Privacy Policy
Last updated: July 25, 2026
This Privacy Policy explains how KPI Compass (“KPI Compass,” “we,” “us,” or “our”) collects, uses, shares, and protects information in connection with our web application and related services (the “Service”), available at kpicompass.app. By using the Service, you agree to the practices described here.
Information we collect
- Account information. Your name, email address, password (stored hashed), and workspace/team details you provide when you sign up or are invited to a project.
- Content you provide. Datasets you upload (such as CSV files), KPI definitions, taxonomy strings, benchmarks, dashboards you embed, and other content you create in the Service.
- Connected data sources.When you connect a third-party source — for example a Google Ads account, a Postgres/Redshift/BigQuery database, a dbt project, or a BI tool — we access data from that source at your direction to provide the Service. See “Data from Google services” below.
- Billing information. Subscription and payment details are processed by our payment provider, Stripe; we do not store full payment card numbers.
- Usage and device information. Basic log and analytics data (such as pages viewed and actions taken) used to operate and improve the Service.
How we use information
- To provide, maintain, and improve the Service and its features.
- To authenticate you, secure your account, and administer your workspace and team.
- To generate the reporting, reconciliation, governance, and AI features you use within your workspace.
- To process subscriptions and billing.
- To communicate with you about the Service, including service and security notices.
- To comply with legal obligations and enforce our terms.
Data from Google services (Limited Use)
If you connect a Google Ads account, KPI Compass accesses Google Ads data through Google’s APIs, with your authorization (via Google OAuth), on a read-only basis. We use this data solely to retrieve campaign performance reports (such as campaign name, date, cost, impressions, clicks, and conversions) and make them available to you within your own workspace for reporting, reconciliation against your source of truth, and related analytics. We do not create, edit, pause, or manage any ads, budgets, bids, keywords, or account settings.
KPI Compass’s use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. In particular, we do not use Google user data for advertising, we do not sell it, and we do not transfer or disclose it to third parties except: (a) as necessary to provide or improve the connected feature at your direction; (b) to comply with applicable law; or (c) as part of a merger or acquisition. We do not allow humans to read this data except with your affirmative consent, where necessary for security purposes (such as investigating abuse), or to comply with applicable law. You can revoke our access at any time by disconnecting the account in the Service or through your Google account permissions.
AI features
Some features (such as the in-app AI analytics assistant and AI-generated explanations) send relevant content from your workspace to a third-party AI provider to generate a response. This content is used only to produce your result; we do not permit it to be used to train third-party models, and we do not sell it.
How we share information
We do not sell your personal information. We share information only with service providers who process data on our behalf to run the Service, under contractual confidentiality and data-protection obligations. These include providers for hosting and infrastructure, database storage, payment processing, and AI features. We may also disclose information to comply with the law, protect our rights and users, or in connection with a merger or acquisition. Data you place in a workspace is accessible to the members of that workspace according to their roles.
Data retention and deletion
We retain your information for as long as your account is active or as needed to provide the Service. You can delete datasets, disconnect data sources, and request deletion of your account and associated data by contacting us. Disconnecting a Google Ads account stops further access; data previously synced into your workspace can be deleted by you at any time.
Security
We use administrative, technical, and organizational measures designed to protect your information, including encryption in transit, hashed credentials, and encryption of stored third-party access tokens. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
Your choices and rights
Depending on your location, you may have rights to access, correct, export, or delete your personal information, or to object to or restrict certain processing. To exercise these rights, contact us at the address below. You can also disconnect any third-party integration at any time from within the Service.
International users
KPI Compass is operated from the United States, and your information may be processed there and in other countries where our service providers operate. We take steps to ensure appropriate safeguards for such transfers where required.
Children
The Service is intended for business use and is not directed to children under 16, and we do not knowingly collect their information.
Changes to this policy
We may update this Privacy Policy from time to time. We will post the updated version here and revise the “Last updated” date above. Material changes will be communicated as appropriate.
Contact us
Questions about this policy or your data? Email us at hello@kpicompass.app.