Privacy Policy

Effective Date: November 2025

Last Updated: November 2025

This Privacy Policy explains how KENISAI TECHNOLOGY PRIVATE LIMITED ("we", "us", "our") collects, uses, and protects information when you access or use our platform and services ("Service"). By using the Service, you agree to the practices described in this Privacy Policy.

1. Information We Collect

Account Information

When you sign up or sign in using OAuth providers (such as GitHub, Google, or other identity services), we may collect:

  • Name
  • Email address
  • Basic profile information provided by the OAuth provider

We do not collect or store your passwords for any third-party services.

Connected Account and Integration Data

When you connect third-party services ("Connectors"), we may receive the following:

  • Access tokens and refresh tokens
  • Profile or account information necessary for integration
  • Permissions and scope information
  • Metadata from the connected service

Tokens are stored only to enable features you explicitly choose to use.

Usage Data

When you interact with our platform, we automatically collect technical information including:

  • IP address
  • Browser type and version
  • Device and operating system information
  • Access times and activity logs

This information helps us operate, secure, and improve the Service.

User Content

User Content means any data, commands, queries, or actions you submit or process through our Service. We process User Content only for the purpose of delivering functionalities you request and do not store it long-term unless necessary for specific features.

2. How We Use Information

Service Delivery

We use your information to:

  • Authenticate your identity
  • Connect to third-party services at your request
  • Execute integration tasks and workflows
  • Maintain access tokens and permissions
  • Operate and improve the overall platform

Security

We use data to protect accounts, detect abuse, and monitor for unauthorized activity.

Communication

We may send administrative messages such as service updates, account notices, and security alerts. We will not send promotional communications unless you opt in.

Legal and Compliance

We may use data to comply with applicable laws, auditing requirements, and internal policies.

3. Limited Use of Third-Party Data

Some data from connected services may be transmitted to trusted third-party service providers (including AI processors) solely to perform actions you have requested through our Service. These providers are bound by confidentiality and security obligations and are prohibited from using your data for unrelated purposes.

For all integrations, including those subject to specific provider policies (such as Google API Services User Data Policy), we follow the provider's requirements, which may include:

  • Not selling or sharing connector data with third parties for marketing or advertising
  • Using connector data only as necessary to provide user-requested features
  • Not using connector data to train machine learning or AI models unless explicitly disclosed

4. Data Storage and Security

We use industry-standard security measures including encryption, access controls, and monitoring to protect data.

Stored data is limited to:

  • OAuth tokens required for connected services
  • Account information such as name and email

We restrict internal access to authorized personnel only.

5. Data Retention

We retain data only for as long as necessary to operate the Service.

  • OAuth tokens are retained only while your account or connector remains authorized
  • Account information is retained while your account remains active
  • Logs and usage data are retained for operational, security, and auditing purposes for a limited period
  • User Content is retained only for the duration needed to complete the requested action unless required for a specific feature

When a connector is revoked or an account is deleted, associated credentials and stored data are removed from our systems.

6. Sharing of Information

We do not sell, rent, or trade personal data or connector data.

We may share information only in the following situations:

Service Providers

We may share limited data with trusted vendors who help operate the Service. These providers are bound by confidentiality and data protection obligations.

Legal Requirements

We may disclose information if required by law, regulation, subpoena, or governmental request.

Protection of Rights

We may disclose information to prevent fraud, investigate security issues, or enforce our terms.

Business Transfers

If our company is involved in a merger, acquisition, or restructuring, information may be transferred as part of the transaction, subject to confidentiality obligations.

7. User Rights and Choices

You may have the right to:

  • Access your personal data
  • Update or correct information
  • Request deletion of stored data
  • Revoke connector access
  • Export your personal data

Connector permissions can be revoked directly through the external service's settings page.

To exercise any rights, you may contact us at support@kenislabs.com.

8. Children's Privacy

The Service is not intended for individuals under the age of 13 (or the minimum age applicable in your jurisdiction). We do not knowingly collect information from children.

9. Changes to This Privacy Policy

We may update this Privacy Policy periodically. The "Last Updated" date will reflect the most recent changes. Your continued use of the Service following updates constitutes acceptance of the revised policy.

10. Contact Us

If you have questions or concerns about this Privacy Policy, contact us at:

KENISAI TECHNOLOGY PRIVATE LIMITED

support@kenislabs.com

Disclaimer: This privacy policy provides general information and outlines our practices. It may not cover all specific scenarios and is not a substitute for legal advice.