KAIROS ANALYTICS ← Back to home
Legal

Privacy Policy

Last updated: February 2026

1. Who controls your data

Kairos Lab is the data controller for information collected through kairosanalytics.org and the Kairos Analytics platform. Contact us at contact@valisthea.xyz.

2. What we collect about you (account data)

When you create an account, we collect: your email address, name (if provided via Google or GitHub OAuth), authentication method, plan type, and App IDs you register.

This data is stored securely via Supabase and is used exclusively to operate your account. We do not sell this information.

3. What the SDK collects about your users

When your dApp users interact with a Kairos-integrated app, our SDK collects: a random session ID (not linked to identity), event names and categories you define, timestamps, page paths, device type, and country/city derived from IP address.

We never collect: IP addresses (used only for geo lookup, then discarded), real names, email addresses, cookies, browser fingerprints, or wallet private keys. The SDK is privacy-preserving by default.

You as the dApp developer are responsible for ensuring your users are informed about analytics collection, particularly in GDPR jurisdictions.

4. On-chain data

Event batch hashes are submitted to Base mainnet and/or BSC. These hashes are cryptographic summaries that cannot be reversed to reveal individual events. Blockchain data is permanently public.

Wallet addresses tracked via the SDK are stored in our relayer for retention metrics. They are pseudonymous. We do not attempt to link wallet addresses to real-world identities.

5. Subprocessors

Supabase — authentication and database. Privacy policy

Stripe — payment processing. Privacy policy

Railway — relayer infrastructure hosting. Privacy policy

Vercel — frontend hosting. Privacy policy

CoinGecko — token price API (no personal data shared). Privacy policy

6. Data retention

Account data is retained while your account is active. Event data retention depends on your plan: 30 days (Free), 12 months (Builder), permanent (Protocol). On-chain hashes are permanent.

You can request deletion by emailing us. We process deletion within 30 days, except on-chain data which is irrevocable.

7. Your rights (GDPR / CCPA)

Depending on your jurisdiction, you may have the right to: access, correct, delete, export your data, or object to certain processing. Contact contact@valisthea.xyz. We respond within 30 days.

8. Cookies

kairosanalytics.org uses only functional cookies required for your authenticated session (via Supabase). We do not use advertising or third-party tracking cookies.

9. Security

All data in transit is encrypted via HTTPS/TLS. Authentication tokens are managed by Supabase with industry-standard JWT security. Payment information is handled entirely by Stripe. On-chain event hashes provide cryptographic proof that data was not modified after collection.

10. Changes to this policy

We may update this Privacy Policy. Significant changes will be communicated by email.

PRIVACY REQUESTS
contact@valisthea.xyz