Skip to main content
Kasspian

Last updated 21 April 2026

Privacy Policy

1. Who we are

Kasspian is operated by Kasspian Ltd (“we”, “us”, “our”). We provide an AI-powered business idea validation service at kasspian.com. For data protection enquiries, contact us at privacy@kasspian.com.

2. What data we collect

Account data — your email address and name, collected when you sign up via Clerk.

Idea content — the text you submit for analysis and any images you upload. This is processed by our AI to generate your report.

Usage data — pages visited, features used, and error events (collected via Sentry for reliability purposes).

Payment data — handled entirely by Clerk/Stripe. We do not store card numbers or payment credentials.

3. How we use your data

  • To generate your analysis reports using Claude (Anthropic’s AI)
  • To send you transactional emails (analysis complete, welcome, billing receipts)
  • To operate and improve the Kasspian service
  • To enforce our Terms of Service and prevent abuse

We do not sell your data to third parties. We do not use your idea content to train AI models.

4. Third-party services

We use the following sub-processors:

  • Clerk — authentication and user management
  • Anthropic (Claude) — AI analysis generation
  • Neon — PostgreSQL database hosting (EU West)
  • Resend — transactional email delivery
  • Cloudflare R2 — image storage
  • Sentry — error monitoring
  • Vercel — hosting and edge infrastructure

5. Data retention

We retain your account and idea data for as long as your account is active. If you delete your account, we delete your personal data within 30 days. Anonymised aggregate data (e.g. usage statistics) may be retained indefinitely.

6. Your rights (GDPR)

If you are in the European Economic Area or UK, you have the right to:

  • Access the personal data we hold about you
  • Request correction or deletion of your data
  • Object to or restrict certain processing
  • Data portability — receive your data in a machine-readable format
  • Withdraw consent at any time where processing is based on consent

To exercise these rights, email privacy@kasspian.com. We will respond within 30 days.

7. Cookies

We use strictly necessary cookies for authentication (set by Clerk). We do not use advertising or tracking cookies. If we add analytics in future, we will update this policy and seek your consent where required.

8. Security

All data is transmitted over HTTPS. Databases are encrypted at rest. Access to production systems is restricted to authorised personnel only. We use industry-standard security practices and monitor for vulnerabilities continuously.

9. Changes to this policy

We may update this policy from time to time. We will notify you of material changes by email. The “last updated” date at the top of this page indicates when the most recent revision was made.

10. Contact

Kasspian Ltd
Email: privacy@kasspian.com