Privacy Policy
This Policy explains what we collect, why, and your choices. We follow a data-minimisation principle: we collect as little as possible to run the Service.
1. What we collect
- Account data: your email and a securely hashed password (we never store your password in plain text).
- Plan & billing: your plan tier and, for paid plans, billing metadata handled by our payment processor (we do not store full card numbers).
- Operational logs: minimal session metadata (start/stop time, plan, resource use) for security, abuse prevention, and capacity — not the contents of your desktop.
2. What we do NOT do
We do not sell your data. We do not link your identity to the specific commands you run inside a session for advertising or profiling. Session desktops are isolated and destroyed after use.
3. Why we process data
To create and secure your account, provide the Service, prevent abuse, meet legal obligations, and (for paid plans) process payments.
4. Retention
Account data is kept while your account is active. Operational logs are kept only as long as needed for security and legal purposes, then deleted. Session file storage (paid plans) is kept per your plan and deleted on account closure.
5. Security
Passwords are hashed with a strong algorithm. Environments are sandboxed and network-isolated. We apply access controls and monitoring to protect the platform.
6. Your rights
Depending on your location you may request access to, correction of, or deletion of your personal data, and you may close your account at any time. Contact us to exercise these rights.
7. Cookies
We use a single essential cookie to keep you signed in. We do not use advertising or third-party tracking cookies.
8. Children
The Service is not intended for children under 16.
9. Changes
We will post updates here and notify you of material changes.
10. Contact
Privacy questions or requests: privacy@kali-cloud.example.