Privacy Policy
Last Updated: February 20, 2026
Your privacy is important to us. This policy explains how Kolz Inc. ("Kolz.AI", "we", "us", or "our") collects, uses, and protects your personal information.
1. Information We Collect
1.1 Information You Provide
- Account Information: Name, email address, phone number, company name, and billing information
- Contact Lists: Phone numbers, names, and custom data fields you upload for bulk calling campaigns
- Communication Data: Messages, feedback, and support inquiries you send to us
- Payment Information: Billing details processed securely through third-party payment processors
1.2 Automatically Collected Information
- Usage Data: IP address, browser type, device information, pages visited, and time spent on our platform
- Call Analytics: Call duration, call status, delivery metrics, and campaign performance data
- Cookies and Tracking: We use cookies and similar technologies to enhance user experience (see our Cookie Policy)
- Location Data: General geographic location based on IP address for service optimization
1.3 Third-Party Data
We may receive information from third-party services you connect to Kolz.AI (e.g., CRM integrations, authentication providers like Google/GitHub).
2. How We Use Your Information
We use your information to:
- Provide Services: Process and deliver your bulk calling campaigns, AI-powered conversations, and analytics
- Account Management: Create and manage your account, authenticate users, and provide customer support
- Billing and Payments: Process transactions, issue invoices, and manage subscriptions
- Platform Improvements: Analyze usage patterns, improve AI models, and develop new features
- Communications: Send service updates, marketing materials (with consent), and important notices
- Security: Detect fraud, prevent abuse, and protect our users and platform
- Legal Compliance: Comply with applicable laws, regulations, and legal processes
- Analytics: Generate aggregate statistics and insights (anonymized data)
3. How We Share Your Information
We do not sell your personal information. We may share your data with:
- Service Providers: Trusted third parties who assist in operating our platform (e.g., Supabase for database, cloud hosting providers, payment processors)
- AI Partners: Voice AI providers (e.g., Vapi.ai) necessary to deliver calling services as per your instructions
- Business Transfers: In case of merger, acquisition, or sale of assets, your data may be transferred to the new owner
- Legal Requirements: When required by law, court order, or government regulation
- Protection of Rights: To enforce our Terms of Service, protect our rights, or ensure user safety
- With Your Consent: When you explicitly authorize us to share your information
4. Data Security
We implement industry-standard security measures to protect your data:
- Encryption: Data in transit (TLS/SSL) and at rest (AES-256)
- Access Controls: Role-based access restrictions and multi-factor authentication
- Regular Audits: Periodic security assessments and vulnerability testing
- Secure Infrastructure: Enterprise-grade cloud hosting with regular backups
- Data Isolation: Your contact lists and campaign data are isolated from other users
- Monitoring: 24/7 security monitoring and incident response
Note: No method of transmission over the Internet is 100% secure. While we strive to protect your personal information, we cannot guarantee absolute security.
5. Data Retention
We retain your information for as long as necessary to:
- Active Accounts: Data retained while your account is active
- Closed Accounts: Personal data deleted within 90 days of account closure (unless legal requirements apply)
- Campaign Data: Call logs and analytics retained for 12 months for compliance and dispute resolution
- Billing Records: Financial records retained for 7 years as required by tax laws
- Anonymized Data: Aggregated, non-identifiable analytics may be retained indefinitely
6. Your Privacy Rights
Depending on your location, you may have the following rights:
- Access: Request copies of your personal data
- Rectification: Correct inaccurate or incomplete information
- Deletion: Request deletion of your data (subject to legal obligations)
- Portability: Receive your data in a structured, machine-readable format
- Restrict Processing: Limit how we use your data in certain circumstances
- Object: Opt-out of marketing communications or data processing
- Withdraw Consent: Revoke consent for data processing (where applicable)
- Lodge a Complaint: File a complaint with your local data protection authority
To exercise your rights, contact us at privacy@kolz.ai
7. International Data Transfers
Kolz.AI operates globally. Your data may be transferred to and processed in countries other than your own, including India and the United States. We ensure appropriate safeguards are in place, such as Standard Contractual Clauses (SCCs) approved by regulatory authorities.
8. Children's Privacy
Our services are not directed to individuals under 18 years of age. We do not knowingly collect personal information from children. If we become aware that a child has provided us with personal data, we will delete it immediately.
9. Third-Party Links and Services
Our platform may contain links to third-party websites or integrate with third-party services. We are not responsible for the privacy practices of these external sites. Please review their privacy policies before providing any information.
10. California Privacy Rights (CCPA)
California residents have additional rights under the California Consumer Privacy Act (CCPA):
- Right to know what personal information is collected, used, and shared
- Right to delete personal information held by businesses
- Right to opt-out of the sale of personal information (we do not sell your data)
- Right to non-discrimination for exercising CCPA rights
11. GDPR Compliance (European Users)
For users in the European Economic Area (EEA), we comply with the General Data Protection Regulation (GDPR):
- Legal Basis: We process your data based on consent, contract performance, legal obligations, or legitimate interests
- Data Protection Officer: Contact our DPO at dpo@kolz.ai
- EU Representative: For GDPR-related inquiries from the EU, contact us at the email above
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by:
- Posting the updated policy on this page with a new "Last Updated" date
- Sending an email notification to your registered email address
- Displaying a prominent notice on our platform
Your continued use of our services after changes take effect constitutes acceptance of the updated policy.
13. Contact Us
If you have questions or concerns about this Privacy Policy, please contact us: