Privacy Policy

Last updated: 28 July 2026

1. Overview

This Privacy Policy explains how Khove (“Khove”, “we”, “us”) collects, uses, and protects your information when you use our orchestration platform (the “Service”). We built Khove around a simple principle: your work data stays yours and is used only to serve you.

2. Information we collect

  • Account information: your name, email address, and username, provided at registration (authentication is handled by our provider, Clerk).
  • Connected-tool data: content and metadata from services you connect — for example GitHub repositories, pull requests, issues, and Google Calendar events — accessed via their APIs with your authorization.
  • Workspace content: tasks, conversations, and other items you create in Khove.
  • Usage data: logs and metrics about how you use the Service, used for reliability, security, and billing.
  • Device and session data: information such as browser, approximate location, and IP address, used for account security (e.g. new-device notifications).

3. How we use your information

  • To provide, maintain, and improve the Service and its integrations.
  • To operate AI features — routing your requests to our AI providers to generate responses and agent actions.
  • To power memory and context features that make the Service more helpful over time.
  • To secure your account, prevent abuse, and meet legal obligations.
  • To communicate with you about your account, security, and the Service.

4. AI processing

Khove uses AI models from Anthropic and Google, accessed directly under agreements that include no-training terms by default — meaning your data is not used to train their foundation models. We do not sell your data. Where an enterprise engagement requires stricter data-handling (such as zero-retention processing), that is arranged contractually.

5. Data isolation

Your data is scoped to your workspace. Workspace content never crosses into another workspace. Personal preferences that travel across your own workspaces are kept content-free. Access to connected systems is governed by a read-automatically / write-with-approval / delete-explicitly model, and every agent action is audited.

6. How we store and protect your data

  • OAuth tokens for connected tools are encrypted at rest (AES-256-GCM); we never store them in plaintext.
  • Data is hosted with reputable infrastructure providers (including Supabase and Upstash).
  • Access to production data is restricted and monitored.
  • No method of transmission or storage is perfectly secure, but we work to protect your data using industry-standard measures.

7. Sharing your information

We share information only with service providers that help us operate the Service (for example, authentication, hosting, AI processing, and email delivery), each under obligations to protect your data; when required by law; or with your direction, such as when you connect a third-party tool. We do not sell your personal information.

8. Data retention

We retain your data for as long as your account is active or as needed to provide the Service. Memory retention may vary by plan tier. When you delete your account or disconnect an integration, we delete or revoke the associated data and access, subject to any legal retention requirements.

9. Your rights

Depending on your location, you may have rights to access, correct, export, or delete your personal data, and to object to or restrict certain processing. You can exercise these rights through your account settings or by contacting us.

10. International transfers

Your data may be processed in countries other than your own. Where required, we rely on appropriate safeguards for such transfers.

11. Children's privacy

The Service is not directed to children under 16, and we do not knowingly collect their personal data.

12. Changes to this policy

We may update this Privacy Policy from time to time. Material changes will be communicated through the Service or by email. The “Last updated” date above reflects the latest revision.

13. Contact

Questions about your privacy? Contact us at khove.io.dev@gmail.com.