How we protect your data.
Last updated: July 8, 2026
You’re trusting us with your business workflows. Here’s exactly what we do to protect them. We only list what we can stand behind.
1. Encryption
All data in transit is encrypted with TLS 1.2 or higher. All data at rest is encrypted with AES-256.
2. Access control
Every database table is protected by row-level security policies, enforced at the database layer. Access to customer data inside Kepply is role-based, strictly limited, and logged.
3. Data isolation
Each customer’s data is logically isolated per organization. Your workflows, conversations, and knowledge base are never accessible to other customers.
4. Authentication
Accounts are managed through Supabase Auth. Passwords are hashed and never stored in plaintext.
5. Payments
All payments are processed by Stripe. Your card details go directly to Stripe and never touch our servers.
6. Your data stays yours
We will never sell or share your business data, and we never use it to train models for other customers.
We follow GDPR data-handling practices — see our privacy policy for how to access, correct, or delete your data.
7. Questions
If you have a security question or want to report a vulnerability, write to contact@kepply.com.