Hukuki
Gizlilik Politikası
Last updated: 25 July 2026
This Privacy Policy explains how RecapButler ("we", "us") collects, uses and protects personal data when you visit this website, join our early access waitlist, or use the RecapButler service during its early access period.
We have written this policy to be readable. Where a legal term is unavoidable, we explain it. This policy is drafted with the EU General Data Protection Regulation (GDPR) and the Turkish Personal Data Protection Law No. 6698 (KVKK) in mind.
Who we are
RecapButler is an approval-gated meeting-to-ops service for agencies, operated by Simay Yenice Astro Tasarım, a sole proprietorship established by Simay Yenice, registered at Hatboyu No 7/4, Erenköy, İstanbul, Türkiye (Turkish tax number 37045662610). For the purposes of GDPR and KVKK, Simay Yenice Astro Tasarım (operating RecapButler) acts as the data controller for the data described in the "Website and waitlist" section below, and as a data processor for meeting content processed on behalf of early access customers.
Contact for all privacy matters: hello@recapbutler.com
What we collect
Website visitors
We keep website data collection minimal:
- Technical logs. Our hosting infrastructure records standard server logs (IP address, browser type, pages requested, timestamps) for security and reliability. Logs are retained for a limited period and are not used for advertising.
- No advertising trackers. We do not run third-party advertising or cross-site tracking pixels on this site.
Waitlist and early access sign-ups
When you join the early access waitlist, we collect:
- Your email address.
- The page you signed up from and the language you were browsing in.
- Anything you voluntarily tell us about your agency (for example team size or the tools you use), if we ask and you choose to answer.
We use this information to manage the waitlist, contact you about early access, and understand who is interested in the product. Legal basis: your consent (GDPR Art. 6(1)(a); KVKK Art. 5), which you may withdraw at any time by emailing us or using the unsubscribe link in any message. We do not sell or rent waitlist data to anyone.
Account data
If you create an account in the RecapButler app, we collect:
- Your sign-in email address and password credentials (passwords are stored only in hashed form by our authentication provider).
- Your name, if you provide it, and your preferred language.
- The workspace or organization you belong to, your role in it, and the actions you take that form the audit trail (for example approving a card).
We use this data to operate your account and the service. Legal basis: performance of a contract (GDPR Art. 6(1)(b); KVKK Art. 5(2)(c)). Retention: for the life of your account, plus any period the law requires; deleting your account removes the underlying data as described below.
Billing and payment data
If you subscribe to a paid plan, payment is handled by Creem, which acts as our Merchant of Record. Creem collects and processes your payment details (such as card or billing information) as an independent controller under its own privacy policy; we do not receive or store your full card number. From Creem we receive only the information needed to manage your subscription, such as your billing email, plan, subscription status, renewal date, and a customer and subscription reference. We use this to provide the paid service and keep billing records. Legal basis: performance of a contract (GDPR Art. 6(1)(b); KVKK Art. 5(2)(c)) and compliance with tax and accounting obligations. Retention: for the life of the subscription plus any period tax and accounting law requires.
Meeting data during early access
If your organization participates in early access and connects RecapButler to its meetings, we process, on your organization's instructions:
- Meeting recordings, transcripts and metadata (participants, times, meeting titles) for the meetings you choose to process.
- The structured items RecapButler drafts from those meetings (decisions, tasks, account updates).
- The approval decisions your team makes, which form the audit trail of what was written where, by whose approval.
- Credentials or tokens needed to write approved items into the systems you connect (for example your CRM), stored encrypted.
Your organization is the controller of this data; we process it only to provide the service. Meeting participants may include people outside your organization; obtaining any consent required to record a meeting remains your organization's responsibility, and we encourage clear disclosure to all participants.
What we do not do
- We do not train AI models on your customer data. Meeting content, transcripts and extracted items are used to provide the service to you. They are not used to train, fine-tune or otherwise improve machine learning models.
- We do not sell personal data. To anyone, in any form.
- We do not write into your systems without approval. By product design, RecapButler only writes to connected systems after a human in your organization approves the specific item.
Where data lives
RecapButler is hosted in the European Union, and meeting content processed by the service is stored on EU infrastructure. Where a sub-processor is used (for example cloud hosting, email delivery, or AI inference), we select providers that support EU data residency or provide appropriate safeguards for any transfer, such as Standard Contractual Clauses. One exception is our meeting-bot vendor, Recall.ai, which joins your calls to capture and transcribe them: it processes raw recordings in a configured region that defaults to the United States unless set otherwise, as explained on our subprocessors page. The current, dated list of sub-processors is published at /legal/subprocessors (summarized on our Security page), and our Data Processing Agreement sets out our obligations as a processor. All of this is also available on request at hello@recapbutler.com.
How long we keep data
- Waitlist data: until you ask us to delete it, or until the waitlist becomes irrelevant (for example after launch), after which it is deleted or anonymized.
- Meeting transcripts: stored by default, so your organization can search past conversations and get word-for-word answers. Your organization controls this in Settings: storage can be turned off at any time (new transcripts are then discarded right after extraction), and already-stored transcripts can be permanently deleted with one action, recorded in the audit trail. Transcripts are included in your data export and are removed when the related meeting or your account is deleted.
- Meeting data (early access): for the duration of your organization's participation, plus a short wind-down period, unless your organization requests earlier deletion. On termination of early access, meeting data is deleted on request.
- Audit trail: retained for the duration of the customer relationship, as it exists precisely to provide a durable record of approvals.
- Server logs: a limited rolling window, typically no more than 90 days.
