Fireflies.ai offers EU data storage only on more expensive business plans, but the vendor is based outside the EU and may be covered by third-country legislation (for US companies: the CLOUD Act) regardless of server location. For non-sensitive data this is rarely a problem, but for customer data you should weigh the risk.
EU/EEAMeetings & notesFreemiumEU data storage ✓ISO 27001
German meeting assistant that records audio locally on your computer without sending a bot into the meeting, and then creates notes and summaries. All data is stored and processed within the EEA, Switzerland and the UK, and raw audio is deleted directly after transcription, which means you cannot go back and listen afterwards.
Bot-free - captures audio locally without showing up in the meeting
All data is stored and processed within the EEA, Switzerland and the UK according to the provider
Requires desktop app (Mac/Windows), does not work only in the browser
Best for: Companies that want to avoid meeting bots and keep all data in Europe.
Only on Enterprise/Business plans. On free and standard plans data is stored outside the EU.
Is Fireflies.ai covered by the CLOUD Act?
The vendor is based outside the EU. US companies are covered by the CLOUD Act regardless of server location; see the tool page for details.
What is needed to use Fireflies.ai in a GDPR-safe way?
Sign a data processing agreement (DPA) if the tool processes personal data on your behalf, minimise the personal data you feed in, and check the vendor's sub-processors. See our DPA guide for the steps.
Our assessment is based on verified data about vendor, storage and certifications (2026). GDPR compliance also depends on how you use the tool. This is guidance, not legal advice. See How we review.