Who we are
Klayara is a business intelligence product built and operated by Dictode and Chikito LLC. For anything in this policy, contact us at info@dictode.com.
This website
This website does not use advertising trackers and sets no cookies at all and uses no analytics trackers (see the cookie policy). It is a static site: visiting a page sends only the ordinary technical information a browser sends to any web server (your IP address, browser type and the page requested), which our hosting provider may log for security and to keep the service running.
If you contact us — through the contact form or by email — we collect what you send us (typically your name, work email, company and message) and use it solely to respond and, if you ask, to prepare a proposal. The contact form has no server of its own: it opens your email app with the message filled in, so nothing you type is stored on this website.
The Klayara product
Your business data is yours. When you connect a data source to Klayara, we act on your instructions. With live connections your data stays in your own systems and is read only to answer the questions your users ask; with imports, copies are stored in your Klayara workspace for the purpose of serving your dashboards, and are deleted after you remove the table or the workspace, as described under how long we keep data. Where that data includes personal data about your own customers or staff, you are the controller and we are your processor — the data processing addendum sets out how that works.
Self-hosted deployments. If you run Klayara on your own servers, your data — including query results — never reaches us. The product does not send usage or telemetry data to Dictode and Chikito LLC.
Account data. To operate a workspace we hold the names, email addresses and roles of the people you invite, and the workspace activity log described below. Sign-in uses one-time codes sent by email, so we store no passwords.
AI features. When you use plain-language questions, the question and the minimum context needed to answer it are sent to the AI provider you have selected for your workspace, under that provider's terms — or to a private model on your own infrastructure if you choose one. Permissions apply to AI answers exactly as they do elsewhere.
The workspace activity log
Every workspace keeps an activity log. Each entry records what was done, to which item, when, and by whom, and — when the action came from a browser or app — the IP address it came from. The log records three kinds of event:
- Changes. Edits, sharing, permission and security changes, and sign-in events, with the name of the person who made them.
- Data exports. Downloads and exports of data from a table or a chart as a file, such as CSV or Excel, with the name of the person and, where known, how many rows the file held.
- Views through public links and embeds. Openings of a dashboard or chart through a public link, or through an embed in another website or app. These viewers are not signed in, so they are recorded as anonymous: the entry holds their IP address but no name. For an embed, it also holds the reference your application attached to it, if it set one.
The log does not record what signed-in people look at: opening a dashboard, viewing a chart or browsing a table in the product creates no entry, and saving a dashboard as an image or PDF happens in the browser and is not recorded either. Export and view entries record which item was involved, never the data in it. Separately, each dashboard shows usage figures — how many times it was viewed and by how many people — which the product displays only as totals, not as a list of who opened what.
Why. The log exists so that you can administer your workspace and investigate security incidents and misuse — for example, who exported a table, or whether a public link is being opened far more often, or from more places, than you expect.
Who can see it. Workspace owners and admins, and anyone you give a role that includes the “View activity log” permission.
How long. Entries do not expire on their own: they are kept for the life of the workspace and deleted with it, as described under how long we keep data.
Payments
Card, UPI and net-banking payments are handled by our payment processor on its own secure pages; we receive confirmation of the payment, the amount and the last digits of the card, and never see or store full card numbers. Invoiced customers pay by bank transfer under the terms in their order.
Sharing
We do not sell personal data. We share it only with service providers who help us run the product and website — hosting, email delivery, payment processing and, if you enable it, the AI provider you choose — under contracts that restrict their use of it, and where the law requires. The current list of sub-processors is in the data processing addendum.
How long we keep data
Contact correspondence: for as long as we have an active conversation or business relationship with you, then deleted on request. Account data, the activity log and dashboard usage figures: for the life of the workspace. Imported business data: until you delete the table or the workspace. A deleted table first moves to the workspace trash, where it can be restored for 30 days, and is then permanently deleted. A deleted workspace can likewise be restored for 30 days; after that, everything it holds — imported data, members and their roles, the activity log and usage figures — is permanently deleted. Billing records: for as long as tax law requires.
Your rights
Depending on where you are — including under India's Digital Personal Data Protection Act and the EU and UK GDPR — you may have the right to access, correct, export or delete the personal data we hold about you, to withdraw consent, and to object to or restrict certain processing. Email info@dictode.com and we will respond within 30 days. If you are a user of a customer's workspace, we may refer your request to that customer, who controls the data in it.
Changes
If we change this policy we will update the date above and, for material changes affecting customers, notify workspace administrators.
Contact
Questions about this document: info@dictode.com. Dictode and Chikito LLC is the company behind Klayara.