Privacy Policy

Last updated: March 2026

What Data We Collect

When you use KILN, we collect the following categories of data:

  • Account data — name, email address, and authentication details managed through Clerk.
  • Agent configurations — system prompts, personality settings, knowledge base content, actions, and custom tools you create.
  • Conversation data — messages exchanged between end-users and your AI agents, including session IDs and visitor metadata.
  • Knowledge base uploads — text, URLs, PDFs, and FAQ entries you provide for RAG (Retrieval-Augmented Generation).
  • Analytics — aggregated conversation counts, lead scores, and usage metrics.
  • Payment data — billing information processed and stored by Stripe. KILN does not store credit card numbers.

How We Use Your Data

  • To provide and operate the KILN platform, including AI agent creation, deployment, and conversation handling.
  • To improve agent performance through analytics and the feedback/correction loop.
  • To calculate usage analytics and generate lead scores for your dashboard.
  • To process payments and manage your subscription.
  • To send transactional emails (e.g. account verification, billing receipts).

Sub-Processors

We use the following third-party services to operate KILN:

ProviderPurpose
AnthropicClaude API — chat processing, zero data retention
OpenAIada-002 embeddings — knowledge base indexing
SupabasePostgreSQL database — EU region
ClerkAuthentication and user management
StripePayment processing
VercelHosting and edge functions
ResendTransactional emails

Data Storage Location

Your data is primarily stored in the EU. Our database is hosted on Supabase in the EU region, and Vercel serves content from EU edge locations. Some sub-processors (Anthropic, OpenAI, Stripe, Clerk) may process data in the United States under appropriate safeguards.

Your Rights Under GDPR

As a data subject under the GDPR, you have the right to:

  • Access — request a copy of your personal data.
  • Rectification — correct inaccurate or incomplete data.
  • Deletion — request erasure of your personal data.
  • Portability — receive your data in a structured, machine-readable format.
  • Objection — object to certain types of processing.

To exercise any of these rights, contact us at hello@kiln.ai. We will respond within 30 days.

AI Transparency

KILN uses AI language models (primarily Anthropic's Claude) to power agent conversations. We operate under Anthropic's API zero-retention policy: conversation data sent to the Claude API is not stored by Anthropic and is not used for model training.

Bring Your Own Key (BYOK)

When you provide your own API keys for AI providers (Anthropic, OpenAI), conversation data is sent directly to your chosen provider under your own API agreement and terms. KILN does not control or monitor how your provider handles that data.

Cookies

KILN uses only essential cookies required for authentication (Clerk session cookies). We do not use tracking cookies, analytics cookies, or any third-party advertising cookies.

Contact

André Bäcker
KILN — Hephaistos Systems
Alicenstraße 48, 35390 Gießen, Germany
hello@kiln.ai