This Privacy Policy explains how Tanitapps Corp ("Tanitapps", "we", "us"), a company based in the United States, handles information in connection with the KeplerAI platform and the website at www.keplerai.io (the "Services").
1. The most important thing: your raw data stays with you
KeplerAI is built on a strict control-plane / data-plane separation. Your raw business data — customer records, transactions, credentials to your databases, and trained model weights — reside exclusively within your on-premise data plane (the Runner) on your infrastructure. This data never leaves your environment and is never transmitted to, stored by, or accessible to Tanitapps.
Only the following may cross the boundary to our control plane: metadata (schemas, column statistics), code to be executed, and aggregated results and metrics. Raw rows, secrets and model weights are blocked by design.
2. Information we do process
Account & tenant information
- Identity and contact details of users (name, work email, role) and tenant/organization details.
- Authentication data and role assignments (RBAC).
Operational metadata
- Dataset schemas, column types and statistics, use-case and scenario definitions.
- Aggregated results, metrics, logs and diagnostics needed to operate the Services.
- Logical connection references (never the underlying credentials).
Website & product usage
- Standard web/server logs, and information you submit via contact forms.
- Minimal, privacy-respecting analytics where enabled.
3. How we use information
- To provide, secure and operate the Services and your tenant.
- To orchestrate AI agents over metadata (never over your raw data).
- To respond to inquiries, provide support and implementation services.
- To comply with legal obligations and enforce our Terms of Service.
4. AI processing
KeplerAI uses AI agents (including large language models) that reason over metadata and optional anonymized/synthetic samples only. Generated code is executed inside your data plane. Depending on your chosen isolation tier, you may restrict what metadata (if any) transits, up to a 100% local mode where nothing leaves your environment.
5. Sub-processors
We rely on a limited set of infrastructure and AI providers to run the control plane. A current list of sub-processors is available on request at privacy@keplerai.io. Full sub-processor list and DPA terms: to be finalized.
6. Data retention
We retain account and metadata for as long as your tenant is active and as required to provide the Services, then delete or anonymize it within a reasonable period, subject to legal requirements.
7. Security
We use mutual TLS, revocable per-tenant tokens, encryption in transit, access controls and tenant isolation. Because raw data stays in your data plane, the control plane is not a repository of your sensitive records. See Security & Data Sovereignty.
8. Your rights
Depending on your jurisdiction (including GDPR/EEA and US state privacy laws), you may have rights to access, correct, delete or port your personal data, and to object to or restrict certain processing. To exercise these rights, contact privacy@keplerai.io.
9. International transfers
Account and metadata may be processed in the United States and other jurisdictions where our infrastructure providers operate, using appropriate safeguards. Your raw data does not transfer, because it never leaves your data plane.
10. Children
The Services are intended for businesses and are not directed to individuals under 16.
11. Changes
We may update this Policy. Material changes will be reflected by the "Last updated" date above.
12. Contact
Tanitapps Corp
3790 A Colorado Avenue, Boulder, Colorado 80303, USA.
Privacy inquiries: privacy@keplerai.io.