Legal

Privacy Policy

This policy explains what Kixocollects, why, and how we protect it. We try to write it the way we'd want to read it — short and plain.

Effective May 1, 2026

1. What we collect

2. How we use it

To run the service, answer your questions, ship the actions you request through the agent, secure your account, communicate about changes and outages, and improve the product. We don't sell personal data.

3. AI and training

We do not use customer event data to train foundation models. The agent uses retrieval and grounded reasoning over your workspace to answer questions. Aggregated, de-identified usage signals may be used to improve the product surface.

4. Who we share with

5. Your rights

Depending on where you live, you may access, correct, port, restrict, or delete your personal data, and object to certain processing. To exercise rights, write privacy@kixo.io. We respond within 30 days.

6. Retention

Account data — for the life of your account plus up to 12 months for legal and audit purposes. Customer data — under your control; default retention follows your workspace settings. You can export and delete at any time.

7. Security

Encryption in transit (TLS 1.2+) and at rest (AES-256), least-privilege access, audit logging, regular pen-tests, and SSO/SAML on Business and Enterprise plans. Report issues to security@kixo.io.

8. International transfers

We use Standard Contractual Clauses and equivalent safeguards for transfers from the EEA, UK, and Switzerland.

9. Children

Kixo is not intended for individuals under 16.

10. Changes

We'll notify you of material changes by email or in-app at least 30 days before they take effect.

11. Contact

Kixo, Inc., attn: Privacy — privacy@kixo.io.

This page is provided for transparency. It is a starting point, not legal advice. For more, write hello@kixo.io or visit kixo.io.