Short version: Scribe is a hosted service run by Rang & Mall Private Limited from servers in India. We store your account, profile, voice settings, drafts, connected-account tokens, and the analytics figures you upload. We send your briefs and voice settings to AI providers to generate drafts. We do not run advertising, analytics trackers, or sell data. You can export or delete everything by emailing us.
RM Scribe ("Scribe", "we", "us") is operated by Rang & Mall Private Limited, a company incorporated in India (CIN U47912AP2026PTC123400), registered office at D.No 32-10-23/13, Flat No S2, Sai Balaji Enclave, Sheelanagar, Pendurthi, Visakhapatnam 530012, Andhra Pradesh, India. For your personal data we are the controller (the "data fiduciary" under Indian law). Contact: [email protected].
Scribe is a hosted service. Your data is stored on servers operated by Rang & Mall in India, behind Cloudflare. It is not stored on infrastructure you control. If you are in the United Kingdom or the European Union, using Scribe means your data is transferred to India. India does not have a UK or EU adequacy decision. For business customers we enter into the UK International Data Transfer Addendum or the EU Standard Contractual Clauses on request; individual users rely on the safeguards described in this policy and on their consent to this transfer.
We do not collect payment card details (there is no paid billing in Scribe today), precise location, or any data from your LinkedIn or X accounts beyond what is needed to publish and beyond what you upload yourself.
We do not use your data for advertising, we do not sell or rent it, and we do not use it to train AI models. We use your content only to provide Scribe to you.
These companies process data for us. Each has its own privacy terms.
We will give business customers 30 days' notice before adding a processor that handles their data.
The optional RM Scribe browser extension runs only on linkedin.com and on scribe.freedomlabs.in. It sends data to Scribe only when you use it, and only to our service. It does not track your browsing.
We use only the browser storage needed to keep you signed in. There are no advertising cookies, no analytics trackers, and no third-party pixels on Scribe. Because of this no cookie banner is shown. If that changes we will ask for consent first where the law requires it.
You can do two of these yourself, right now, without asking us. Settings has Export my data, which downloads everything we hold about you as a JSON file, and Delete my account, which removes your account and everything attached to it. Deletion asks for your password because it cannot be undone. There is no retention offer and no phone call.
For anything else, including correcting data, stopping a particular use, or withdrawing consent, email [email protected] from your account address. We confirm your identity, then act within 30 days. You can also delete individual drafts and disconnect channels inside the app at any time.
Two limits worth stating plainly. Deletion does not reach into database backups, which are kept for 30 days, so your data stays in those until they age out. And if you have paid us, your subscription and usage records are kept for the eight years that invoice records require. In that case your account is anonymised rather than removed, so those records no longer name you, and everything you wrote is still destroyed.
If you are in the UK or EU you also have the right to object to processing, the right to restriction, and the right to complain to the Information Commissioner's Office or your local supervisory authority. If you are in India you may escalate an unresolved complaint to the Data Protection Board of India once it is operational. If you are in California, we do not sell or share personal information. Scribe carries no third-party analytics, advertising, or tracking of any kind, so there is nothing for a Global Privacy Control signal to switch off.
Grievance Officer: Founder and Director, Rang & Mall Private Limited, at the registered office address above. Email [email protected]. We acknowledge complaints within 24 hours and aim to resolve them within 15 days.
Scribe is served over HTTPS. Passwords are hashed. Access to production systems is limited to the people who operate Scribe. We report security incidents as required by law and will tell you without undue delay if a breach affects your data. To report a vulnerability, see /.well-known/security.txt.
Your LinkedIn access and refresh tokens are encrypted at rest. That protects the stored database, including a leaked copy or a backup file. It does not protect against someone who already controls the server, because Scribe has to decrypt those tokens in order to publish for you. Your drafts, profile and other fields are stored unencrypted in the database.
Database backups are compressed and held for 30 days on the same infrastructure. They are not encrypted and they are not stored off site. We are telling you this because a backup is a copy of your data and you should know how it is kept.
We do not claim any security certification. We are not SOC 2 audited, ISO 27001 certified, or HIPAA compliant, and Scribe is not built for regulated health, financial, or government data.
Scribe is for professionals aged 18 and over. We do not knowingly collect data from anyone under 18. If you believe a minor has an account, email us and we will delete it.
We will post changes here and update the effective date. For material changes we will email account holders before the change takes effect.