Privacy Policy
How KayBi handles private memory, AI processing, telemetry, incognito, and data controls.
Last updated: August 16, 2026
Signed-in users can review Data controls.
Scope and operator
This Privacy Policy explains how Khaled Elsaadany, an individual based in Egypt, operating KayBi handles personal information when you use KayBi. The current privacy version is launch-2026-08-16.
KayBi is an adult-only product. Do not create an account or use KayBi if you are under 18. If KayBi learns that an account belongs to a person under 18, KayBi may disable the account and delete personal information, subject to any lawful retention need.
Information KayBi handles
KayBi handles account and authentication information, support messages, settings, legal acceptance, plan and quota status, and service communications. When you use the product, KayBi stores the private source assets, normal chats, assistant responses, corrections, spaces, folders, source metadata, chunks, citation anchors, memory events, and usage records needed to operate the service.
Paid-plan records can include plan code, subscription status, renewal or end dates, Lemon Squeezy customer and subscription identifiers, and billing portal links. KayBi does not store full payment card numbers, payment-method details, billing addresses, or tax IDs.
Source assets and chats may contain personal or sensitive information that you choose to provide. Do not use KayBi for regulated medical, financial, legal, biometric, government-ID, or emergency workflows unless KayBi has agreed to that use in writing.
How KayBi uses information
KayBi uses information to provide accounts, private memory, retrieval, citations, export, deletion, retention, quotas, billing support, security, abuse prevention, reliability, and customer support. Where privacy law requires a legal basis, KayBi relies on contract performance to provide the service, legitimate interests for security and reliable operations, legal obligations where applicable, and consent where required.
Analytics, replay, and error monitoring
KayBi uses Sentry for essential, content-filtered application error and security monitoring needed to operate the service. Sentry browser session replay is currently off. Essential monitoring does not depend on your optional analytics choice. These tools are not used for third-party advertising, sale of personal information, or cross-context behavioral advertising.
PostHog product analytics is optional and remains off until you explicitly allow it. If allowed, KayBi sends only allowlisted, content-free product events. PostHog and Sentry session replay remain off while their privacy safeguards are separately verified. You can allow or withdraw optional telemetry at any time under Privacy and access settings. Your choice does not affect core account access, billing, export, deletion, or essential error and security monitoring.
When KayBi receives an authenticated request carrying an active Global Privacy Control or Do Not Track signal, KayBi treats it as a refusal of optional analytics and records that refusal without storing the raw signal. Incognito routes do not initialize or send PostHog analytics, or replay. Content-free quota and abuse controls needed to provide the session may still operate.
KayBi configures telemetry to mask or block source content, chat text, prompts, assistant answers, uploads, media, payment and authentication screens, query strings, signed URLs, secrets, and sensitive fields. These controls reduce exposure but are not an absolute guarantee, so browser replay remains disabled unless its behavior is separately inspected and approved.
Payments and billing
KayBi starts with a public no-card 7-day trial. Paid purchases use separate Lemon Squeezy checkout. Lemon Squeezy is the merchant of record for those purchases and handles checkout, payment methods, taxes, invoices, refunds, chargebacks, fraud review, and the hosted billing portal.
Lemon Squeezy sends KayBi signed subscription and payment event notifications so KayBi can keep plan access in sync. Lemon Squeezy's buyer terms and privacy notices also apply to checkout and billing portal activity.
AI provider processing
KayBi uses paid Google Gemini APIs for embeddings, classification, retrieval support, citations, and chat answers. KayBi sends the source slices and request context needed for those features.
KayBi does not sell your data and does not train KayBi-owned models on your private user data by default. KayBi does not claim true end-to-end encryption because KayBi servers and AI providers must process source slices to provide the service.
Paid Gemini terms state that prompts, files, and responses are not used to improve Google products. Provider safety, security, and legally required processing may still apply. KayBi does not use AI output to make automated legal, credit, employment, housing, education-admission, insurance, medical, or similarly significant decisions about users.
Incognito mode
Incognito can read existing memory for a current answer, but it does not create persistent chats, uploads, sources, chunks, embeddings, citations, retrieval traces, corrections, or memory events. Temporary handling is limited to the live session, and KayBi keeps operational logs content-free.
Retention, export, and deletion
KayBi provides controls to export data, delete an account or specific Spaces, files, or chats, and configure retention. Exports include source assets, normal chats, corrections, citation anchors, memory events, and user-facing metadata. Exports exclude embeddings, vector indexes, hidden ranking traces, provider temporary files, signed URLs, internal job logs, and incognito temporary data.
KayBi keeps account and product data while an account is active or as needed to provide the service. Deletion requests remove affected data from normal product use first and then queue hard deletion. Limited billing, security, fraud-prevention, legal, backup, or dispute records may be retained where required or reasonably necessary.
Service providers and international processing
KayBi uses Supabase for authentication, database, storage, and queues; Google Gemini APIs for AI processing; Netlify for web hosting; Cloudflare Turnstile for signup abuse checks; a private Dockerized worker host for ingestion and background jobs; PostHog and Sentry for telemetry; and Lemon Squeezy for paid checkout and billing services.
KayBi and its providers may process information in the United States and other countries where they operate. Where transfer rules apply, KayBi uses the safeguards made available by the relevant provider, as appropriate to the processing.
Privacy rights and choices
You can use KayBi's product controls to export, delete, and configure retention for your data. You can also send a privacy request to khaledmoayad2006@gmail.com. KayBi may need to verify your identity before responding.
Depending on where you live, you may have rights to access, know, correct, delete, export, restrict, object to processing, withdraw consent, limit certain sensitive-information use, or opt out of sale or sharing. KayBi does not sell personal information and does not share personal information for cross-context behavioral advertising.
California residents may have rights under the CCPA/CPRA, including access, deletion, correction, and rights concerning sale or sharing. EEA and UK users may have rights under the GDPR/UK GDPR, including access, rectification, erasure, restriction, portability, objection, and withdrawal of consent where consent applies.
Policy updates and contact
KayBi may update this Privacy Policy when the service, providers, or legal requirements change. KayBi will update the version and last-updated date and provide additional notice where required. For privacy questions or requests, contact khaledmoayad2006@gmail.com.