Legal
Privacy Policy
Effective date: April 8, 2026
This Privacy Policy describes how Kepler Insights LLC ("we," "us," or "our") collects, uses, and shares information when you use our platform, website, and services (the "Service"). By using the Service you agree to the practices described here.
Important: Kepler Insights is not a consumer reporting agency as defined by the Fair Credit Reporting Act ("FCRA"), 15 U.S.C. § 1681 et seq. KI Ratings are not "consumer reports" under FCRA and may not be used as a factor in determining any individual's eligibility for credit, insurance, employment, or any other purpose regulated by FCRA.
1. Information We Collect
1.1 Information You Provide
- Account information — email address and password when you register
- Company information — company name, domain, sector, stage, and other details you enter when requesting a score
- Founder information — founder name, if provided for scoring purposes
- Payment information — billing is handled by Stripe. We do not store your credit card number. We receive a Stripe customer ID and subscription status.
- Communications — any messages you send us via email or support channels
1.2 Information Collected Automatically
- Log data — IP address, browser type, pages visited, and timestamps when you use the Service
- Local storage — we store your session token and score history in your browser's localStorage to enable the portal to function without a server-side session
- Cookies — we use essential cookies for authentication. We do not use third-party advertising or tracking cookies.
1.3 Third-Party Data Used for Scoring
To generate KI Ratings, we query the following third-party data providers on your behalf when you submit a score request:
- Crustdata — company financials, funding rounds, investors, headcount, web traffic, competitor data
- People Data Labs — LinkedIn-derived professional data for founder and team analysis
- DataForSEO — Google Trends, SERP data, and web traffic estimates
- NewsAPI — recent news coverage and sentiment analysis
- Anthropic (Claude Haiku) — AI-powered market estimates, regulatory analysis, and relevance scoring
This data is fetched at query time and cached for up to 7 days to avoid redundant API calls. We do not sell or share this cached data with other customers.
2. How We Use Your Information
- To create and manage your account
- To generate, store, and display company scores and KI Ratings
- To send score change alerts and weekly digest emails (subscribers only)
- To process payments and manage subscriptions via Stripe
- To send win-back and re-engagement emails if your subscription lapses
- To improve the Service and scoring accuracy
- To respond to your support inquiries
- To comply with legal obligations
3. How We Share Your Information
We do not sell your personal information. We share information only in the following circumstances:
3.1 Service Providers
- AWS — cloud infrastructure (Lambda, DynamoDB, SES, Step Functions, Cognito, API Gateway) in the us-east-1 region
- Stripe — payment processing and subscription management
- Netlify — website and portal hosting
- Crustdata, People Data Labs, DataForSEO, NewsAPI — data enrichment for scoring
- Anthropic — AI language model for market estimates and regulatory analysis
3.2 Legal Requirements
We may disclose information if required by law, regulation, legal process, or governmental request.
3.3 Business Transfers
If Kepler Insights is acquired or merges with another company, your information may be transferred as part of that transaction. We will notify you before your information becomes subject to a different privacy policy.
4. Email Communications
By subscribing to score alerts or the weekly digest, you consent to receive those emails. Each email includes an unsubscribe link in compliance with the CAN-SPAM Act. You may also unsubscribe at any time via the unsubscribe page. Transactional emails (account confirmation, billing receipts) cannot be opted out of while your account is active.
5. Data Retention
- Account data — retained for the life of your account and 90 days after deletion
- Score history — retained indefinitely to power historical charts and analytics
- Fetcher cache — auto-expires after 7 days (DynamoDB TTL)
- Subscriber records — retained indefinitely (required for CAN-SPAM compliance and win-back logic)
6. Data Security
We use industry-standard security practices including TLS encryption in transit, AWS IAM role-based access control, and Cognito-managed authentication. However, no method of transmission over the Internet is 100% secure, and we cannot guarantee absolute security.
7. Your Rights
Depending on your location, you may have the right to:
- Access the personal information we hold about you
- Correct inaccurate information
- Request deletion of your account and associated data
- Object to or restrict certain processing
- Data portability (receive your data in a machine-readable format)
To exercise any of these rights, email us at noah@keplerinsights.us. We will respond within 30 days.
8. California Privacy Rights (CCPA)
If you are a California resident, the California Consumer Privacy Act ("CCPA") provides you with additional rights regarding your personal information. These include:
- Right to Know — You may request that we disclose the categories and specific pieces of personal information we have collected about you, the sources from which it was collected, the business purpose for collecting it, and the categories of third parties with whom we share it.
- Right to Delete — You may request deletion of your personal information, subject to certain exceptions.
- Right to Opt-Out of Sale — We do not sell personal information. If this changes, we will provide a "Do Not Sell My Personal Information" link.
- Non-Discrimination — We will not discriminate against you for exercising any of your CCPA rights.
To exercise these rights, email noah@keplerinsights.us with the subject line "CCPA Request." We will verify your identity and respond within 45 days.
9. European Users (GDPR)
If you are located in the European Economic Area ("EEA"), United Kingdom, or Switzerland, the General Data Protection Regulation ("GDPR") provides you with additional rights:
- Lawful basis — We process your personal data on the basis of: (a) your consent (account creation), (b) performance of a contract (providing the Service), (c) legitimate interests (improving the Service, fraud prevention), and (d) legal obligations.
- Data transfers — Your data is processed in the United States (AWS us-east-1 region). By using the Service, you consent to the transfer of your data to the United States.
- Additional rights — In addition to the rights listed in Section 7, you have the right to lodge a complaint with your local data protection authority.
- Data controller — Kepler Insights LLC is the data controller for the purposes of GDPR. Contact: noah@keplerinsights.us.
10. FCRA Disclaimer
Kepler Insights is not a consumer reporting agency as defined by the Fair Credit Reporting Act ("FCRA"), 15 U.S.C. § 1681 et seq. The Service does not provide "consumer reports" as defined by FCRA. KI Ratings are algorithmic assessments of publicly available business signals and are provided for general informational purposes only. KI Ratings may not be used as a factor in determining any individual's eligibility for credit, insurance, employment, housing, or any other purpose regulated by FCRA or similar laws.
11. Children's Privacy
The Service is not directed to children under 18. We do not knowingly collect personal information from anyone under 18. If you believe a minor has provided us with personal information, please contact us and we will delete it.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via email or a prominent notice in the Service at least 14 days before the changes take effect. Your continued use of the Service after that date constitutes acceptance.
13. Contact
Questions about this Privacy Policy? Contact us at:
Kepler Insights
Noah Jackson, Founder-CEO
Email: noah@keplerinsights.us
Phone: 954-802-2898
Website: keplerinsights.us