Privacy Policy
Last updated: August 18, 2026
What data we collect
- Account: your email and your password (stored hashed; never in plain text).
- Billing: handled by Stripe. We do not store card numbers; we receive customer identifiers and subscription status from Stripe.
- Operations: technical records (request logs, errors, IP addresses) necessary to operate and protect the platform, and the messages you send us through support.
Your project data is yours
The content of your instances (databases, files, code) belongs to you and we only process it in order to provide you with the service: to store it, run it and back it up. We do not read it unless it is strictly necessary for support you request or to investigate abuse, and we do not use it to train models nor do we share it with third parties.
What we use your data for
- Providing and maintaining the service (provisioning instances, authenticating you, billing).
- Operational communications: billing, security or service change notices.
- Security: fraud and abuse prevention.
We do not sell your data nor do we disclose it for advertising.
Who we share it with
Only with the providers strictly necessary to operate: Stripe (payments), the infrastructure providers where the console and the instances run, and the transactional email provider where applicable. Each of them processes the data under its own contractual safeguards. We may also disclose data if a valid legal obligation requires us to.
Cookies and local storage
The console uses only essential local storage (your session token). We do not use advertising cookies or third-party analytics.
If you arrive through an invite link we store a first-party cookie with the partner code and a random visit identifier, so we can credit your signup to whoever invited you and count unique visits. It is not advertising or third-party analytics: it is used only for the referral program and expires after 90 days. The partner sees their funnel and a partially hidden version of your address, never your projects or your data.
Retention
We retain your account data for as long as the account is active. When you delete a project, its instance and its data are destroyed. After a suspension for non-payment or a cancellation, data is retained for at least 30 days to allow reactivation or export, and may be deleted thereafter. Technical logs are rotated periodically.
Your rights
You can access, correct or delete your data, and export the content of your projects at any time (psql, API and storage). To exercise any right or to ask questions: kitecosmic@gmail.com.
Changes
We will publish any change to this policy here with its date; if it is material, we will communicate it by a reasonable means.