Skip to content

    How we protect your data.

    Last updated: July 8, 2026

    You’re trusting us with your business workflows. Here’s exactly what we do to protect them. We only list what we can stand behind.

    1. Encryption

    All data in transit is encrypted with TLS 1.2 or higher. All data at rest is encrypted with AES-256.

    2. Access control

    Every database table is protected by row-level security policies, enforced at the database layer. Access to customer data inside Kepply is role-based, strictly limited, and logged.

    3. Data isolation

    Each customer’s data is logically isolated per organization. Your workflows, conversations, and knowledge base are never accessible to other customers.

    4. Authentication

    Accounts are managed through Supabase Auth. Passwords are hashed and never stored in plaintext.

    5. Payments

    All payments are processed by Stripe. Your card details go directly to Stripe and never touch our servers.

    6. Your data stays yours

    We will never sell or share your business data, and we never use it to train models for other customers.

    We follow GDPR data-handling practices — see our privacy policy for how to access, correct, or delete your data.

    7. Questions

    If you have a security question or want to report a vulnerability, write to contact@kepply.com.

    Questions clients ask about security