Klear
Privacy Policy
Last updated : 3 December 2025
This privacy policy applies to the mobile and web applications Klear,
published by Kizeo. We are committed to protecting your privacy and processing your personal data transparently, in accordance with the General Data Protection Regulation (GDPR).
1. Data Controller
Kizeo
Publisher of Klear and Karre applications
Contact : maio@kizeo.com
2. Data Collected
Our applications collect and process the following categories of personal data:
2.1 Identification Data
- First and last name : To identify users within your organization
- Email address : For authentication and important communications
- Phone : To facilitate communication between team members
- Profile photo : Optional, to personalize your account
2.2 Location Data
- GPS position of interventions/projects : To geolocate worksites and optimize travel
- Addresses : Of intervention sites and clients
- Real-time location is never collected in the background
2.3 Content Data
- Messages and communications : Between members of your team
- Documents and photos : Related to projects and interventions
- Audio recordings : Voice messages in conversations (never automatic recording)
- Video calls : Call metadata (duration, participants) - calls are never recorded
2.4 Usage Data
- Timesheets : Working time on projects
- Planning and availability : For team management
- Usage statistics : To improve our services
3. Permissions Requested
Our mobile applications request the following permissions. You can manage them at any time in your device settings.
📷 Camera (CAMERA)
Why : To take photos of worksites and for video calls
When : Only when you take a photo or initiate a video call
Mandatory : No - you can use the app without this permission
🎤 Microphone (RECORD_AUDIO)
Why : For audio/video calls and voice messages
When : Only during calls or voice message recording
Mandatory : No - only needed for call features
📍 Location (ACCESS_FINE_LOCATION)
Why : To geolocate photos and worksite documents, and to store geolocation when entering timesheets
When : Only when you take a photo, create a document, or enter a timesheet
Mandatory : No - you can enter addresses manually
Important : Never background tracking
📁 Storage (READ/WRITE_EXTERNAL_STORAGE)
Why : To save and access photos and documents
When : When uploading or downloading files
Mandatory : No - you can use the app without saving files locally
🔔 Notifications (POST_NOTIFICATIONS)
Why : To inform you of new messages, calls, and updates
When : In real-time or according to your preferences
Mandatory : No - you can disable notifications
4. Legal Basis for Processing
We process your personal data on the following legal bases:
- Contract performance : The application features constitute a contractual service with your organization
- Legitimate interest : Improving our services, security, technical support
- Consent : For certain optional features (push notifications, location)
- Legal obligation : Retention of tax and accounting data
5. Processing Purposes
Your data is used for:
- Account management : Authentication, user profile
- Main features : Planning, project management, communications, timesheets
- Communication : Messages, audio/video calls between authorized users
- Geolocation : Travel optimization and intervention documentation
- Billing : SaaS subscription management (for administrators)
- Service improvement : Anonymous statistics, bug fixes
- Technical support : Assistance in case of problems
6. Data Sharing
Your personal data is only shared with:
- Members of your organization : According to access rights defined by your administrators
- Our subcontractors :
- Amazon Web Services (AWS) : Secure data hosting in Europe (EU-West-3 region, Paris)
- Mapbox : Mapping and address geocoding service
- AWS Chime SDK : Audio/video call infrastructure
We never sell your data to third parties and never share it for advertising purposes.
7. International Transfers
Your data is hosted on Amazon Web Services (AWS) servers located in the European Union (EU-West-3 region, Paris, France). No transfer outside the EU is made, except for:
- AWS Chime SDK : Video call service with globally distributed servers (AWS infrastructure with standard contractual clauses)
- Mapbox : Geocoding API (GDPR-compliant data transfer agreement)
8. Data Retention
| Data type |
Retention period |
| Active user account |
For the duration of the subscription |
| Deleted user account |
30 days (then permanent deletion) |
| Messages and communications |
Duration of subscription + 1 year |
| Documents and photos |
Duration of subscription + 1 year |
| Timesheets |
Duration of subscription + 1 year |
| Billing data |
10 years (legal tax obligation) |
| Technical logs |
6 months maximum |
9. Your Rights (GDPR)
In accordance with GDPR, you have the following rights:
- Right of access : Obtain a copy of your personal data
- Right to rectification : Correct inaccurate or incomplete data
- Right to erasure : Request deletion of your data (except legal obligations)
- Right to restriction : Limit processing of your data in certain cases
- Right to portability : Receive your data in a structured, usable format
- Right to object : Object to certain processing
- Right to withdraw consent : For consent-based processing
To exercise these rights, contact us at: maio@kizeo.com
We will respond within a maximum of 1 month.
10. Data Security
We implement technical and organizational measures to protect your data:
- Encryption : All communications are encrypted (HTTPS/TLS)
- Authentication : Secure token system (Laravel Sanctum)
- Multi-tenant isolation : Your data is strictly isolated from other organizations
- Backups : Automatic encrypted daily backups
- Limited access : Only authorized persons can access data
- Monitoring : 24/7 monitoring of AWS infrastructure
- Updates : Security patches applied regularly
11. Cookies and Similar Technologies
Our applications use the following technologies:
- Authentication cookies : To maintain your logged-in session (strictly necessary)
- Local storage : For offline cache on mobile (performance improvement)
- Notification tokens : For sending push notifications (with your consent)
12. Mobile Applications (iOS & Android)
Our mobile applications are distributed via:
- Apple App Store : For iOS (iPhone, iPad)
- Google Play Store : For Android
The terms of use of these platforms apply in addition to this policy.
13. Changes to this Policy
We may modify this privacy policy to reflect changes in our practices or for legal reasons. In case of substantial modification, we will inform you by:
- In-app notification
- Email to your registered address
The updated version will always be available at this address with the update date.
14. Complaints
If you believe your rights are not being respected, you can file a complaint with the competent supervisory authority:
CNIL (French Data Protection Authority)
3 Place de Fontenoy
TSA 80715
75334 PARIS CEDEX 07
Phone : +33 1 53 73 22 22
Website : www.cnil.fr