Privacy Policy

Last updated: March 14, 2026

1. What We Collect

When you create a Kioku account, we collect your email address, organization name, and password (stored as a one-way hash). When your agents use the API, we store the memories they create along with metadata (timestamps, agent IDs, trust scores, scopes).

2. How We Use Your Data

Your data is used solely to provide the Kioku service — storing, retrieving, and managing memories for your AI agents. We do not use your memories to train AI models. We do not sell your data to third parties.

3. Data Storage

All data is stored on Google Cloud Platform infrastructure with encryption at rest. Memories are stored in PostgreSQL with pgvector for semantic search. Each organization's data is logically isolated.

4. Data Retention

Your memories are retained for as long as your account is active. Memories may expire based on your configured TTL settings. When you delete your account, all associated data is permanently deleted within 30 days.

5. Third-Party Services

We use OpenAI for generating embeddings (vector representations of your memories for semantic search). Memory content is sent to OpenAI's embedding API but is not used for model training per OpenAI's API data usage policy. We use Stripe for payment processing.

6. Your Rights

You can export your data at any time via the API. You can delete your account and all associated data by contacting support. You can revoke API keys instantly from the Console.

7. Contact

For privacy-related questions, contact us at privacy@kioku.dev.