Search help articles, tutorials, features, and guides...
Privacy Policy: Kiwiform
At Kiwiform, we believe that privacy isn't just a legal checkbox—it’s a feature. We’ve built this platform to be a "privacy-first" alternative to traditional form builders. This policy explains what data we collect, why we collect it, and how we protect it.
The "Plain English" Summary
No Tracking: We do not use third-party tracking pixels (like Facebook or LinkedIn).
Payments via Polar: We use Polar.sh to handle billing. They act as our Merchant of Record, ensuring your tax and payment data are handled with elite security.
Your Choice of Home: We offer data hosting in the EU for those who need to meet strict residency requirements.
Partial Submissions: We capture data as users type to prevent loss, but we encourage you to tell your respondents about this.
Data We Collect
We collect the minimum amount of data necessary to provide a high-quality service.Account Information
When you sign up, we collect your Name and Email Address. This allows us to manage your account and send essential system updates.Billing & Payment Data (via Polar.sh)
Payment processing is handled by Polar.sh.As our Merchant of Record, Polar collects your billing address and payment details to process transactions and handle global tax (VAT/Sales Tax) compliance.
Kiwiform does not store your full credit card details or sensitive financial data on our own servers.
Form Response Data (Partial Submissions)
To help you understand where users drop off and to prevent data loss, Kiwiform captures data entered into form fields even if the user does not click the final "Submit" button.
Important: As the "Data Controller," you should ensure your own privacy notice informs respondents that their progress is saved automatically.
How We Use AI (OpenAI API)
We use the OpenAI API specifically for our Form Translation feature.Purpose: To translate your form questions into different languages instantly.
Privacy: We only send the text of your questions/labels to OpenAI. We do not send respondent data or personal information to the API.
Training: Per our agreement with OpenAI, data sent via their API is not used to train their global models.
Data Hosting & Sovereignty
We understand that where your data lives matters.EU Hosting: For our users in Europe or those with strict compliance needs, we provide the option to host data on servers located within the European Union.
Global Infrastructure: Our default infrastructure is managed by industry-leading providers with high-tier security certifications (SOC2, ISO 27001).
Third-Party Sub-processors
We only share data with service providers necessary for the app to function.
Provider
Purpose
Data Shared
Data Shared
Payments & Tax Compliance
Billing info, Email, Transaction data
OpenAI
Form Translation
Form text (Questions/Labels)
AWS/DigitalOcean
Cloud Infrastructure
Encrypted database storage
Your Rights (GDPR & CCPA)
Regardless of where you live, we honor your right to control your data:
Access & Portability: Export your form data at any time.
Right to be Forgotten: Delete your account and all associated data permanently.
No Selling: We do not, and will never, sell your data to third parties.
Security
We use AES-256 encryption at rest and SSL/TLS for all data in transit. We treat your data with the same level of security we’d want for our own.Contact Us
If you have questions about this policy or want to exercise your data rights, please reach out:
Entity: Kiwiform
Email: [email protected]