KitZ Services
Privacy Policy
Last updated: May 2026
1. Information We Collect
We collect account information such as name, email address, workspace membership, company profile details, and product usage data. If you import business records, contacts, conversations, files, or calendar/task data, that content is processed to provide the workspace experience.
2. How We Use Information
We use information to operate KitZ, authenticate users, personalize the workspace, generate AI-assisted responses, provide support, improve product reliability, and protect against abuse or unauthorized access.
3. AI Processing
KitZ uses Anthropic Claude as its AI provider to draft responses, summarize information, structure workflows, and help automate business tasks. Customer data is tenant-isolated. Customer data is not used to train third-party AI models. KitZ is aligned with GDPR principles regarding data minimization and data subject rights.
4. Service Providers
KitZ currently uses Vercel for hosting, Supabase for Postgres and authentication, Redis for short-lived operational state, and Anthropic for AI model access. These providers process data only as needed to deliver and secure the service.
5. Data Storage and Isolation
Each customer's data is tenant-isolated using Row Level Security (RLS) in Postgres. No tenant can access another tenant's data. Data is stored in secure data centers with encryption in transit and at rest.
6. Cookies and Sessions
KitZ uses essential cookies and related storage to maintain secure sessions, remember product preferences, and protect authenticated routes. You may block cookies in your browser, but the workspace may not function correctly without essential session cookies.
7. Security
We use access controls, encrypted transport, tenant-aware data access, and operational safeguards to protect customer information. No internet service is perfectly secure, so customers should avoid uploading unnecessary sensitive information.
8. Data Rights
You may request access, correction, export, or deletion of your personal information, subject to legal, billing, security, and operational retention requirements. We support privacy obligations applicable to Panama Law 81 of 2019 where relevant and comply with GDPR principles for users in the European Union.
9. Data Deletion
You may request deletion of your account and all associated data by emailing hello@kitz.services. We will process deletion requests within 30 days. Some data may be retained as required by legal or billing obligations.
10. Retention
We retain account and workspace data for as long as needed to provide KitZ, comply with legal obligations, resolve disputes, and maintain security. Deleted or cancelled accounts may require a reasonable processing period before all data is removed from active systems and backups.
11. Contact
Questions about privacy can be sent to hello@kitz.services.