Back to home

Privacy Policy

Last updated: June 8, 2026

1. Introduction

Kinetic AI ("Kinetic AI," "we," "us") operates the kineticai.us platform, a multi-tenant AI workspace for business teams. This Privacy Policy explains how we handle information when you use our website, application, and related services (collectively, the "Service").

2. Information we collect

We collect information you provide directly and data generated by your use of the Service:

  • Account data: email address, password (stored as a one-way hash; we never store plaintext passwords), and organization/workspace metadata.
  • Workspace content: documents you upload, chat messages, and outputs generated in your Canvas workspace.
  • Billing data: subscription status and Stripe customer identifiers. Payment card details are processed by Stripe; we do not store full card numbers.
  • Technical data: IP address, browser type, and request logs needed to operate and secure the Service.

3. How we use information

  • Provide, maintain, and improve the Service
  • Authenticate users and enforce multi-tenant data isolation
  • Process subscriptions and send billing-related communications
  • Ground AI responses in your uploaded documents (retrieval workflow)
  • Detect abuse, fraud, and security incidents

We do not sell your personal information. We do not send your workspace content to third-party closed AI APIs (such as OpenAI or Anthropic) as part of the core product design.

4. Data isolation & storage

Customer workspace data is stored in tenant-scoped PostgreSQL databases with organization-level isolation. Document embeddings used for search are indexed per organization. Inference runs on private infrastructure configured for your deployment, not on public shared model APIs billed per token to us.

5. Third-party services

We use limited third parties to operate the Service:

  • Stripe: payment processing and subscription management
  • Cloud / hosting providers: application and database hosting (e.g. Railway, RunPod for GPU inference where configured)

Each provider receives only the data necessary to perform their function and is bound by their own privacy terms.

6. Data retention

We retain account and workspace data while your subscription is active. You may request deletion of your organization and associated data by contacting Contact Us. We may retain limited records as required by law or for legitimate business purposes (e.g. billing records).

7. Your rights

Depending on your jurisdiction, you may have rights to access, correct, delete, or export personal data we hold about you. Contact Contact Us to submit a request. We will respond within a reasonable timeframe.

8. Security

We use industry-standard measures including encrypted transport (HTTPS), hashed passwords, JWT session tokens, and tenant-scoped database access. No method of transmission or storage is 100% secure; we cannot guarantee absolute security.

9. Changes

We may update this Privacy Policy from time to time. Material changes will be posted on this page with an updated "Last updated" date. Continued use of the Service after changes constitutes acceptance.

10. Contact

Questions about this Privacy Policy: Contact Us