Privacy Policy

Last updated: March 2026

At Kolvra, we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service.

1. Information We Collect

We collect information you provide directly to us, such as when you create an account, use our services, or contact us for support. **Account Data:** When you register, we collect your name, email address, company name, and password. For paid plans, we also collect billing information through our payment processor, Stripe. **Usage Data:** We automatically collect information about how you interact with Kolvra, including pages visited, features used, and actions taken within the platform. **Cookies:** We use essential cookies to maintain your session and preferences. We do not use tracking cookies or third-party advertising cookies.

2. How We Use Your Information

We use the information we collect to: - Provide, maintain, and improve our services - Process transactions and send related information - Send you technical notices, updates, and support messages - Respond to your comments, questions, and customer service requests - Monitor and analyze trends, usage, and activities - Detect, investigate, and prevent fraudulent transactions and other illegal activities

3. Data Storage & Security

Your data security is our top priority. **Encryption:** All data is encrypted at rest using AES-256 encryption and in transit using TLS 1.3. **Data Centers:** Your data is stored in secure data centers located in the European Union (Frankfurt, Germany). **Compliance:** We maintain SOC 2 Type II compliance and undergo regular third-party security audits. **Access Control:** We implement strict access controls and follow the principle of least privilege for all internal systems.

4. Third-Party Services

We use the following third-party services to operate Kolvra: **Stripe:** For payment processing. Stripe is PCI-DSS compliant and handles all payment card data. We never store your full card number on our servers. **Resend:** For transactional email delivery (account notifications, password resets, etc.). These providers are contractually obligated to protect your data and only use it for the purposes we specify.

5. Your Rights

You have the following rights regarding your personal data: - **Access:** You can request a copy of all personal data we hold about you - **Correction:** You can update or correct your personal information at any time - **Deletion:** You can request deletion of your account and all associated data - **Data Export:** You can export all your data in standard formats (JSON, CSV) - **Portability:** You can request your data be transferred to another service To exercise any of these rights, contact us at hello@kolvra.app.

6. Cookies

We use only essential cookies necessary for the operation of our service: - **Session cookies:** To keep you logged in during your visit - **Preference cookies:** To remember your language and theme settings We do not use: - Marketing or advertising cookies - Third-party tracking cookies - Analytics cookies that identify individual users You can disable cookies in your browser settings, but this may affect the functionality of our service.

7. Contact Us

If you have any questions about this Privacy Policy or our data practices, please contact us: **Email:** hello@kolvra.app **Address:** Kolvra s.r.o., Prague, Czech Republic We will respond to all inquiries within 30 days.