KumiKumi

Privacy Policy

Last updated: March 30, 2026

1. Introduction

Kumi ("we", "us", "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use the Kumi platform ("the Service").

2. Information We Collect

Account information

When you create an account, we collect your name, email address, and optionally a profile picture. If you subscribe to a paid plan, billing is handled by Stripe — we do not store your payment card details.

Clinical data

You may upload patient profiles, consultation notes, photos, and documents. This content is your data and is stored solely to provide the Service.

Usage data

We collect basic usage analytics (pages visited, features used, consultation counts) to improve the Service. We do not sell this data to third parties.

3. How We Use Your Information

We use your information to:

  • Provide, maintain, and improve the Service
  • Process billing and manage your subscription
  • Send transactional emails (account confirmation, billing receipts)
  • Respond to support requests
  • Monitor and prevent abuse

We do not use your clinical data for marketing, analytics, AI training, or any purpose other than providing the Service.

4. Data Storage and Security

Your data is stored on servers located in the European Union. We use encryption in transit (TLS) and at rest. Access to production systems is restricted to authorized personnel only. File uploads (photos, documents) are stored in secure object storage with access-controlled presigned URLs.

5. Data Sharing

We do not sell, rent, or share your personal data with third parties, except:

  • Stripe — for payment processing (subject to Stripe's Privacy Policy)
  • Legal obligations — if required by law, regulation, or legal process
  • Service providers — hosting and infrastructure providers who process data on our behalf under strict confidentiality agreements

6. Your Rights (GDPR)

Under the General Data Protection Regulation, you have the right to:

  • Access — request a copy of your personal data
  • Rectification — correct inaccurate data
  • Erasure — request deletion of your data
  • Portability — receive your data in a structured, machine-readable format
  • Restriction — restrict processing of your data
  • Objection — object to processing based on legitimate interests

To exercise any of these rights, contact us at contact@kumi.vet. We will respond within 30 days.

7. Cookies

We use essential cookies for authentication and session management. We do not use advertising or tracking cookies. No cookie consent banner is required as we only use strictly necessary cookies.

8. Data Retention

We retain your data for as long as your account is active. If you delete your account, we will delete your personal data and clinical content within 30 days. Billing records may be retained longer as required by tax and accounting regulations.

9. Children

The Service is not intended for users under 16 years of age. We do not knowingly collect data from children under 16.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify users of material changes via email or in-app notification. The "last updated" date at the top reflects the most recent revision.

11. Contact

For privacy-related questions or requests, contact us at contact@kumi.vet.