Every surface the ruling changes, in the order someone meets them. A design mock: nothing here is persisted, captured, transcribed or wired to a real meeting.
The ruling, in the order the surfaces below implement it.
Implements: Two settings, inherited org → workspace → organiser. Live defaults on, remember defaults off, and the org may set remember on and lock it.
Implements: Workspace admins may disable what the org allows. A workspace can be created as, or converted to, confidential — which forces every AI call in it through the confidential door.
Product is standard.
AI calls in this workspace go to our own endpoint as a first-party processor. Converting sends them through the confidential door instead.
The new workspace starts standard and can be converted later.
Implements: The organiser decides per scheduled meeting, within what the org and workspace allow.
Agents can answer from what is being said. The transcript is discarded when the meeting ends.
Turned off by Tomorrow for every workspace, so it cannot be turned on here.
Implements: Live mode is silent — no prompt, no banner, no consent dialog. The info panel is the one place it is stated.
AI assistance on
Agents can answer from what is being said during this meeting. Nothing is kept once the meeting ends.
Implements: One transcript per meeting, captured once, ephemeral; agents answer live from it; personal agents are never in the participant list.
Can's personal Holoh is answering questions in this meeting and is deliberately absent from this list: a personal agent is never a participant. The coworker agent is listed because this call is in a channel that houses it.
Recap this meeting so far.
Two of four roadmap items shipped last week. The remaining two are blocked on the import path, and Riley said they would take it this week. About 12 seconds of audio were missing.
Answered from this meeting's own transcript.
Implements: One compacted memory belonging to the meeting, which belongs to the chat or channel: participant-readable, agents read it by access.
Starting now — joining the call.
Nothing was kept: this meeting ran without “Agents remember meetings”.
Implements: Organiser-deletable.
This meeting kept no memory, so there is nothing to delete.
This meeting kept no memory, so the question is never asked. Turn on “Agents remember meetings” to see it in the state it is actually asked in.
A tombstone stays in the conversation. Shared content vanishing without trace reads as a bug to the people who saw it, and it hides that an organiser acted.
Preview — not in the conversation yetThe meeting memory was deleted by Can.
Implements: Explicit recording implies transcribing, and keeps the raw transcript with the meeting under the same access rule.
What survives the meeting: 4 lines. Who said what is gone.
10:01 Alex: Thanks for joining — let's start with where the roadmap stands.
10:02 Jordan (uncertain attribution): Two of the four items shipped last week.
— missing audio, about 12 seconds —
10:04 Riley: The remaining two are blocked on the import path.
10:05 Riley: I'll take the import path this week.
10:06 Alex: Then the scheduling change waits for the next cycle.
Every word that was heard, attributed and timestamped, and an explicit marker wherever audio was missing.