Privacy Policy

Last updated: August 24, 2026

Kapnet is shared operational infrastructure for private groups. This policy explains what data we collect, how it is used, and your rights as a member or visitor.

What We Collect

Account Data. When you create a Kapnet account, we generate a cryptographic keypair (Nostr-based). The public key serves as your identity. You may optionally provide a display name, contact method, or Nostr npub. We do not require your real name, email, or phone number.

Room Data. Messages sent through Kapnet rooms are stored as encrypted at-rest state records. Room configurations, role assignments, and permission grants are stored as structured objects.

Usage Data. We collect minimal connection metadata (connection timestamps, room membership counts) for operational purposes. We do not track browsing behavior, clicks, or page views outside Kapnet services.

Payment Data. If you purchase a membership or room access, payment is processed through a third-party processor (Stripe or Lightning). We never see or store your full payment card details.

How We Use Data

Your data is used exclusively to operate Kapnet services: authenticate you, enforce room access rules, deliver messages, process perk claims, maintain audit trails, and support moderation. We do not sell, rent, or share your data with third parties for advertising or analytics.

Data Storage & Retention

Room state, membership records, and audit logs are retained for the duration of your membership plus a reasonable period afterward to allow for export. You may request deletion of your account and associated data at any time by contacting us.

Messages in archived rooms may be retained as part of the room's exportable state. Individual message deletion is subject to room policy (set by room stewards).

Data Export

You can export your full Kapnet state — including room configurations, role assignments, perk claims, and audit log entries — at any time. Export is self-service through the Kapnet interface. No vendor lock-in.

Privacy by Design

Kapnet is built on privacy-minimized identity. You join rooms with the minimum identity required for your tier. Messages are encrypted in transit. Room access is gated by cryptographic tokens, not database flags. We cannot read the contents of encrypted E2E room messages (when E2E is enabled).

Third-Party Bridges

If you bridge a Kapnet room to Discord, Telegram, Matrix, or Nostr, messages may be subject to those platforms' privacy policies. We recommend reviewing each platform's terms before bridging sensitive conversations.

Changes to This Policy

We will notify members of material changes via Kapnet room announcements or the registered contact method. Continued use after changes constitutes acceptance.

Contact

For privacy questions or deletion requests: privacy@kapnet.network