KANGL INC. · LAST UPDATED OCTOBER 3, 2026
Privacy Notice
Kangl Inc. provides kangl.dev and the Kangl security control plane. This notice describes personal information processed for the website, accounts, subscriptions and service operations. For customer-controlled workspace content, the customer organization determines the purposes of use; a separate data-processing agreement may define additional obligations.
1. Information we process
Account information includes names, work email addresses, company names, membership and permissions, authentication records and password hashes. Workspace information may include source-platform and repository identifiers, provider connections, configuration, findings, policy decisions, jobs, audit events and content you deliberately submit. Connection credentials are handled as secrets, not public inventory fields.
Billing information includes Stripe customer and subscription identifiers, plan, status, billing dates and payment-event metadata. Stripe collects card and payment details on its hosted pages; Kangl does not collect full card numbers or card security codes in its application.
Operational information includes request metadata, IP addresses, timestamps, service errors and security events. We also receive messages you send to support. The website demo form prepares a draft in your browser; it does not send or store the entered information. We receive the draft only if you choose to send it through your email application.
2. How information is used
We use information to authenticate users, operate isolated workspaces, apply permissions and entitlements, provide configured integrations, handle subscriptions, deliver account and service emails, investigate problems and abuse, and meet applicable legal obligations. Where applicable, these purposes rely on providing the requested service, legitimate security and operational interests, legal obligations, or your consent.
Marketing consent is optional and separate from necessary account and service notices. You can withdraw marketing consent by contacting support or using an available unsubscribe link. We do not sell personal information or use it for targeted advertising.
3. Service providers and sharing
Information is processed by providers needed to operate the service: our server-hosting provider, Microsoft Azure for secret storage and messaging, Microsoft Entra for platform-owner authentication, Amazon SES for transactional email, Cloudflare for delivery and security, and Stripe for billing. Your email provider receives messages you choose to send. These providers process the information needed for their functions under their applicable agreements and privacy terms.
Source-platform, security-provider and AI integrations may receive requests and content according to the configuration authorized by your organization. Review the selected provider's terms before enabling an integration. We may disclose information when legally required, to protect legitimate security or legal interests, or in a business transfer subject to applicable safeguards. We do not make one customer's workspace publicly available to another customer.
4. Cookies and security
The application uses essential session and authentication cookies to maintain sign-in and security. The current Kangl website does not deploy advertising trackers. Infrastructure providers may process security cookies and technical metadata under their own terms. Blocking necessary cookies may prevent sign-in.
Our safeguards include HTTPS, server-side permission checks, tenant isolation, protected credential storage and restricted operational access. Logging is designed to omit credential values and authorization headers. No system is completely secure, and this notice does not promise a certification or eliminate risk. Do not include passwords, API keys or sensitive customer data in support emails.
5. Retention and deletion
We retain information as needed for the service, configured audit retention, security, dispute resolution and applicable legal obligations. Authorized workspace administrators can use the account's deletion workflow. Deleted information may remain in restricted backups until the relevant retention period expires. Billing records held by Stripe and records legally required to be retained may survive workspace deletion.
Plan limits and audit retention are shown in the current plan catalog. Contact support for questions about retention, exports or deletion; deletion of a workspace can affect every member and is not the same as canceling renewal.
6. Your choices and requests
Depending on applicable law, you may have rights to access, correct, export or delete personal information, restrict or object to certain processing, withdraw consent, or complain to the relevant regulator. Send requests to [email protected]. We may verify identity and authority before acting, and legal or security obligations may limit a request. For information controlled by your employer or another customer organization, contact that organization's administrator first.
7. International processing and intended users
Infrastructure and connected providers may process information outside your country. Supporting production services include configured US Azure and AWS regions; do not assume a particular residency guarantee without a separate agreement covering the deployment and providers. Contact us before using the service with residency restrictions or regulated data.
Kangl is a business service intended for adults, not a service directed to children. Do not submit children's personal information or regulated health information without a specifically agreed lawful arrangement.
8. Changes and contact
We may update this notice and will identify the updated date and communicate material changes as appropriate. Service provider: Kangl Inc., kangl.dev. Contact for privacy and support: [email protected]. See our Terms of Service for subscription and cancellation details.
