Data and privacy
Where your data lives, who can read it, what AI helpers see, and how deletion works.
Where it lives
Kyndium stores your data in a Postgres database and private file storage hosted by Supabase in the United States. Every table has row-level security: the database itself decides what each account may read or write, in addition to the checks in the application. Files (attachments, canvas images) are private and open through links that expire in minutes; Studio logos are the one public store, because they must draw on public share pages and inside exports.
Who can read it
Only you and the people invited to a project. Kyndium staff do not read project content. Public links expose a read-only list of a project's tasks, or one timeline, to anyone with the link, and you can revoke them.
AI helpers
When you use an AI helper, only what you typed into it (a project description, a formula request with the sheet's column names) is sent to the model provider. Your project data is never used to train models. The helpers only exist when an AI key is configured.
Deleting
Deleted projects and tasks sit in Trash for 30 days, then a daily job deletes them and their files for good. Empty Trash does it now. To delete your account and everything in it, write to hello@kyndium.com; it is done within seven business days. Export first if you want a copy.
Comments