Docs/Privacy and security
Privacy and security
What happens to your questions, files and memory; how to export or delete them; and the protections around accounts, connected apps and published sites.
- How Keplar handles your dataWhere a question goes, what is stored under your account, which companies process it, what is never sent to model providers, and what Keplar does not do.
- Free plan privacyWhy Free questions have different privacy handling than paid ones, what free model hosts may do with prompts, and what to keep out of a Free question.
- Delete and export your dataHow to delete a chat, a memory, a study set or your whole account, what is kept after account deletion and why, and how to export your data as JSON.
- Account securityHow sign-in sessions work, how to review and end sessions, what to do if you lose email access, and practical habits that protect your account.
- Connected app securityHow Keplar defends against server-side request forgery, prompt injection through tool output, secret leaks and silent tool changes when you connect MCP servers.
- Published sites and safetyHow Keplar keeps sites built in Create safe to publish: sanitized content, no user scripts, sandboxing, abuse reports, and your responsibilities as the owner.
- Report a vulnerabilityHow to report a security issue to Keplar, what to include, what is out of scope, and what to expect. Includes what to do if you see KeplarBot in your server logs.