Privacy Policy
Last updated: January 30, 2026
1. Introduction
KAVE ADVISORS SAS and VEKA ADVISORS LLC (collectively "Kyto," "we," "us," or "our") respect your privacy and are committed to protecting your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website kyto.io and use our services.
2. Information We Collect
2.1 Information You Provide
We collect information that you voluntarily provide to us, including:
- Name and contact information (email address, phone number)
- Company name and job title
- Information submitted through contact forms, discovery call bookings, or academy enrollment
- Communication preferences and feedback
- Payment and billing information (processed securely through third-party providers)
2.2 Automatically Collected Information
When you access our website, we automatically collect:
- Device and browser information (IP address, browser type, operating system)
- Usage data (pages visited, time spent, navigation patterns)
- Cookies and similar tracking technologies (see our Cookie Policy)
- Referral source and campaign information
3. How We Use Your Information
We use the collected information for:
- Service Delivery: Providing AI automation services, academy courses, and consultation sessions
- Communication: Responding to inquiries, sending service updates, and providing customer support
- Improvement: Analyzing usage patterns to enhance our website and services
- Marketing: Sending relevant content, course information, and promotional materials (with your consent)
- Legal Compliance: Meeting regulatory requirements and protecting our legal rights
- Analytics: Understanding user behavior and measuring campaign effectiveness
4. Legal Basis for Processing
We process your personal data based on:
- Consent: You have given explicit consent for specific processing activities
- Contract: Processing is necessary to fulfill our service agreements
- Legitimate Interests: We have legitimate business interests that don't override your rights
- Legal Obligation: We must comply with applicable laws and regulations
5. Data Sharing and Disclosure
We may share your information with:
- Service Providers: Third-party vendors who assist with hosting, analytics, email delivery, and payment processing
- Business Partners: When necessary to deliver joint services or offerings
- Legal Authorities: When required by law or to protect our rights
- Business Transfers: In connection with mergers, acquisitions, or asset sales
We do not sell your personal information to third parties.
6. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place, including Standard Contractual Clauses approved by the European Commission, to protect your data during international transfers.
7. Data Retention
We retain your personal data only as long as necessary for the purposes outlined in this policy, or as required by law. Retention periods vary based on:
- Active customer relationships: Duration of relationship plus 3 years
- Marketing communications: Until you unsubscribe or request deletion
- Legal and tax records: As required by applicable regulations (typically 7-10 years)
- Analytics data: Aggregated and anonymized after 26 months
8. Your Rights
Under applicable data protection laws, you have the right to:
- Access: Request a copy of your personal data
- Rectification: Correct inaccurate or incomplete information
- Erasure: Request deletion of your data ("right to be forgotten")
- Restriction: Limit how we process your data
- Portability: Receive your data in a structured, machine-readable format
- Objection: Object to processing based on legitimate interests
- Withdraw Consent: Revoke consent at any time (without affecting prior processing)
To exercise these rights, contact us at: privacy@kyto.io
9. Security Measures
We implement industry-standard security measures to protect your data, including:
- SSL/TLS encryption for data transmission
- Secure cloud infrastructure with access controls
- Regular security audits and vulnerability assessments
- Employee training on data protection
- Incident response procedures
However, no system is completely secure. We cannot guarantee absolute security of your information.
10. Children's Privacy
Our services are not directed to individuals under 16 years of age. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.
11. Third-Party Links
Our website may contain links to third-party websites. We are not responsible for the privacy practices of these sites. We encourage you to review their privacy policies before providing any information.
12. Changes to This Policy
We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements. We will notify you of material changes by posting the updated policy on our website and updating the "Last updated" date. Your continued use of our services after changes constitutes acceptance of the updated policy.
13. Contact Information
For questions, concerns, or requests regarding this Privacy Policy or our data practices, contact us at:
If you are in the European Economic Area, you also have the right to lodge a complaint with your local data protection authority.