Privacy Policy
Private.Ki provides encrypted webmail and encrypted messaging, including group chats and invitations for people who are not yet users. This policy explains what we collect, why, and the choices you have.
Our principles
- No ads. We do not sell your personal data or use it for advertising.
- Data minimisation. We collect only what we need to run and secure the service.
- Encryption by default. Message content is designed to be unreadable to us.
- No logging by default.
What we collect and store
Account data
Identifiers you choose or provide (for example your username and your Private.Ki email address) and the authentication data required to sign you in. Your password itself is never sent to us; sign‑in uses the OPAQUE protocol.
Encrypted content you store
Emails, messages, attachments and related data such as your display name, addresses you have written to and your signatures — stored in encrypted form on our systems so the service can function. Your recovery address, if you set one, is kept only as a salted hash; we cannot read it back.
Routing and service metadata
Information needed to deliver messages and operate the service: sender and recipient addresses or identifiers, timestamps, message size, delivery status, group membership. For external messages, the headers as received.
Security and anti‑abuse data
In limited cases, data needed to prevent abuse: a keyed hash of your IP address in a rate‑limiting counter that expires within an hour. We do not keep web‑server access logs or connection logs.
Support data
Anything you send to support and, if you choose to report abuse, the information included in that report.
Cookies and local storage
Essential session and security storage for the web app, and limited diagnostics if enabled. The marketing site stores only your theme preference.
Encryption and what we cannot see
- Message bodies and attachments are encrypted on your device so that we cannot read them.
- Some metadata remains visible because a communication service must route and deliver messages — addressing and delivery signals in particular. We publish the full list.
How we use data
- Provide, maintain and secure the service.
- Prevent spam, abuse, fraud and technical attacks.
- Troubleshoot, improve reliability and provide support.
Data retention and deletion
We keep your data only as long as needed to provide the service and keep it secure. You can delete messages and your account using in‑app controls. Deleting your account removes associated data from our active systems.
Invitations
If you receive an invitation link or QR code, we process and may store the invitation token and the security and technical data needed to deliver the invitation and protect the service.
Your choices and rights
Depending on your location, you may have rights to access, correct, export, restrict, object to the processing of, or delete your personal data. You can exercise these through the app settings where available, or by contacting us at [email protected].
Changes
We may update this policy. The updated version becomes effective when posted on this page.