Mostly, and the qualifier matters. Otter is SOC 2 Type II certified, encrypts data at rest and in transit, and offers two-factor authentication on every plan (as of August 2026). Its two publicly documented incidents didn't come from any of that failing — they came from defaults working exactly as designed: the Notetaker joins calendared meetings automatically, and shares the transcript automatically.
Full disclosure: Speechmark is our app and it competes with Otter, so treat the recommendation at the end accordingly. Everything before it is cited to Otter's own pages, a privacy regulator's published letter, or contemporaneous reporting.
Is Otter.ai secure?
By the usual measures, yes. Otter holds a SOC 2 Type II attestation, encrypts stored data with AES-256 and traffic with TLS, and makes two-factor authentication available across all plans (privacy and security). Enterprise adds SSO, SCIM, and domain capture (as of August 2026). There is no public evidence of Otter's servers being breached.
That's the answer to "is Otter secure," and it's a genuinely decent one. It is not the answer to "is Otter safe," because the incidents that have actually hurt Otter users involved no attacker at all.
Why do Otter incidents keep happening, then?
Two defaults, working together.
Auto-join. Connect your calendar and the Otter Notetaker joins your scheduled Zoom, Teams, and Meet calls on its own. Otter's pricing page lists this plainly as a feature: it "joins Zoom, MS Teams, and Google Meet to automatically write and share notes."
Auto-share. When the meeting ends, the notes and a transcript link go out to the invitee list — not to the people who were actually in the room, but to whoever is on the calendar entry.
Each is defensible on its own. Together they mean a recording can start without anyone in the meeting choosing it, and end up with people who never attended. Otter's own HIPAA guidance is candid about the exposure, telling healthcare customers they "are responsible for controlling when and how PHI is introduced into the Otter environment" and must "implement policies and technical controls to ensure PHI is not captured unintentionally or without proper authorization."
That is a vendor telling you, accurately, that the safety of the product depends on configuration you have to get right.
The two incidents worth knowing about
September 2024 — the investor call. After a Zoom meeting with a VC firm, Otter emailed the transcript to an attendee, Alex Bilzerian. It contained not just the meeting but the investors' private conversation afterward.
"A VC firm I had a Zoom meeting with used Otter AI to record the call, and after the meeting, it automatically emailed me the transcript, including hours of their private conversations afterward, where they discussed intimate, confidential details about their business."
— Alex Bilzerian, on X, September 2024
He told the Washington Post the material included discussion of strategic failures and metrics, and that he walked away from the deal. Nothing was hacked. The transcript went where the settings said to send it.
October 2025 — the hospital. Ontario's Information and Privacy Commissioner published its response to a hospital's self-reported breach under PHIPA, headlined "Unauthorized use of transcription tool powered by AI results in a privacy breach at a hospital."
A physician who had left the hospital in 2023 was still on a recurring invite for virtual hepatology rounds, attending from a personal email with a personal Otter account attached. In September 2024 the tool — never approved by the hospital — joined the rounds, transcribed them, and distributed notes. Seven patients' personal health information was captured, including names, gender, diagnoses, and treatment information, and the transcript went to a large invitee list that included former staff. The Commissioner's recommendations ran to eight items, among them blocking AI tools at the firewall, mandatory meeting lobbies, and offboarding audits.
Note the shape both incidents share: a stale calendar entry and an automatic share, no attacker anywhere.
Is Otter.ai safe to use at work?
Legally, that's unsettled, and the honest answer is that it depends on where you are and who agreed.
A federal class action filed in August 2025 alleges Otter's Notetaker recorded private conversations without the consent of everyone present — the claim being that Otter obtained permission from the meeting host at most, not from other participants. A motion to dismiss was argued in May 2026 and, as of August 2026, no ruling has issued. No court has found Otter's practices lawful or unlawful, and there is no certified class or settlement.
Institutions haven't waited for the ruling. Ohio State's technology office advised faculty and staff away from Otter in August 2025, pointing them to university-approved tools instead and noting that recording someone without their knowledge violates the principle of informed consent. If your employer's IT policy names approved tools, that list is the one that governs — not this article.
The practical rule in an all-party-consent state is simple: nobody on the call has consented until they've been asked.
Is Otter.ai HIPAA compliant?
Only under specific conditions. HIPAA support is available on Enterprise only, and Otter's help centre is explicit that "Otter.ai is not a HIPAA-covered entity by default. It becomes a Business Associate only when a signed BAA is in place." Its pricing page lists HIPAA compliance as an Enterprise add-on (as of August 2026).
