Privacy Policy
What personal data Kansumi collects, why, which AI and payment providers receive it, how long it is kept, and the rights you have over it.
On this page
1. Who we are
This policy explains how Kansumi handles personal data on its websites, apps and public share pages. Kansumi is the trade name used by the proprietor operating the service, who is the controller of the data described here. You can reach us at privacy@kansumi.com. Dodo Payments is a separate controller for the payment, tax, fraud and checkout data it collects as merchant of record; see its Privacy Policy.
2. Data we collect
Depending on how you use Kansumi, we collect:
- Account data: email address, display name, avatar or logo, language and unit preferences, sign-in provider, plan, consent choices, and a record of which Terms and Privacy Policy versions you accepted and when.
- Project data: floor plans, sketches, room photos, extracted geometry and dimensions, prompts, style choices, chat messages, generated renders, exports and version history.
- Billing data: Dodo customer, subscription and transaction identifiers, product and receipt information, credit balance and ledger. We never receive full card numbers.
- Sharing data: share tokens, settings, expiry, view counts and timestamps.
- Technical data: IP address, browser and device details, session records, logs, error data, the model used and usage volumes, rate-limit and audit events.
- Error and diagnostic reports: when something fails on our servers we record the error type, message and stack trace, the page or background job it happened in, and identifiers of the project, job, export or run involved. These reports are automatically stripped of email addresses, access tokens, API keys and signed link signatures before they leave our servers. A few of them, such as a subscription we could not cancel while deleting an account, also carry your account identifier so that we can put the failure right.
- Analytics data: only if analytics is configured and you consent, product events, page views, performance metrics and a pseudonymous identifier.
- Communications: support, privacy and billing correspondence.
We receive this data from you and your device, from people acting for your organization, from Google or Apple if you sign in with them, from Dodo Payments, and from the operation of the service itself.
3. Why we use it and on what legal basis
We use data to:
- provide accounts, extraction, editing, generation, chat, export, sharing, billing and support;
- secure the service and prevent fraud and abuse;
- diagnose failures and improve reliability;
- keep records, comply with law, and establish or defend legal claims;
- send transactional messages about your account, projects, security and billing. Marketing messages require your permission and always include a way to unsubscribe.
We do not sell personal data and do not use project content for advertising.
Where the GDPR or a similar law applies, we rely on the performance of our contract with you, our legitimate interests in operating and securing the service, compliance with legal obligations, and your consent for optional analytics, marketing and any future model-training program. Error and diagnostic reporting rests on that legitimate interest rather than on your consent, so it continues whether or not you accept analytics.
4. AI providers
Kansumi sends the relevant Input, prompts and context to the AI provider selected for a request. Which providers a deployment can reach is set by its configuration, and a model whose provider is not configured is never offered to you. The providers Kansumi is able to use are:
- fal processes image prompts, source images and generated images. fal stores API inputs and outputs by default unless request or account controls prevent it. See fal Privacy.
- OpenRouter routes text and image requests to an underlying model provider. Kansumi requests routes that deny provider data collection by default, but OpenRouter keeps request metadata, and retention depends on the routed provider. See OpenRouter Privacy.
- Groq processes prompts, images and chat context. Groq does not retain ordinary inference content by default, may keep it for up to 30 days for reliability or abuse investigations, and does not train on it. See Your Data in GroqCloud.
- OpenAI processes prompts, images and chat context sent to its API. OpenAI states that it does not use API content to train its models by default and keeps it for a limited period for abuse monitoring. See OpenAI Privacy.
- Anthropic processes prompts, images and chat context sent to its API. Anthropic states that it does not use API content to train its models by default and keeps it for a limited period for safety monitoring. See Anthropic Privacy.
- A self-hosted model (an Ollama server) runs on infrastructure the operator of this deployment controls. Requests answered by it are not sent to a third-party AI provider at all.
One request is served by one provider, the provider behind the model chosen for it. There is no automatic switch to a different provider, so a request either runs where it was sent or fails.
Kansumi does not train its own models on your content. The training setting in Settings is off by default; if we ever introduce training, only accounts that have opted in will be included.
5. Other recipients
We share data only with:
- Dodo Payments, as merchant of record and independent controller, for checkout, payment, tax, fraud, refunds and disputes.
- Hosting, database, storage, content-delivery, email, security and authentication providers that operate the service on our behalf.
- PostHog, in two separate roles. Product analytics, both in your browser and from our servers, runs only after you accept analytics and stops when you decline or withdraw. Error and diagnostic reports are sent from our servers whenever this deployment has error reporting configured, whatever your analytics choice, on the legitimate interest described in section 3; they carry no cookies and no browser identifier.
- Advisers, insurers, authorities, courts or a buyer of the business, where necessary for legal compliance, safety, fraud prevention or legal claims.
Providers acting on our behalf may use your data only to provide their service to us.
6. Share links and cookies
A share link is public to anyone who has it, and viewers can copy or redistribute what they see. Revoking the link stops access through Kansumi but cannot erase copies made elsewhere. Share pages record aggregate views and security logs. Essential cookies and browser storage keep you signed in and remember your language, appearance and consent choice. PostHog analytics loads only after you accept it, and you can change that choice in Settings. The error and diagnostic reports described in section 2 are not analytics and are not covered by that choice. Details are in the Cookie Policy.
7. Retention and deletion
Project versions are kept according to your plan's history limits. A deleted project is removed after a 30-day grace period. Requesting account deletion signs you out, revokes your share links and starts a 30-day grace period during which signing in restores the account; after it, your account and project data are deleted and backups are cleared within a further 30 days. Abandoned anonymous uploads are purged after 24 hours. We keep limited transaction, tax, consent, security and audit records where the law requires it or to defend legal claims. Providers apply their own retention schedules.
8. International transfers
Kansumi and its providers may process data outside your country, including in the United States. Where the law requires it, we rely on adequacy decisions, standard contractual clauses or other approved safeguards.
9. Security and your rights
We protect data with access controls, private storage for uploads awaiting review, unguessable addresses served through a content delivery network for renders and validated uploads, signed links for exports and data archives, encryption provided by our infrastructure, input validation and audit logging. No system is completely secure.
Depending on where you live, you have the right to:
- access, correct, delete or receive a copy of your data;
- object to or restrict its processing, and withdraw consent;
- complain to your data protection authority.
Settings lets you edit your profile, export your data, change your analytics and training choices and delete your account. For anything else, write to privacy@kansumi.com; we may need to verify your identity first. Dodo Payments handles requests about the data it controls.
10. Children, changes and contact
Kansumi is not directed to children under 13, or under the higher minimum age in your country, and we do not knowingly collect their data. Users under 18 need their parent's or guardian's permission. If you believe a child has provided us data, contact privacy@kansumi.com and we will investigate and delete it. We may update this policy when providers, features or the law change, and will announce material changes in the app or by email. Liability for the service is governed by the Terms of Service. Questions and requests: privacy@kansumi.com.