Your rights
Under GDPR and KVKK, you have the right to:
- Access the personal data we hold about you (GDPR Art. 15; KVKK Art. 11).
- Have inaccurate data corrected (GDPR Art. 16).
- Have your data deleted (GDPR Art. 17), including simply asking us to remove you from the waitlist.
- Restrict or object to processing (GDPR Art. 18, 21).
- Receive your data in a portable format (GDPR Art. 20).
- Withdraw consent at any time, without affecting the lawfulness of processing before withdrawal.
- Lodge a complaint with your supervisory authority: your local EU data protection authority, or in Turkey, the Personal Data Protection Authority (KVKK Kurumu).
To exercise any of these rights, email hello@recapbutler.com. We respond within the timeframes the law requires (generally 30 days).
If you are a participant in a meeting processed by one of our early access customers, your rights requests may need to be directed to that customer as the data controller; we will assist them in fulfilling such requests.
Security
We take measures appropriate to the sensitivity of meeting data: encryption in transit and at rest, access controls limiting who at RecapButler can access customer data (access is restricted to what is necessary to operate and support the service), and encrypted storage of integration credentials. No system is perfectly secure; if a breach affects your personal data, we will notify you and the relevant authorities as the law requires.
Cookies
This website uses only the cookies necessary for it to function (such as remembering your language preference). If you sign in to the app, we also set authentication session cookies (Supabase auth) that are strictly necessary to keep you signed in. The app does not store your personal data in browser localStorage. We do not use advertising or cross-site tracking cookies. If this changes, this policy and the site will be updated with a consent mechanism first.
Children
RecapButler is a business tool and is not directed at children under 16. We do not knowingly collect data from children.
Changes to this policy
We will update this policy as the product evolves, especially as early access transitions to general availability. Material changes will be announced to waitlist members and customers by email, and the "Last updated" date above will change.
Contact
Questions, requests, complaints: hello@recapbutler.com. We read everything.
KVKK Aydınlatma Metni (Türkçe)
6698 sayılı Kişisel Verilerin Korunması Kanunu ("KVKK") madde 10 uyarınca aydınlatma yükümlülüğümüz kapsamında, Türkiye'deki kullanıcılarımızı aşağıdaki şekilde bilgilendiririz.
Veri sorumlusu: Simay Yenice Astro Tasarım (şahıs işletmesi, kurucu Simay Yenice), Hatboyu No 7/4, Erenköy, İstanbul, Türkiye. Vergi no: 37045662610. İletişim: hello@recapbutler.com. Erken erişim müşterilerimizin talimatıyla işlenen toplantı içerikleri bakımından veri sorumlusu ilgili müşterimizdir; RecapButler bu veriler için veri işleyen sıfatıyla hareket eder.
İşlenen kişisel veriler ve işleme amaçları:
- Web sitesi teknik kayıtları (IP adresi, tarayıcı bilgisi, zaman damgaları): güvenlik ve hizmet sürekliliği.
- Bekleme listesi bilgileri (e-posta adresi, kayıt olunan sayfa ve dil, gönüllü olarak paylaştığınız ajans bilgileri): erken erişim listesini yönetmek ve sizinle iletişim kurmak.
- Hesap verileri (giriş e-postası, ad, çalışma alanı ve rol bilgisi, onay işlemlerinden oluşan denetim izi): hizmeti sunmak ve hesabınızı işletmek.
- Toplantı verileri (müşterimizin seçtiği toplantıların transkriptleri, üstverileri ve bunlardan çıkarılan kayıtlar): yalnızca müşterimizin talimatıyla, hizmeti sağlamak için.
Hukuki sebepler (KVKK md. 5): bekleme listesi için açık rızanız; hesap ve hizmet verileri için bir sözleşmenin kurulması veya ifası; güvenlik kayıtları için meşru menfaat.
Toplama yöntemi: kişisel veriler web sitesi formları, uygulama içi işlemler ve hizmetin çalışması sırasında otomatik yollarla toplanır.
Aktarım: veriler, hizmetin sağlanması amacıyla yukarıda "Where data lives" ve Güvenlik sayfasındaki alt işleyici listesinde sayılan sağlayıcılara (Supabase, Vercel, Anthropic, Resend) aktarılır. Bu sağlayıcıların bir kısmı veriyi yurt dışında işler; Türkiye'deki kullanıcılar bakımından yurt dışına aktarım, KVKK madde 9'da öngörülen mekanizmalara uygun olarak yürütülür.
Haklarınız (KVKK md. 11): kişisel verinizin işlenip işlenmediğini öğrenme, işlenmişse bilgi talep etme, işlenme amacını ve amacına uygun kullanılıp kullanılmadığını öğrenme, yurt içinde veya yurt dışında aktarıldığı üçüncü kişileri bilme, eksik veya yanlış işlenmişse düzeltilmesini isteme, silinmesini veya yok edilmesini isteme, bu işlemlerin aktarıldığı üçüncü kişilere bildirilmesini isteme, münhasıran otomatik sistemlerle yapılan analiz sonucu aleyhinize çıkan sonuçlara itiraz etme ve kanuna aykırı işleme nedeniyle zarara uğramanız halinde zararın giderilmesini talep etme.
Taleplerinizi hello@recapbutler.com adresine iletebilirsiniz; yasal süreler içinde (kural olarak 30 gün) yanıt veririz. Ayrıca Kişisel Verileri Koruma Kurulu'na şikayette bulunma hakkınız saklıdır.
Bu belgeyle ilgili sorular: hello@recapbutler.com