Legal
Privacy Policy
Last updated 31 July 2026
Kweve gives you an AI revenue team that works inside your business, which means we take what we hold, and why, seriously. This policy explains what personal data we collect, what we do with it, who helps us run the service, and the rights you have over your own information. It is written to be read, not skimmed past.
Who we are
Kweve is operated by [company legal name], registered in England and Wales (company number [number]) with its registered office at [registered address]. For everything in this policy, you can reach us at [email protected].
We are registered with the Information Commissioner’s Office (ICO), the UK’s data protection regulator, under registration number [ICO registration number].
The two roles we play
Kweve handles two very different kinds of data, and the law treats them differently.
Your account: we are the controller. When you apply for access, create an account, or pay for a plan, we decide how that data is handled and this policy applies to it in full.
Your business’s workspace: we are the processor, you are the controller. When you connect your own accounts (email, calendar, documents, payments) and your Kweve team works with them, the content that flows through, including personal data about your customers, prospects and contacts, belongs to your business. We process it only to provide the service to you and only on your instructions. We never sell it, and neither we nor our AI provider use it to train AI models.
If your details appear in someone else’s Kweve workspace, for example because you emailed a business that uses Kweve, that business is responsible for your data and its own privacy notice applies. Contact them directly; we will help them meet any request you make.
What we collect
- Waitlist applications: your name, email address, company name and size, what your business does, and what you are wrestling with right now.
- Account details: your name and email address, held through our sign-in provider.
- Your conversations and work product: the messages you exchange with your Kweve team, and the documents and drafts the team produces for you.
- Connected-account content: if you link your email, calendar, documents or other tools, the content your team needs to do the work you ask for. You choose what to connect and can disconnect any account at any time.
- Billing and usage: your plan, credit usage, and payment records. Card details go directly to Stripe; we never see or store them.
- Service logs: a record of actions in your workspace (what was created, sent or changed, and by whom), kept for security and so your team can account for its own work.
How we use it, and the legal grounds
UK and EU law requires a lawful basis for each use of personal data. Here is the mapping, in plain terms:
- To run the service for you (your account, conversations, connected tools, credits and billing): necessary to perform our contract with you.
- To meet legal duties (tax and accounting records of payments): a legal obligation.
- To keep the service secure and improve it (security logs, fault diagnosis, aggregate usage patterns): our legitimate interest in running a safe, reliable product, balanced against your rights.
- To review your application and contact you about access (waitlist details): steps you asked us to take before entering a contract.
- To send you product news, if we ever do beyond service messages: only with your consent, which you can withdraw any time.
How the AI works with your data
Your Kweve team runs on AI models provided by Anthropic, acting as our processor. Three commitments matter here:
- Neither Kweve nor Anthropic trains AI models on your content. This is a binding contractual term, not a preference.
- AI-generated work can contain mistakes. The product is built so that you review and approve anything before it leaves your workspace: no email is sent, no post is published, and no meeting is booked without your explicit yes.
- We make no decisions about you by purely automated means that have legal or similarly significant effects.
Who helps us run Kweve
We share personal data only with the providers below, each acting under contract on our instructions, and with the platforms you yourself choose to connect (which then handle your data under their own terms with you). We never sell personal data.
| Provider | What they do for us | Where |
|---|---|---|
| Clerk | Sign-in and account security | United States |
| Railway | Hosting and database infrastructure | United States |
| Cloudflare | Network security in front of the site | United States, with a global network |
| Anthropic | The AI models your Kweve team runs on | United States |
| Composio | Securely connects the accounts you choose to link | United States |
| Stripe | Payments, invoices and billing | United States and Ireland |
We may also disclose data where the law requires it, or as part of a sale or restructuring of the business, in which case this policy continues to protect it.
Where data goes
Some of the providers above are in the United States, so personal data leaves the UK. Every transfer is protected by a safeguard UK and EU law recognises: the UK Extension to the EU-US Data Privacy Framework where the provider is certified under it (Stripe is), and otherwise standard contractual clauses with the UK addendum, which is how our contract with Anthropic and our other US providers protects your data. Email [email protected] for a copy of the safeguard that applies to a specific provider.
How long we keep things
- Your account and workspace content: for as long as your account is open. When it closes, we delete workspace content within 30 days.
- Waitlist applications: up to 12 months after a decision, so we can honour our word if a spot opens.
- Billing and payment records: 6 years, as UK tax law requires.
- Security and audit logs: up to 12 months.
You can also delete individual conversations, documents and contacts inside the app at any time, and disconnecting a linked account ends our access to it.
Your rights
Over the data we control about you, you have the right to:
- access a copy of it;
- correct it if it is wrong;
- have it deleted;
- restrict or object to how we use it, including any use based on our legitimate interests;
- receive it in a portable format;
- withdraw any consent you have given, without affecting what happened before.
Email [email protected] and we will respond within one month. You also have the right to complain to the ICO at ico.org.uk or on 0303 123 1113, though we would welcome the chance to sort things out with you first.
Security
Data is encrypted in transit, access to connected accounts uses scoped, revocable authorisation rather than stored passwords, every workspace is isolated from every other, and any outward action from your workspace requires your approval. No system is perfectly secure, but the product is designed so the blast radius of any failure is as small as we can make it.
Cookies
We use only strictly necessary cookies (sign-in and security), which is why there is no cookie banner. The full list, with lifetimes, lives on our Cookies page.
Children
Kweve is a business tool for people running companies. It is not intended for anyone under 18, and we do not knowingly collect children’s data.
Changes to this policy
When we change this policy in any meaningful way, we will update the date at the top and tell you in the app or by email before the change takes effect.

