An important security update from Krisp
Krisp Team · April 3, 2026
We are writing to share an important update about a security incident that recently affected some users on our platform. We want to be fully transparent about what happened, how we responded, and what we are doing to ensure it cannot happen again.
What happened
On March 31, we were notified that a user of the Krisp AI Meeting Assistant had received content belonging to another user through our MCP (Model Context Protocol) API a feature we launched recently that allows AI tools and assistants to interact with Krisp.
After a thorough investigation, we traced the issue to a very specific and narrow set of conditions: when two users made simultaneous requests at precisely the same moment, the system could incorrectly deliver one user’s response to the other user’s connection. This was not a targeted attack. It was an unintended technical flaw, and it has since been fixed.
How we found out
A member of our user community identified the issue and reported it to us directly. We are genuinely grateful for the care and responsibility they showed in doing so.
How we responded
We take reports like this seriously, and our team moved with urgency from the moment we received the notification:
- 6:17 PM Report received from a community member
- 6:40 PM Formal investigation launched by our Security and Engineering teams
- 8:00 PM Root cause identified
- 9:45 PM Fix deployed to production
From the moment we received the report to the moment the fix was live, less than four hours passed. The issue has been fully resolved and verified.
What happens next
We are conducting a thorough review to determine whether any other users were affected. If we find that you were impacted, we will reach out to you directly. We are also taking all steps required under our data protection obligations.
What this means for you
If you are identified as having been affected, you will hear from us individually. If you believe you may have received content that was not intended for you, we kindly ask to contact us at [email protected].
We sincerely apologize for any concern this situation may cause. The security and privacy of your data is foundational to everything we do, and we are committed to being open and honest with our community whenever issues arise, no matter how quickly we are able to resolve them.
The Krisp Team