Writing/Granola Enterprise Security: What Is Documented
§ 03 · security

Granola Enterprise Security: What Is Documented

A documented review of Granola's cloud data flow, SOC 2 status, storage, SSO, retention controls, and current HIPAA limitation.

Affiliate disclosure: I may earn a commission if you buy through a link here, at no added cost to you. The recommendation and caveats are mine.

Granola Enterprise Security: What Is Documented
Plate · Essay · Aug 2, 2026

Granola has a credible enterprise-security baseline: SOC 2 Type II, encryption in transit and at rest, United States AWS hosting, SSO for qualifying Enterprise workspaces, sharing controls, retention settings, and an organization-wide model-training opt-out.

It also has material constraints. Granola says it is not currently HIPAA compliant, cannot sign Business Associate Agreements, and does not offer regional data residency outside the United States. Security teams should evaluate the documented product rather than an imagined on-premises version.

The real data flow

"Runs locally" describes capture, not the entire processing path.

  1. The Granola desktop app captures microphone and system audio on the user's device.
  2. Audio is sent over encrypted connections to transcription providers such as Deepgram and AssemblyAI.
  3. Granola sends transcript and note context to AI providers such as OpenAI and Anthropic to create enhanced notes.
  4. The resulting transcript and notes are stored in Granola's US-hosted AWS environment.
  5. Granola says meeting audio is not retained after transcription.

The desktop client caches notes locally for responsiveness and offline editing, but the service depends on cloud processing. Network allowlists, subprocessor review, and cross-border transfer analysis belong in the procurement process.

Security claims Granola currently documents

AreaCurrent documented position
Independent assuranceSOC 2 Type II; report available through the Trust Center
EncryptionData encrypted in transit and at rest
HostingAWS servers in the United States
Meeting audioProcessed for transcription and not retained after transcription
Notes and transcriptsStored until deleted or covered by an auto-deletion policy
AuthenticationGoogle or Microsoft authentication; Enterprise SSO for organizations with 50+ seats
MFAEnforced through the identity provider, not a Granola-native password system
SharingNotes private by default; organization controls available on Enterprise
Model trainingUser opt-out on Free and Business; organization-wide opt-out on Enterprise
Regional residencyNo EU, UK, Canada, or Australia residency option currently documented
HIPAANot currently HIPAA compliant; no BAA

These points can change. Request the current SOC 2 report, subprocessor list, Data Processing Addendum, and product answers during every material vendor review.

Questions the security page cannot answer for you

A certification does not replace architecture and policy review. Ask Granola and your internal owners:

  • Which meeting categories and data classifications are allowed?
  • Which subprocessors receive audio, transcripts, notes, or metadata?
  • What happens when a user opts out of model improvement?
  • How are transcripts removed from primary storage and backups?
  • Can admins enforce sharing restrictions and transcript retention centrally?
  • How are Enterprise API keys scoped, logged, and rotated?
  • Which events appear in administrative audit data?
  • What support and incident-notification commitments are contractual?
  • Do your identity-provider controls enforce MFA, session lifetime, and offboarding?
  • Do Zapier, CRM, Slack, Notion, MCP, or API exports create a second retention path?

Answers should come from current documentation or contract language, not a marketing comparison.

HIPAA and medical data

Granola's own 2026 security guidance says the product is not HIPAA compliant and cannot sign a BAA. Healthcare organizations should not use it to store or process protected health information. SOC 2 Type II does not change that conclusion.

If a healthcare company wants Granola for non-clinical meetings, the compliance team should define a narrow scope that excludes PHI and confirm that participants can follow it in practice. A policy that depends on everyone remembering never to mention a patient may be too fragile for routine use.

Retention and sharing deserve special attention

Granola retains notes and transcripts unless the user or administrator configures deletion. Transcript auto-deletion can remove transcripts after a selected period while leaving enhanced notes in place. That may reduce raw-transcript exposure, but the remaining notes can still contain sensitive meeting content.

Notes begin private. Users can share them directly, add them to team folders, generate links, or send them through integrations. Enterprise restrictions help, but a security review should follow the data into every connected destination.

A sensible pilot

Start with a small group and low-sensitivity internal meetings. Configure identity-provider MFA, model-training preferences, sharing restrictions, and transcript retention before the first call. Test deletion and offboarding instead of assuming they work as expected.

During the pilot, review:

  • whether consent is consistently obtained;
  • whether prohibited data appears in notes;
  • whether generated summaries overstate decisions;
  • where users export or share notes;
  • whether the retention period matches policy;
  • whether support and audit evidence meet procurement needs.

My recommendation

Granola is a reasonable candidate when an organization accepts US cloud processing, does not require HIPAA coverage, and wants a bot-free note-taking workflow. Regulated or data-residency-sensitive teams should resolve those gaps before a pilot.

Current product documentation

§ More in the series

More for this.

The Modern Coding letter
Applied AI dispatches read by 5,000+ engineers
No spam. Unsubscribe in one click.
Zachary Proser
About the author

Zachary Proser

Applied AI at WorkOS. Formerly Pinecone, Cloudflare, Gruntwork. Full-stack — databases, backends, middleware, frontends — with a long streak of infrastructure-as-code and cloud systems.

Discussion

Giscus