← Trust Directory

Otter.ai

otter.ai · 1 assessment

Otter.ai - organisation
Do not approve on current evidence
2 blocking issues to resolve before signing
Assessed Oct 5, 2026 · public evidence coverage 60% · evidence confidence medium · methodology 0.7.0

Certifications

What the vendor claims, and how far each claim has been independently corroborated. A claim is only ever as strong as the rung it reaches.

EU-U.S. Data Privacy Framework (with UK Extension and Swiss-U.S. DPF)
Vendor claimed only

Self-certification to the U.S. Department of Commerce covering personal data received from the EU, UK (and Gibraltar) and Switzerland; not an independent audit. The privacy policy points to dataprivacyframework.gov; the registry was not checked in this scan.

  • ✓ Vendor claimed
  • ✓ Evidence cited
  • — Registry corroborated
  • — Scope verified
  • — Current
ISO/IEC 42001
Not claimed

Not claimed in any public source scanned. This is the AI-management-system certification — in its absence, the vendor’s AI governance rests on its general security and privacy certifications.

  • — Vendor claimed
  • — Evidence cited
  • — Registry corroborated
  • — Scope verified
  • — Current
EU-U.S. Data Privacy Framework
Claimed & corroborated
  • ✓ Vendor claimed
  • ✓ Evidence cited
  • ✓ Registry corroborated
  • — Scope verified
  • — Current

Verified on the registry · Data Privacy Framework (dataprivacyframework.gov) · checked Oct 5, 2026

Supply chain

Third parties this vendor’s AI depends on, as disclosed in its own public material. Responsibility transfers; accountability doesn’t.

AI providers: Anthropic, OpenAI
Infrastructure: Amazon Web Services, Inc., Google Cloud Platform, Crusoe
Subprocessors: Research Transcriptions, Zendesk, OneSignal, Stripe, Zuora, Slack, Intercom, Workato, Crescendo (formerly PartnerHero), WorkOS, PlanHat, On24

How to read this

This assessment is automated and point-in-time, built only from evidence the vendor publishes publicly plus checks against official certification registries. It is not an audit, not a certification, and not an endorsement. A low score means public evidence was thin or uncorroborated - which is a finding about disclosure, not proof of a weak control environment. Where too little was found to characterise a product at all, no score or grade is published rather than a low one: absence of evidence is not a number, and a letter grade would read as a verdict on the vendor when it would only be a verdict on what we could collect. This record reflects the evidence available on Oct 5, 2026.