Privacy Policy
Effective Date: March 9, 2026
1. Introduction
Kepeno ("we", "our", "us") operates the Kepeno mobile application and web platform. This Privacy Policy explains how we collect, use, disclose, and safeguard your information. We comply with the GDPR, the Polish RODO, and the German BDSG.
2. Data Controller
Kepeno — privacy@kepeno.com
3. Information We Collect
- Account information (email, country, language preference)
- Financial documents processed via AI (OCR text extraction)
- Banking data via Open Banking (Nordigen/GoCardless — PSD2 compliant)
- Usage analytics (anonymized)
4. How We Use AI
We use Anthropic Claude AI to analyze your documents, categorize transactions, and provide financial insights. Document text is sent to Anthropic for processing. We do not use your data to train AI models. AI-generated insights are not financial advice.
5. Your Rights (GDPR)
- Access — view all data we hold about you
- Portability — export your data (JSON format, available in Settings)
- Erasure — delete your account and all associated data
- Rectification — update your personal information
- Objection — opt out of data processing
6. Data Retention
- Account data: retained while account is active
- Financial documents: retained until you delete them
- Audit logs: retained for 365 days (legal requirement)
7. Cookies
We use essential cookies to maintain your session and preferences. Analytics cookies (PostHog) are only activated after you consent via our cookie banner. You can withdraw consent at any time by clearing your browser cookies.
8. Third-Party Services
- Supabase (database hosting — EU region)
- Anthropic (AI analysis)
- Stripe (payment processing)
- Nordigen/GoCardless (Open Banking)
- Sentry (error monitoring)
- PostHog (analytics — EU region)
9. EU AI Act Compliance
Kepeno uses AI to assist with financial document analysis and categorization. All AI-generated content is clearly labeled as AI-generated. Our AI features are not intended to replace professional financial or legal advice. Users maintain full control over their data and can delete AI-generated analyses at any time.
10. Contact
For privacy inquiries: privacy@kepeno.com