in Chat Everywhere.
- 3. Delete a meeting. Open the meeting in Chat Everywhere and choose Delete. This removes its database record, associated transcript and source files, translated transcript files, and transcript search index.
- 4. Manage ChatGPT copies separately. Use ChatGPT's conversation and data controls to manage content retained in ChatGPT after a tool returns it.
- 5. Exercise privacy rights. You may request access, a copy, correction, restriction, or deletion of your personal data by emailing team@chateverywhere.app. Include your registered email address and the request. We may verify your identity and will respond within 30 days.
Boundaries and safeguards
7. Security, minimization, and prohibited data
The plugin uses browser-based OAuth and requests only the openid identity scope. Your password is handled by the sign-in provider and is not shared with the MCP server or ChatGPT. Every meeting query is restricted to the authenticated owner. The published plugin tools cannot edit or delete meetings, send email, post content, or make purchases.
Do not use the plugin to request or expose payment-card data, protected health information, government identifiers, passwords, API keys, one-time codes, or other authentication secrets. If a meeting contains sensitive information, confirm you have the right and consent to process it before using the plugin.
We use reasonable administrative, technical, and organizational safeguards, including encrypted network transport, access controls, ownership checks, bounded transcript responses, and service rate limits. No internet transmission or storage system is completely secure.
Contact and updates
8. Policy changes and contact
We may update this policy when the plugin's tools, recipients, or data practices change. We will publish the revised date here and, when a change is material, provide additional notice where required.
- Controller: Explorator Technology Inc.
- Email: team@chateverywhere.app
- Service: v2.chateverywhere.app
Last updated: August 10, 2026 · Version 1.0