Privacy Policy
How we collect, use, and protect your data.
Effective date: April 1, 2026
1. Who We Are
Kazna ("we," "us," or "our") operates the platform at kazna.ai. Kazna is an AI-powered financial operations platform for modern businesses. This Privacy Policy explains what data we collect, how we use it, and your rights regarding that data.
2. Data We Collect
Account Information
When you create an account, we collect your name, email address, and company information. If you subscribe to a paid plan, our payment processor collects billing details on our behalf — we do not store full credit card numbers.
Financial and Platform Data
When you connect financial platforms (such as QuickBooks, Xero, Stripe, Mercury, Plaid, and others), we access and store business data from those platforms. This includes transactions, invoices, bank balances, payroll records, expense reports, and similar financial data. We only access data that is necessary to provide our analytics and automation features.
Usage Data
We collect information about how you interact with Kazna, including pages visited, features used, AI chat conversations, skills created, and actions taken. This helps us improve the product and troubleshoot issues.
Device and Browser Data
We automatically collect standard technical information such as your IP address, browser type, operating system, and referring URLs.
3. How We Use Your Data
- Provide the service: Sync your financial data, generate analytics, run AI-powered insights, detect anomalies, and execute automations.
- AI processing: We send relevant portions of your financial data to our AI provider (Anthropic / Claude) to generate insights, answer your questions, and power autonomous features. Your data is processed per request and is not used to train AI models.
- Improve the product: Analyze usage patterns to build better features and fix bugs.
- Communicate with you: Send transactional emails (morning briefs, alerts), product updates, and (with your consent) marketing communications.
- Billing and support: Process payments and respond to support requests.
4. AI and Data Processing
Kazna uses AI models provided by Anthropic (Claude) to analyze your financial data and generate actionable insights. When you use AI features — including chat, daily cash briefs, skills, anomaly detection, and runway forecasting — relevant data is sent to Anthropic's API for processing.
Important details about our AI processing:
- Your data is sent only when needed to fulfill a specific request or scheduled task.
- Anthropic does not use your data to train their models under our commercial agreement.
- AI-generated outputs (insights, anomaly alerts, forecasts) are stored in your account for your reference.
- You can delete your AI conversation history at any time from your account settings.
5. Financial Data Security
We understand that financial data demands the highest level of protection. In addition to standard security measures:
- All financial data is encrypted in transit (TLS 1.3) and at rest (AES-256).
- We use bank-grade access controls with role-based permissions.
- We never store bank login credentials — all banking connections use token-based OAuth through Plaid or direct platform OAuth.
- Regular penetration testing and security audits are conducted.
- Enterprise customers can request SOC 2 Type II compliance documentation.
6. Third-Party Services
We rely on the following third-party services to operate Kazna:
- Anthropic (Claude): AI model provider for generating insights and powering intelligent features.
- Vercel: Application hosting and edge delivery.
- Database provider: Serverless PostgreSQL for storing your account and synced financial data.
- Plaid: Secure bank account connections and transaction data.
- Payment processor: For handling subscription billing securely. We do not store your full payment details.
- Analytics tools: We may use privacy-friendly analytics to understand how the product is used.
Each third-party service processes data in accordance with their own privacy policies. We select providers that maintain strong security and privacy standards.
7. Cookies and Tracking
We use cookies and similar technologies for essential purposes:
- Essential cookies: Required for authentication, session management, and security. These cannot be disabled.
- Analytics cookies: Help us understand how visitors use the site. You can opt out of non-essential analytics cookies.
We do not sell your data to advertisers or use tracking pixels for ad retargeting.
8. Data Retention and Deletion
We retain your data for as long as your account is active and as needed to provide the service. Synced financial data retention depends on your plan (7 days for Starter, 90 days for Growth, unlimited for Pro and Enterprise).
When you delete your account, we will delete your personal data and synced financial data within 30 days. Some data may be retained in backups for up to 90 days, after which it is permanently removed. Aggregated, anonymized data that cannot identify you may be retained indefinitely.
9. Your Rights
Regardless of where you are located, you have the following rights regarding your data:
- Access: Request a copy of the personal data we hold about you.
- Correction: Ask us to correct inaccurate or incomplete data.
- Deletion: Request that we delete your account and associated data.
- Export: Request a machine-readable export of your data.
- Restrict processing: Ask us to limit how we process your data in certain circumstances.
- Withdraw consent: Where we rely on consent, you may withdraw it at any time.
To exercise any of these rights, email us at hello@kazna.ai. We will respond within 30 days.
10. GDPR Compliance (European Users)
If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, the General Data Protection Regulation (GDPR) applies to our processing of your personal data. Our legal bases for processing include:
- Contract: Processing necessary to provide the service you signed up for.
- Legitimate interest: Product improvement, fraud prevention, and security.
- Consent: Where required, such as for marketing communications.
You have the right to lodge a complaint with your local data protection authority if you believe we have not handled your data appropriately.
11. CCPA Compliance (California Users)
If you are a California resident, the California Consumer Privacy Act (CCPA) provides you with additional rights:
- The right to know what personal information we collect, use, and disclose.
- The right to request deletion of your personal information.
- The right to opt out of the sale of personal information. We do not sell your personal information.
- The right to non-discrimination for exercising your privacy rights.
To make a CCPA request, contact us at hello@kazna.ai.
12. Children's Privacy
Kazna is not directed at individuals under the age of 18. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.
13. Changes to This Policy
We may update this Privacy Policy from time to time. When we make significant changes, we will notify you by email or through a notice on the platform. Your continued use of Kazna after changes take effect constitutes acceptance of the revised policy.
14. Contact Us
If you have questions about this Privacy Policy or how we handle your data, contact us at: