Privacy

Privacy Policy

This policy explains how KronoOrbit handles account, workspace, visitor, conversation, lead, appointment, billing, and technical information.

Last updated August 1, 2026

1. Scope and roles

This policy applies to the KronoOrbit website, dashboard, public chat pages, and related services. For account and billing information, KronoOrbit generally acts as the business responsible for the data. For information submitted by a customer’s website visitors, KronoOrbit generally processes that information on behalf of the customer, and the customer remains responsible for its own privacy notices and lawful instructions.

2. Information we collect

  • Account details such as name, email address, authentication identifiers, and account status.
  • Workspace settings, AI employee configurations, approved knowledge, notification preferences, and booking availability.
  • Conversation content, visitor names, email addresses, phone numbers, interests, leads, and appointment details.
  • Subscription plan, usage totals, Stripe customer and subscription references, invoices, and payment status. KronoOrbit does not store complete payment-card numbers.
  • Technical and security data such as IP-derived request metadata, device/browser information, timestamps, error logs, and usage events made available by our hosting and service providers.
  • Communications you send to support.

3. How we use information

  • Provide authentication, AI responses, conversations, lead capture, appointments, analytics, notifications, and billing.
  • Operate, secure, troubleshoot, and improve the service.
  • Enforce plan limits, prevent abuse, and protect users and third parties.
  • Send transactional, account, lead, appointment, billing, and service communications.
  • Comply with law, legal process, tax, accounting, and dispute-resolution obligations.

4. AI processing

Customer prompts, approved knowledge, and conversation context may be sent to OpenAI’s API to generate responses. OpenAI states that API inputs and outputs are not used to train its models by default unless the API customer affirmatively opts in. Do not submit information to an AI employee unless you are authorized to process it.

5. Service providers

We disclose information to providers that help operate the service, including Clerk for authentication, Vercel for hosting, Neon for the database, OpenAI for AI processing, Stripe for payments and billing, and Resend for transactional email. These providers process data under their own contractual and privacy obligations.

6. Cookies and local storage

KronoOrbit and its providers use cookies and similar technologies that are necessary for sign-in, security, checkout, session continuity, and public-chat restoration. The current service does not use third-party advertising cookies. A public chat may store a local session reference in the visitor’s browser so the conversation can be restored.

7. Retention

We retain account and workspace information while the account is active and as reasonably necessary to provide the service. Customers can delete individual records through the dashboard and can export or delete their account from Settings. After account deletion, limited records may remain temporarily in backups, security logs, or where required for legal, tax, fraud-prevention, or payment-processing purposes. Stripe and other providers may retain records under their own legal obligations.

8. Security

We use administrative, technical, and organizational safeguards designed to protect information, including authenticated access, tenant-scoped database queries, encrypted provider connections, and protected environment secrets. No system is completely secure, and we cannot guarantee that unauthorized access will never occur.

9. Your choices and rights

Account holders can update workspace information, download a JSON export, and request permanent account deletion in Settings. Depending on location, individuals may have rights to access, correct, delete, restrict, object to, or receive a copy of personal information. A website visitor should normally contact the business operating the AI employee first; KronoOrbit will assist customers with valid requests.

10. International processing

KronoOrbit and its providers may process information in the United States and other countries. Those locations may have different data protection laws from the place where the information was collected.

11. Children and sensitive information

KronoOrbit is not directed to children under 13, and business account holders must be at least 18. Do not use the service to intentionally collect children’s data or highly sensitive information such as Social Security numbers, payment-card data, account passwords, or protected health information unless you have a lawful basis and a written agreement authorizing that use.

12. Changes and contact

We may update this policy and will post the revised date. Privacy questions and requests can be sent to support@kronoorbit.com. Account holders can also use the data controls in Dashboard → Settings.

Additional rules appear in our Terms of Service and Acceptable Use Policy.