So a therapist, clinician, or lawyer on the Free, Pro, or Business plan is not covered, regardless of how careful they are. Custom data retention is likewise Enterprise-only and set up through an account manager — on lower plans you cannot configure how long conversations persist.
Otter also supports public and link-based transcript sharing, which its own HIPAA page says customers "must explicitly disable" when PHI is involved. It is on unless you turn it off.
Does Otter train on your meetings?
Yes, by its own account — its privacy policy lists training its proprietary AI on de-identified audio recordings and transcriptions among its uses of your data (as of August 2026). There's a per-account control at Account Settings → Meetings → Feedback and Training.
We cover that in depth, with the equivalent policy for every major notetaker and the exact opt-out paths, in do AI notetakers train on your meetings? — it's a separate question from the ones on this page, and worth reading if training is your main concern.
Settings that make Otter meaningfully safer
If you're staying on Otter, these take about ten minutes (as of August 2026):
- Turn off calendar auto-join. Account Settings → Meetings. Let the Notetaker in deliberately rather than by default. Admins can disable it workspace-wide under Workspace → Members → Notetaker.
- Fix auto-share. Review auto-share settings so transcripts don't broadcast to a calendar list. Admins control this under Workspace → Settings.
- Disable public and link-based sharing, then audit anything already shared externally.
- Audit the recurring invites you actually own. Both incidents above trace back to a stale invitee, not to Otter.
- Set training to "Don't allow sharing" under Feedback and Training, if you'd rather not contribute.
- Announce the recording out loud, every time. It's the only step that addresses the consent problem rather than the configuration one.
When Otter is a reasonable choice
Otter is not a bad product, and pretending otherwise would be a sales pitch.
It's the right pick if you need cross-platform access — it works on any device with a browser, where an on-device Mac app doesn't. If you want a searchable shared archive for a team, live captioning, or CRM integrations, that's what a cloud platform is for. If you're on Enterprise with a BAA, SSO, and a retention policy, most of this article's risks are things you can administer away. And its free tier is genuinely useful at 300 minutes a month, with Pro at $8.33 and Business at $19.99 per user per month billed annually (as of August 2026).
The trade is structural: every one of those benefits exists because your meetings live on Otter's servers.
If you'd rather the recording never leave your Mac
Speechmark records, transcribes, diarizes, and summarizes entirely on your Mac. No bot joins the call, so nothing auto-joins from a stale calendar invite; there's no account and no upload, so there's no server-side copy to auto-share, subpoena, or leak. The original audio stays as a local file next to the transcript. One purchase, $79 per Mac, no subscription.
We hold no SOC 2 or HIPAA certification and don't claim to — the argument is architectural, not a compliance badge. If audio never leaves the device, most of the failure modes on this page have nowhere to occur.
Worth reading next: the direct Speechmark vs Otter comparison, Otter alternatives without the bot, or the wider private Mac notetaker roundup if you want the full field including free options.
FAQ
Is Otter.ai safe to use?
Otter is secure in the conventional sense — SOC 2 Type II, AES-256 encryption at rest, TLS in transit, and two-factor authentication on all plans (as of August 2026). Its documented incidents came from defaults rather than broken security: the Notetaker auto-joins calendared meetings and automatically shares transcripts with invitees.
Has Otter.ai had a data breach?
Not a breach of its servers. There have been two well-documented disclosure incidents: in September 2024 a transcript emailed to an attendee included the investors' private post-meeting conversation, and in October 2025 Ontario's privacy commissioner published a hospital breach in which Otter auto-joined clinical rounds via a departed physician's calendar invite.
Is Otter.ai HIPAA compliant?
Only on Enterprise, and only with a signed Business Associate Agreement. Otter's help centre states it is not a HIPAA-covered entity by default and becomes a Business Associate only once a BAA is executed. Its pricing page lists HIPAA compliance as an Enterprise add-on (as of August 2026).
Is it legal to use Otter.ai in meetings?
It depends on your state and who consented. A federal class action filed in August 2025 alleges Otter recorded conversations without all-party consent; a motion to dismiss was argued in May 2026 and, as of August 2026, no ruling has issued. In all-party-consent states the safe assumption is that everyone must be asked.
What is the safest alternative to Otter.ai?
If the requirement is that meeting audio never reaches a third party, an on-device tool is the only architecture that satisfies it. Speechmark, Meetily, and MacWhisper transcribe on your Mac with no bot, no account, and no upload — there is no server-side copy to auto-share, subpoena, or leak.