Trust & Control

Trust & Control

How SessionBrief approaches confidentiality-conscious coaching workflows, human review, and responsible AI-assisted output.

SessionBrief is designed for coaches who handle sensitive client conversations and need a workflow that respects professional judgement, confidentiality, and control.

SessionBrief helps turn session notes into structured drafts for review. It does not replace the coach. It does not make coaching decisions. It does not send anything to a client unless the coach chooses to use it.

1. Coach-controlled by design

SessionBrief helps prepare structured drafts for coach review.

Nothing is sent to a client automatically. The coach reviews the generated debrief, follow-up draft, and action items before deciding what to keep, edit, copy, export, or send.

The product is built around a simple principle:

AI can support the workflow, but the coach remains in control.

2. Human review before use

Every generated debrief, follow-up draft, and action item is intended for human review before use.

SessionBrief may help reduce post-session admin, but it does not remove the need for professional judgement.

Coaches are responsible for checking:

  • Accuracy
  • Tone
  • Context
  • Client sensitivity
  • Confidentiality
  • Professional suitability
  • What should or should not be included in follow-up communication

SessionBrief is a review workflow, not an automatic communication system.

3. Confidentiality-conscious workflows

SessionBrief is designed for confidentiality-conscious post-session workflows.

Session content is processed to generate structured outputs for coach review, and the coach decides what gets used with clients.

Because coaching notes may contain sensitive context, SessionBrief is intentionally positioned as a controlled post-session workflow tool, not a public note-sharing tool or generic AI chat assistant.

You should only submit information you are authorised to process and that is appropriate to include in a professional workflow system.

4. Responsible AI boundaries

SessionBrief is not an AI coach.

It does not replace:

  • Coaching judgement
  • Clinical judgement
  • Legal advice
  • Medical advice
  • Financial advice
  • Professional supervision
  • Safeguarding or crisis decision-making

Generated outputs may be incomplete, inaccurate, or unsuitable without review. Coaches must review and approve outputs before using them with clients.

SessionBrief is designed to support post-session admin and continuity, not to make decisions about clients.

5. Google sign-in and account data

If you sign in with Google, SessionBrief may receive basic account information such as your name, email address, profile image, and Google account identifier.

This information is used to create and manage your account, authenticate access, and personalize your in-app experience.

SessionBrief does not request access to Google Drive, Gmail, Google Calendar, or other sensitive Google services unless this is clearly introduced as a separate feature in the future and authorised by you.

6. Data handling summary

SessionBrief uses account, session, workflow, and technical information to provide and operate the service.

Session content is used to generate the requested session outputs, such as summaries, follow-up drafts, action items, and client context.

Access to account and workflow data is limited to purposes such as:

  • Operating the service
  • Authenticating users
  • Generating requested outputs
  • Maintaining workflow history
  • Supporting users
  • Securing the platform
  • Monitoring reliability
  • Managing billing and usage limits
  • Complying with legal obligations

For more detail, read our Privacy Policy.

7. Security and control practices

SessionBrief uses practical controls designed to support secure and responsible use.

Current practices may include:

  • Authentication-protected dashboard access
  • Server-side entitlement and usage checks
  • Coach review and approval workflow
  • Role-aware access controls where applicable
  • Error monitoring with payload scrubbing where configured
  • Audit logging for key workflow actions where implemented
  • Restricted access to operational systems based on need

No online system can guarantee absolute security. SessionBrief is designed to reduce risk, but coaches remain responsible for deciding what information they submit and how they use generated outputs.

8. What SessionBrief is not

SessionBrief is not:

  • An AI coach
  • A replacement for professional judgement
  • A medical, legal, financial, clinical, safeguarding, or crisis decision-making tool
  • An automatic client communication system
  • A substitute for your own confidentiality, consent, ethics, or data-protection responsibilities

9. Your role as the coach

SessionBrief works best when coaches use it with professional judgement.

You are responsible for:

  • Deciding what session information to submit
  • Avoiding unnecessary sensitive information
  • Reviewing generated outputs before use
  • Editing drafts to match your voice and client context
  • Deciding what should be sent, saved, copied, or discarded
  • Ensuring your use of SessionBrief fits your professional obligations

SessionBrief supports the workflow. The coach remains accountable.

10. Questions

If you have questions about SessionBrief’s approach to trust, control, privacy, or responsible AI use, contact us:

Email: hello@sessionbrief.com

Postal address:

Xandaverse Ltd
71 - 75 Shelton Street
Covent Garden
London
WC2H 9JQ
United Kingdom

Vulnerability disclosure

If you believe you have found a security vulnerability in SessionBrief, please report it privately to alex@sessionbrief.com. Please include the affected URL or feature, a description of the issue, steps to reproduce, and any supporting proof of concept that is safe and non-destructive.

We ask that you:

  • Avoid accessing, modifying, or deleting data that does not belong to you.
  • Avoid actions that could degrade service availability, including denial-of-service testing.
  • Avoid social engineering, phishing, or physical attacks.
  • Give us a reasonable opportunity to investigate and remediate before public disclosure.

SessionBrief does not operate a public bug bounty program at this time. We appreciate responsible disclosure reports that help us improve the security and privacy of the platform.

Experience the Workflow

See how SessionBrief keeps you in control while dramatically reducing your post-session administrative burden.

Try it with one real session