What we do with your data, in plain language
No jargon, no unverifiable claims - just a straightforward account of how Kyria handles the information businesses trust us with.
Data retention
Kyria's default is to retain account and message data so you keep a complete record of your conversations and history. Businesses can lower their own retention period from account settings if they prefer data to be removed sooner. Audit logs are retained independently of this setting, so there is always an accountability record of security-relevant activity.
Audit logging
Security-relevant actions - sign-ins, permission changes, verification decisions, bank-detail approvals - are logged with who did what and when. This log exists to give every business account a clear record of activity, not just a promise that one exists.
Reporting a concern
If you find a security issue, contact security@kyria.work directly. For anything else, including a concern about another business's conduct on the network, use the Block and Report tools available on any connection, or reach our team through the contact page.
Compliance posture
Kyria is designed with privacy and security controls in mind, but we do not claim formal certifications - GDPR compliance attestation, SOC 2, ISO 27001 - unless they have actually been obtained. See our security page for the specific technical controls in place today.