Your data stays yours.
Karen is built to use only what is needed, and nothing more.
SOC2 (in progress)ISO27001 (in progress)
How we protect it
Every interaction with Karen is encrypted, isolated, and stripped of sensitive identifiers.
In transit
TLS 1.3 encryption on every request, no exceptions.
At rest
Logs and databases encrypted with military-grade standards (AES-256-GCM).
During tasks
Sensitive data runs in isolated, short-lived sandboxes, in-memory only.
What we collect and why
Conversation history
To improve accuracy and support traceability.
Account information
Email, preferences, timezone, to personalize the service.
Operational diagnostics
Stripped of sensitive user content.