Every conversation starts with trust

Organizations entrust Kindred with their most important relationships — students, alumni, and communities. Protecting participant data isn't a feature. It's the foundation of everything we build.

🔇

No Audio Storage

Kindred never stores call audio. Voice streams from the participant's browser to our voice provider (ElevenLabs) over encrypted WebRTC, processed in real time with audio recording disabled — no recordings are retained.

Minimal Data Retention

Call audio is never recorded. The text transcript and AI-generated insights from each conversation are retained per organization, encrypted in transit and at rest, and deletable on request.

🔐

Passwordless Authentication

Sign in via SSO with major identity providers or secure magic-link email — no passwords to leak or phish, no self-registration. Accounts are provisioned by administrators only.

Consent with Audit Trail

Every call requires explicit opt-in. Consent events are recorded with full forensic detail: text snapshot, hash, timestamp, and user agent.

AI Governance

Your data, your conversations, your control. Here's exactly how we handle AI processing.

No Training on Your Data

✓ Implemented
  • Voice conversations are processed by ElevenLabs; insights and matching by OpenAI and Anthropic
  • Per each provider's API terms, your inputs and outputs are not used to train their models
  • Your conversations remain exclusively yours

Data Minimization

✓ Implemented
  • Only the data necessary for each task is sent to the AI
  • Transcripts are scoped to individual conversations — not your entire database
  • Transcripts and structured insights are retained per organization; audio is never stored

Prompt Security

✓ Implemented
  • Input sanitization to mitigate prompt injection
  • Campaign instructions set by authorized admins only
  • AI behavior bounded by system-level instructions

Built for participants, not just admins

Organizations don't just adopt Kindred for themselves — they adopt it on behalf of their networks. We take that responsibility seriously.

AI Disclosure

✓ Implemented

Participants are clearly informed that their conversation is AI-powered before every call begins. No hidden automation.

Explicit Consent

✓ Implemented
  • Active opt-in required (no pre-checked boxes)
  • Clear description of data collected and how it's used
  • Full audit trail: text snapshot, hash, IP, user agent, timestamp

Opt-Out & Deletion

✓ Implemented
  • Decline consent and not proceed
  • End any call at any time
  • Request complete data deletion
  • No account required — single-use secure links only

How Kindred Works

A quick overview so the security controls make sense.

1

Campaign setup

An org admin creates a campaign, uploads a member list (typically name and email; organizations may include additional context fields), and generates unique call links.

2

Consent

Before any call begins, the participant sees a consent screen and must explicitly opt in. Consent is recorded with a full audit trail.

3

Voice call

The participant has a conversation with an AI voice agent directly in their browser. Audio streams directly between the browser and ElevenLabs via WebRTC — Kindred's servers never see or store audio.

4

Transcript & insights

A text transcript is generated from the conversation. AI-generated insights are extracted and retained for the organization.

5

Org admin review

Admins view aggregated insights and analytics. They never hear the original audio.

6

Optional introductions

With organizer approval, Kindred can suggest connections between participants based on their conversations and introduce them by email. Organizations can require both participants to confirm before an introduction is made.

Compliance Framework

FERPA Alignment

In Progress
  • Participant data is organization-scoped with strict access controls
  • Only authorized org admins can view insights from their own organization
  • PII collection is minimized; organizations control which member fields they upload
  • Audio is never stored; transcripts and insights are retained and deletable on request
  • Explicit consent required before every interaction

Coming soon: Formal FERPA compliance documentation and institutional agreements

GDPR Ready

In Progress
  • Lawful basis: explicit consent with audit trail
  • Data minimization: we collect the minimum needed; organizations control additional fields
  • Right to access: org admins can export data
  • Retention: audio is never stored; transcripts and insights are retained and deletable on request

Coming soon: GDPR-compliant data residency options and consent withdrawal workflow

CCPA Ready

In Progress
  • Transparent data collection practices
  • Member opt-out supported
  • Data deletion on request
  • No sale of personal information

SOC 2 Type II

Coming Soon

We are actively preparing for SOC 2 Type II certification. Our current practices align with SOC 2 trust service criteria, and we are formalizing policies and controls for audit readiness.

Security

Encryption

✓ Implemented
  • TLS (HTTPS/WSS) for all data in transit
  • Voice audio via encrypted WebRTC directly to ElevenLabs
  • Infrastructure-level encryption at rest via Render

Coming soon: Application-level AES-256 encryption for sensitive fields

Access Control

✓ Implemented
  • SSO with major identity providers
  • Complete tenant isolation between organizations
  • Role-based access: organization admins, members, and per-campaign permissions
  • Cryptographically random, single-use participant tokens

Coming soon: MFA enforcement for all org admins

Application Security

✓ Implemented
  • JWT verification and per-request authorization
  • Schema enforcement on all API inputs
  • Automated access control test suite
  • Code review process for all changes

Coming soon: Rate limiting on all public-facing endpoints

Sub-processors

We're transparent about every third-party service that touches your data.

VendorPurposeData SharedLocationTheir Compliance
OpenAIInsight generation & AI matchingTranscript text, member profile dataUSSOC 2 Type II
ClerkAuthentication & SSOEmail, name, auth tokensUSSOC 2 Type II, GDPR
VercelFrontend hostingStatic assets only (no PII)USSOC 2 Type II, ISO 27001
RenderBackend & databaseAll application data (encrypted at rest)USSOC 2 Type II
ElevenLabsVoice AIVoice audio (recordings disabled), conversation transcript textUSSOC 2 Type II
AnthropicAI matching & insightsTranscript text, member profile dataUSSOC 2 Type II
ResendTransactional emailEmail addresses, notification contentUSSOC 2 Type II
SalesforceCRM sync (optional, when connected by an org)Member contact details & call activityUSSOC 2 Type II, ISO 27001

Frequently Asked Questions

Does Kindred record or store audio?

No. Audio streams between the participant's browser and our voice provider (ElevenLabs) via encrypted WebRTC and is processed in real time with audio recording disabled. Kindred never stores call audio.

What conversation data is retained?

Call audio is never recorded. We retain the text transcript and the AI-generated insights from each conversation, encrypted in transit and at rest. Participants and organizations can request deletion at any time.

Can one organization see another's data?

No. Kindred uses strict organization-level data isolation. Every API request validates that the requesting user is an authorized member of the relevant organization.

Do your AI providers train on our data?

No. We use OpenAI, Anthropic, and ElevenLabs through their commercial APIs. Per each provider's terms, data submitted through the API is not used to train their models.

What data do you collect about participants?

At minimum: name and email (provided by the organization), consent records, the conversation transcript, and AI-generated insights. Organizations may choose to upload additional context fields. We actively minimize collection of sensitive categories of information.

Does Kindred share my information with other participants?

Only when an organization uses Kindred to suggest introductions. In that case an organizer may introduce you to another participant using a short summary based on your conversation, and organizations can require both people to confirm before connecting. Otherwise, your information is visible only to authorized admins at your organization.

Can we get a DPA or BAA?

Yes. We are happy to work with institutions on Data Processing Agreements, BAAs, and other institutional agreements. Contact us at trust@projectkindred.co.

Questions about security?

We can provide additional security documentation, complete security questionnaires, or schedule a call with our team.

trust@projectkindred.co