This Privacy Policy explains how Codicore Private Limited (“Codicore”, “we”, “us”) handles personal data when you use Kickva. It should be read with our Cookie Policy and Terms of Service.
Plain-language summary
- Eligible local tools keep working content on your device.
- Cloud features transmit only the data needed to perform your request.
- Kickva never stores your card number, CVV, UPI PIN, or banking password.
- We do not sell personal data and provide access, correction, and deletion channels.
This summary is for convenience. The complete terms below control if there is any difference.
Scope and data controller
This Policy applies to Kickva websites, accounts, tools, paid plans, support channels, and related services (the “Service”). Codicore Private Limited is the data controller or data fiduciary for personal data described here.
Some tools work entirely in your browser. Others use Kickva servers or third-party AI and infrastructure providers. A tool’s interface may identify its processing mode; if a feature requires a cloud request, do not submit content you are not authorized to share.
Information we collect
- Account information: name, email address, profile image, login provider, verification status, and securely hashed credentials where password login is used.
- Billing information: selected plan and tools, billing interval, receipt email, amount, currency, payment status, provider order/payment references, and access dates. Razorpay receives payment credentials; Kickva does not receive or store card numbers, CVVs, UPI PINs, or online-banking passwords.
- Tool inputs and outputs: files, prompts, text, images, audio, video, or other content only where a server-based feature requires transmission. Eligible on-device tools process content locally and do not send that content to Kickva.
- Support and feedback: messages, attachments, corrections, survey responses, and communications you choose to send. Humanizer corrections enter improvement datasets only through an express feedback or opt-in action.
- Technical and usage data: IP address, browser and device type, operating system, referring page, pages and tools used, timestamps, approximate region, diagnostics, security events, and cookie or similar identifiers.
- Workspace data: organizations, memberships, projects, saved documents, assets, comments, approvals, and audit events when account-based collaboration features are used.
On-device and cloud processing
Background removal, file conversion, PDF editing, transcription, voice, media editing, and similar features may run locally where the browser and selected mode support it. Local processing means the working content remains on your device, although model files may be downloaded from a content delivery network.
Humanization, generative AI, certain enhancement or repair modes, public-profile retrieval, support, and other connected features may send the minimum necessary request to our servers and relevant providers. We do not use private tool content to train general-purpose AI models unless you take a clearly labelled opt-in action.
Why we use information
- Provide tools, accounts, purchases, workspaces, exports, support, and requested features; perform our contract with you.
- Calculate prices, verify captured payments, prevent duplicate or fraudulent transactions, issue access, and maintain financial records.
- Secure the Service, enforce limits, investigate abuse, debug failures, and protect users and Codicore’s legitimate interests.
- Measure performance and improve usability through analytics, where enabled and permitted by consent or applicable law.
- Display and measure advertising where enabled, subject to applicable consent choices.
- Send transactional notices, respond to requests, and comply with tax, accounting, court, regulatory, and other legal obligations.
International data transfers
Some providers process data outside India, including in the United States or other regions where they operate. Where required, we use contractual safeguards, provider data-protection terms, transfer assessments, and reasonable technical controls. Data-protection laws in those locations may differ from those in your country.
Data retention
We retain information only for the purpose collected, legitimate security needs, dispute handling, and legal requirements:
- On-device working content is not retained by Kickva.
- Transient cloud requests and generated results are kept only as needed to complete the request, troubleshoot, secure the Service, or as disclosed at the point of use.
- Account and workspace records remain while the account is active and are deleted or de-identified after a valid deletion request, subject to backups and legal exceptions.
- Payment, invoice, refund, fraud, and tax records may be retained for up to eight years or a longer period required by law.
- Security logs and rate-limit records are generally short-lived, but relevant records may be preserved while investigating an incident.
- Opt-in feedback may remain in an improvement dataset until consent is withdrawn where removal remains technically feasible and legally required.
Security
We use HTTPS, access controls, hashed passwords and access tokens, request validation, rate limiting, payment-signature verification, restricted secrets, and monitoring appropriate to the risk. Payment credentials are entered in the provider’s hosted checkout. No system is completely secure; you are responsible for protecting your device, account, and login credentials and for notifying us promptly of suspected compromise.
Your rights and choices
Subject to applicable law, you may request access, correction, completion, deletion, restriction, objection, consent withdrawal, or a portable copy of personal data. You may also nominate another person or lodge a grievance under applicable Indian data-protection law.
Email support@kickva.com from the account email and describe the request. We may verify identity and may retain information required by law or necessary to establish, exercise, or defend legal claims. We aim to acknowledge requests within 7 business days and complete valid requests within 30 days, unless law permits more time.
You can manage cookies through browser and available consent controls, opt out of marketing communications using the message link, and withdraw optional feedback consent by contacting us.
Children’s privacy
The Service is not directed to children under 13, and we do not knowingly collect their personal data. Users under the age of legal majority must use the Service only with permission and supervision of a parent or lawful guardian. If you believe a child submitted personal data without appropriate consent, contact us for review and deletion.
Changes, grievances, and complaints
We may revise this Policy as the Service or law changes. We will update the date above and provide additional notice where a change materially affects your rights. Earlier versions may be requested from us.
Send privacy grievances to support@kickva.com with the subject “Privacy Grievance”. You may also complain to the competent data-protection authority where you live. We encourage contacting us first so we can investigate.
Legal contact
Codicore Private Limited
CIN U58200UP2025PTC230810 · DPIIT DIPP227042