Skip to content

last updated 7 August 2026

Privacy Policy

The short version

  • We don't read your Slack messages.
  • We don't sell your data to anyone.
  • You can delete everything whenever you want.

That's genuinely the whole thing. The rest of this page explains the details.

What we collect

When your workspace installs kudoSnap, we store the minimum information needed to deliver polls and recognition messages:

  • Slack user IDs, display names, and real names β€” so we know who to send polls to and who to show as candidates
  • Timezones β€” so we send polls at reasonable hours, not at 3am
  • Workspace ID and bot token β€” so the app can send messages in your workspace
  • Poll votes β€” which candidate you picked for each question
  • Channel membership β€” which public channels people share, used to build the connection graph that selects relevant poll candidates

What we don't collect

  • Message content. We don't read your Slack messages. Ever. We don't have the API scope for it even if we wanted to.
  • Email addresses from Slack. We use Slack user IDs, not emails. If you contact us through the support form, we'll collect the email you provide so we can reply β€” but it's not connected to your Slack data.
  • Browsing history outside our website. We don't track what you do on other sites or connect website visits to your Slack identity.
  • Private channel membership. We only see public channels.

How we use your data

Your data is used for exactly four things:

  • Delivering weekly recognition polls to your DMs
  • Recording votes and sending recognition notifications
  • Building a connection graph from shared channel membership so poll candidates are people you actually work with
  • Checking Slack presence so we only send polls when you're online

That's it. No advertising. No profiling. No β€œimproving our marketing.”

Who can see what

When someone recognizes you, you see β€œA coworker said...” β€” not who said it. We store vote records internally to operate the service, but we never expose who voted for whom. You can choose to reveal who recognized you through the reveal mechanic, but only for your own recognitions.

  • Workspace admins cannot see individual votes or who recognized whom.
  • Other users only see their own recognition messages.
  • We β€” one person, who builds and runs kudoSnap β€” can see aggregated data for debugging. Individual votes are not read unless you ask for help with a specific issue.

Data storage & security

Your data is stored in Supabase, which runs on AWS infrastructure with SOC2 compliance. All data is encrypted at rest and in transit. Bot tokens are stored securely and never exposed to end users.

Data retention & your rights

We keep your data for as long as your workspace has kudoSnap installed. We don't delete it on a schedule β€” it stays until you or your workspace admin asks us to remove it.

Removing the app from Slack revokes its token and stops every message immediately β€” that is Slack, and it works whether or not anyone is at this end. Erasing what is already stored is a separate, manual step: email hello@kudosnap.com and the workspace and everything belonging to it is deleted within seven days, with written confirmation. Automatic deletion on removal is being built and is not done.

Individual requests: to see or delete your own data while the app stays installed, email hello@kudosnap.com. Access and deletion are both handled within seven days.

There is no export, in any format, for you or for a workspace admin β€” and that is deliberate rather than a gap. It is the same reason nobody can be looked up: the moment recognition can be extracted it becomes something people get measured with.

Cookies

We use cookies for two things: keeping you logged in and understanding how visitors use our website. Our analytics tool (PostHog) uses cookies to track page views and basic usage patterns. No ad pixels. No cross-site tracking. We don't connect website analytics to your Slack identity.

Third parties

We use a small number of trusted services to run kudoSnap:

  • Slack API β€” to send polls and recognition messages
  • Supabase β€” database and authentication
  • Vercel β€” hosting and serverless functions
  • PostHog β€” website analytics (page views and basic usage patterns, not connected to your Slack identity)

We do not share your data with data brokers, advertisers, or any other third parties. None of the services above receive data beyond what's needed to operate kudoSnap.

Changes to this policy

If we update this policy, we'll change the β€œlast updated” date at the top. For material changes that affect how we handle your data, we'll notify workspace admins directly.

Contact

Questions or concerns about privacy? Email hello@kudosnap.com.