Privacy Policy
Kippy ("we," "us," or "our") operates the Kippy mobile application and web platform at usekippy.com and app.usekippy.com (collectively, the "Service"). This Privacy Policy explains what information we collect, how we use it, and your choices regarding your data.
By using Kippy, you agree to the collection and use of information as described in this policy.
Information We Collect
Information You Provide
When you create an account and use Kippy, you may provide:
- Account information — your name, email address, and password
- Profile information — headline, bio, skills, work history, profile photo, phone number, and location
- Organization data — organization names, member rosters, roles, and visibility group assignments
- Schedule data — events, venues, run-of-day items, hotels, flights, travel details, and associated dates, times, and notes
- Guestlist data — guest names, ticket counts, ticket types, and status
- Documents and receipts: files you upload to organizations, such as tech riders, advance packets, and receipts. If you forward a receipt by email, we may hold its image or PDF for up to seven days while an organization administrator reviews it; approval moves it into the organization's retained documents, and decline or expiry removes the temporary copy
- Invoice information: your invoice name, postal address, email, phone, tax identifier, numbering preference, payment timing, Zelle email address or phone number, a statement that ACH details are available on request, an external payment link, and non-sensitive payment notes; recipient billing contacts; your private saved pay, per-diem, and recipient defaults; and invoice dates, project details, line items, expenses, totals, status, delivery history, and generated files
- Networking data — professional connections and city recommendations you choose to share
- Subscription billing information: card or store-payment details are collected and processed by our payment processor or the app store (see Third-Party Services below); we do not store your credit card number. This is separate from the invoice information that Kippy stores for invoices you create
Kippy does not collect or store raw ACH routing numbers or bank account numbers. An invoice can say that ACH details are available on request or link to an external secure payment page, but the actual bank coordinates must be exchanged outside Kippy.
Information Collected Automatically
When you use the Service, we may automatically collect:
- Device information — device type, operating system, and app version
- Usage data — features used, screens visited, and general interaction patterns
- Push notification tokens — device identifiers used to deliver notifications you've opted into
- An analytics identifier — the mobile apps assign a random identifier to your device so usage can be grouped into a session. It is not linked to you until you sign in, it is stored on your device, and it is replaced with a new one when you sign out. This website and the web app store nothing: they set no analytics cookies and write no analytics identifier to your browser at all. Instead, our analytics provider groups a browsing session using a temporary value it derives on its own servers from your IP address and browser type, which is rotated daily and never stored on your device. On this website there is nothing to sign in to, so nothing is ever linked to an account
- Session recordings (mobile apps only) — the iOS and Android apps record how you move through the app: the layout of each screen, which screen you go to next, and where you tap. All text, everything you type, and all images are masked before the recording leaves your device, so a recording shows grey blocks where names, venues, guest lists, travel details and amounts would be. The apps do not record app logs or the addresses of network requests. Recordings are sent to our product analytics provider and linked to your account ID once you sign in, the same way as other usage data. This website and the web app do not record sessions
We do not collect precise location data unless you explicitly grant permission for a specific feature. The only feature that uses your device's location is Arrival Info, in the iOS and Android apps.
Arrival Info (mobile apps only). Arrival Info notifies you when you arrive at a venue on one of your upcoming shows, with the door codes and WiFi for that stop. It is off unless you turn it on in Settings > Arrival Info, and the app explains what it does before your phone asks for permission. It needs location permission set to "Always" (on Android, "Allow all the time"), because it uses your location in the background, even when the app is closed or not in use. It works by asking your phone's operating system to watch the venue locations of your upcoming shows and to tell the app when you enter one; the app then shows a notification on your phone. A separate reminder shortly before each stop uses no location at all.
What Arrival Info stores: your location never leaves your device. Kippy does not send your position, when you arrived, or any record of where you have been to our servers or to anyone else. On your device, the app keeps the venue details it needs to show the notification without a connection, and the time it last notified you about each venue so it does not notify you twice in one visit; these are deleted when you sign out. The only Arrival Info setting saved to your account is whether it is turned on. The location monitoring itself is performed by your phone's operating system, under the location settings you control on your device.
Our product analytics provider derives an approximate location from your IP address when the app sends an event: country, region, city, postal code, time zone, and approximate coordinates (latitude and longitude) with an accuracy radius, typically covering several kilometres. This is an estimate based on your network, not your device's GPS, and it is used only to understand where the app is being used. It is separate from the precise, permission-based location described above.
We do not use cookies for analytics. Neither this website nor the web app sets an analytics cookie or stores analytics data in your browser, which is why you are not asked to accept one.
How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Service
- Create and manage your account
- Process subscription payments through our payment provider
- Create, deliver, download, and retain invoices and their supporting receipts
- Send transactional communications (account verification, password resets, invitation notifications)
- Send push notifications you've opted into (schedule changes, guestlist updates)
- Provide customer support
- Protect against fraud and abuse
- Comply with legal obligations
We do not sell your personal information. We do not use your data to serve advertisements. We do not use your data to train machine learning models.
