Privacy Policy
Last updated August 14, 2026.
What this policy covers
This policy describes how Kratya AI Technologies Pvt Ltd ("Kratya", "we") collects, uses, and protects data when a customer organization ("tenant") uses the Kratya platform to evaluate its own customer support interactions, and when that tenant connects a third-party commerce or CRM platform (e.g. Shopify) to power those evaluations.
Data we access via connected platforms
When a tenant connects a commerce platform such as Shopify, Kratya requests only the scopes the tenant explicitly grants (orders, customers, products, fulfillments, and similar operational data) to answer support-relevant questions during evaluation and agent tooling. This data is fetched live, per request, and is not copied into a separate Kratya data warehouse. Any application logs derived from these requests store only redacted, boolean presence flags (e.g. "an email was provided") rather than raw personal values.
Data retention
Access credentials for connected platforms are stored encrypted (AES-256-GCM) and are tied to the tenant that authorized the connection. They are retained for as long as the connection remains active and are revoked immediately on disconnect or on receipt of a platform-initiated uninstall/redaction webhook.
Your rights
A tenant’s end customers can request export or deletion of their personal data through the tenant’s own commerce platform (e.g. Shopify’s customer data request and redaction tools), which Kratya honors automatically for any data it holds. Tenant administrators can request account-level data export or deletion by contacting us directly.
Contact
Questions about this policy or a specific data request can be sent to cvsai@kratya.ai.