Legal & Compliance

Privacy & Data Protection Policy

Effective Date: January 1, 2026 Last Updated: September 2026 Compliance: GDPR, CCPA, SOC 2 Type II
Zero-Trust Principle:

KinVeto never inspects your private personal files, keystrokes, web browsing history, or documents. Our background security agent strictly monitors and intercepts rogue remote desktop utilities (like AnyDesk or TeamViewer) to block unauthorized takeover attempts.

1. Information We Collect

When you use KinVeto services, we collect minimal operational information required to provide endpoint defense and family guardian notification channels:

2. How We Use Information

We use collected metadata strictly to enforce zero-trust thread termination on unauthorized remote desktop software, dispatch instantaneous alerts to verified Family Guardians, facilitate cryptographic temporary assistance windows, and manage workstation fleet capacity.

3. Data Protection & Cryptography

All sensitive configuration secrets, SMTP credentials, and Single Sign-On keys are encrypted at rest using AES-256 Fernet encryption. Communication between workstations and KinVeto cloud gateways occurs exclusively over TLS 1.3 encrypted WebSockets and HTTPS.

4. Your Privacy Rights

Under GDPR and CCPA, you have the right to request export or complete deletion of your account and device logs at any time. Contact our Data Protection Officer at privacy@kinveto.com.