How We Share Your Information
We share your information only in the following circumstances:
Within the Service
- Organization members can see data you contribute to shared organizations (schedules, guestlists, documents), scoped by your organization's visibility group settings
- A member can make a calendar subscription link for an organization's schedule. Anyone holding that link can read the published schedule items that member can see, through a calendar app, until the member revokes the link or loses access to the organization
- You can send an invoice and its generated PDF to the outside recipients you select. Current organization administrators can see sent invoices associated with their organization, including after the issuer leaves the organization or closes their Kippy account. Drafts and reusable person-and-organization defaults are private to the issuer
- Professional networking features (connections, recommendations) are visible to your mutual connections as described in the feature
- Your profile information is visible to organization members and, if you apply to jobs, to the posting organization
With Third-Party Service Providers
We rely on third-party service providers to operate Kippy. These fall into the following categories:
| Category | Purpose | Data Shared |
|---|---|---|
| Cloud infrastructure | Database, authentication, and file storage | Account data, app data, invoice records and generated PDFs, uploaded documents and receipts |
| Payment processor | Subscription billing and payment processing | Email, name, payment method (handled directly by the processor) |
| Push notification service | Delivering opted-in notifications | Push notification tokens and notification content |
| Transactional email service | Account emails and invoice delivery | Email address and email content; for an invoice delivery, the selected recipient addresses and generated invoice PDF |
| Location search service | Venue and place search | Search queries (no personal data) |
| Web hosting and content delivery | Serving the marketing site and static assets | Standard web request data (IP address, browser info) |
| Product analytics | Understanding how the iOS, Android and web apps, and this website, are used, so we can improve them | A random device analytics identifier when signed out on the mobile apps — and nothing stored at all in the web app — plus your account ID once signed in; screen names with record IDs removed, app version, device type, and an approximate location derived from your IP address — country, region, city, postal code, time zone, and approximate coordinates. On the mobile apps, session recordings of screen layout, navigation and taps, with all text, inputs and images masked on the device. No email, no name, and none of the content you create. On this website it stores nothing at all and there is no account to link anything to: which pages are opened, which buttons are clicked, and which questions are expanded — identified by position, never by the wording of the question |
These providers process data on our behalf under their own privacy policies and are not permitted to use your data for their own purposes.
For Legal Reasons
We may disclose your information if required by law, regulation, legal process, or governmental request, or to protect the rights, property, or safety of Kippy, our users, or the public.
Data Storage and Security
Your data is stored on managed cloud infrastructure. We use industry-standard security measures including encrypted connections (TLS), fine-grained access controls, and secure authentication.
Uploaded documents are stored in private, access-controlled storage. File access is scoped to organization membership.
Sent invoice PDFs are stored in private, access-controlled storage. Draft previews and invoice-plus-receipt bundles are generated only for the requested download and are not kept as separate files by Kippy.
While we take reasonable measures to protect your data, no method of electronic storage or transmission is 100% secure. We cannot guarantee absolute security.
Data Retention and Deletion
We retain your data for as long as your account is active or as needed to provide the Service, keep an organization's shared records, meet accounting needs, or comply with legal obligations.
Account deletion: You may delete your account at any time through the app's settings. When you delete your account:
- Your account is deactivated first so it can be recovered for 30 days. After that period, Kippy scrubs your profile and private personal invoice settings, deletes private person-and-organization invoice defaults and unfinished invoice drafts, blocks login, and removes the authentication identity
- Your contributions to organizations (schedule items, guestlist entries) are retained for the organization's continuity but are disassociated from your identity
- Documents uploaded to a shared organization are retained for that organization's continuity and remain available to its authorized members until an authorized organization administrator deletes them. Closing the uploader's account does not delete those shared documents
- Sent invoices, their delivery history, and their canonical PDFs remain available to current administrators of the associated organization as accounting records. The invoice preserves the issuer and recipient details, saved terms, payment preference including any Zelle contact, and line-item information that appeared when it was sent. These records remain until an authorized organization or support action removes them or a legal retention schedule requires a different result
- Product analytics records held by our analytics provider are keyed to your account ID rather than your name or email. After the 30-day recovery period, Kippy queues that identified analytics profile for deletion and retries if the provider does not initially accept it
If you request a complete data export at the address below, it includes your account and profile, private invoice settings and person-and-organization defaults, invoices you issued and their delivery history, receipt metadata associated with those invoices, and the stored invoice and receipt files you are authorized to receive.
Your Choices
- Profile information: You control what profile information you provide. Required fields are limited to name and email.
- Invoice information: You can correct or clear your reusable invoice details, including a Zelle email address or phone number, in your Profile. You can edit a draft before sending it. A sent invoice is an immutable business record; contact us for an exceptional correction, export, or deletion request.
- Push notifications: You can enable or disable push notifications in your device settings or within the Kippy app settings.
- Arrival Info (location): Arrival Info is off unless you turn it on. You can turn it off at any time in the app under Settings > Arrival Info, which stops the app from watching venue locations, or remove Kippy's location permission in your device's settings.
- Account deletion: You can delete your account at any time through the app.
- Email communications: Transactional emails (verification, password resets) are necessary for account operation. You cannot opt out of these while maintaining an active account.
Children's Privacy
Kippy is not directed at children under 13. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided us with personal information, please contact us and we will delete it.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by posting a notice in the app or sending an email. The "Last Updated" date at the top of this page indicates when the policy was last revised.
Your continued use of Kippy after changes are posted constitutes your acceptance of the updated policy.
Contact Us
If you have questions about this Privacy Policy or your personal data, contact us at:
Email: privacy@usekippy.com