Privacy
Last updated 12 August 2026
Keel holds the working information of a business: its written standards, its jobs, the people who do them, and the weekly numbers it watches. That is sensitive, and the short version of this page is that we do not sell it, do not share it, and do not use it to train anything.
What Keel stores
Your doctrine pages and their version history. Your matters and their checklists. Weekly metric values — totals, not transactions. The people in your organisation, their names, email addresses and roles. Records of who acknowledged which version of a standard, and what causes were recorded against a number that moved.
Where you connect an accounting system, Keel reads weekly totals and stores those totals. It does not store your invoices, your customer list, your chart of accounts or your transactions. It never writes back to the system it read from.
Who can see it
Financial figures — revenue, cash on hand, bills due, and the causes recorded against them — are visible to the owner of the organisation and to nobody else. This is not a display setting. It is enforced in the database: a request for those rows from anyone else returns nothing, because no query path exists that would return them.
Your coach starts with access to nothing. Each thing a coach can see is granted individually by the owner, is recorded with the date and the person who granted it, and can be withdrawn at any time. That list is visible to everyone in the organisation, so the arrangement can be checked rather than taken on trust.
Organisations are isolated from one another. No customer’s data is reachable from another customer’s account under any role.
What we do not do
We do not sell your data. We do not share it with advertisers, data brokers or partners. We do not pool it into benchmarks or industry reports. We do not use it to train machine learning models, and no provider we use is permitted to train on it.
The weekly read
Keel uses a language model, from Anthropic, to write the short read on your week that appears on your morning brief. This page previously said no part of the product sent your data to a model. That changed when the feature was built, and saying so plainly is the point of this section.
What it is sent is narrow and fixed: the names of the numbers you track, their values for the week, the condition already assigned to each by a calculation that involves no model at all, and any cause you recorded yourself. It is not sent your doctrine, your matters, your people, your customers, or anything from your books beyond those weekly totals.
It is never asked to find or calculate a figure — only to say what the figures mean. Everything it writes is checked against the numbers it was given before you see it, and a read containing any figure that was not in that data is discarded rather than shown. Your plain brief appears instead, and it is always correct.
Anthropic processes this on our instruction and does not train on it. Owner-only figures stay owner-only: a read produced from your financials is visible to you and to nobody else, on exactly the same terms as the numbers themselves.
Connected accounts
When you connect an accounting or banking system, Keel receives an access token from that provider. Tokens are stored encrypted and are reachable only by the background process that performs the sync — not by any user of the application, including us, and including you. Disconnecting a source deletes its token immediately. Access is read-only in every case.
Sub-processors
Keel runs on Supabase (database and authentication) and Vercel (application hosting), sends transactional email through Resend, and uses Anthropic for the weekly read described above. Those providers process data on our instruction in order to run the service. There are no others, and no analytics or advertising trackers on the application.
Keeping and deleting
Your information is kept while your organisation is active. On request we will export it or delete it. Deletion means deletion — not deactivation, and not a copy retained for our own purposes. Backups roll off on their own schedule and are not searched or used for anything else.
Your rights
You can ask what is held about you, get a copy of it, have it corrected, or have it deleted. Ask your coach or reply to the address that invited you and we will do it.
Changes
If this page changes in a way that affects who can see what, you will be told directly rather than by a silent edit and a new date at the top.
Questions about any of this: reply to the address that invited you, or write to your coach.