Privacy Policy
Last updated: August 1, 2026
Kontextual ("we", "us") is operated by Daniel Babalola, an individual based in Ontario, Canada. Kontextual helps you capture and follow up on the people you meet, from a scanned business card to a contact submitted through an event sign-up form. This policy explains what we collect, why, and the choices you have.
Information we collect
- Account information: your name and email address when you create a Kontextual account. We use Convex Auth with a one-time email code (delivered via Resend) to sign you in. We don't store or handle passwords.
- Contacts you capture: names, emails, phone numbers, job titles, companies, notes, and tags you add manually, scan from a business card, or that people submit themselves through your public list-capture or digital-card pages.
- Digital business cards: the profile information you choose to put on a card (name, role, company, tagline, website, LinkedIn, and custom links) is shown publicly to anyone who opens your card link or scans your QR code. We never publish your stored email or phone number on a public card.
- Scanned business card images: when you scan a physical card, the photo is temporarily stored so it can be processed, and the extracted text is used to pre-fill a new contact for you to review. See "How business card scanning works" below for specifics.
- Technical and diagnostic information: our infrastructure providers (see below) may process technical information such as IP address, browser or device information, and request logs as a normal part of operating a web and mobile service, for example to prevent abuse of public capture forms. We don't currently run analytics or crash-reporting tooling on the Kontextual web app; if we add this in the future, we'll update this policy first.
- Payment information: subscriptions are purchased and billed through Apple's App Store. Kontextual never receives or stores your card number. Apple handles payment, and RevenueCat tells us which entitlements are active on your account.
How business card scanning works
When you scan a card, the photo is uploaded to our storage provider and processed by Google Cloud Vision (OCR) to read the text, then by OpenAI to structure that text into a name, title, company, and contact details for you to review. This processing is temporary and automated:
- We take reasonable steps to delete the scanned image once you've reviewed and saved (or discarded) the contact.
- We don't permanently store the raw text extracted from a scan. It's used in the moment to build the contact card and then discarded on our side.
- Because scanning uses third-party AI providers, the image and extracted text are necessarily processed by them to return a result to you. We don't authorize these providers to use your content to train public AI models.
How we use your information
- To operate your account, contacts, lists, and digital cards.
- To extract contact details from scanned business cards, as described above.
- To send transactional email (sign-in codes and notifications you opt into) via our email provider, Resend.
- To process subscriptions and entitlements for paid features.
- To maintain security and prevent abuse of public-facing pages, such as list-capture forms.
Public content: please read this carefully
Digital cards and list-capture forms are intentionally public by design. Information published through your public digital card (kontextual.app/v/<code>) is accessible to anyone with the link or QR code until you delete the card or regenerate its link. Similarly, a list-capture form (kontextual.app/c/<code>) is open to anyone with its link while the list is active. Contacts, notes, and tags stored in your account are private and not published anywhere.
Information about people you add, not just you
Kontextual is built around storing information about people you meet, not just yourself. When you add, enrich, or import someone else's contact information (whether scanned, typed, or collected through a capture form), you are responsible for having an appropriate legal basis or permission to do so, and for how you use that information afterward. If you run a public capture form, you are responsible for any notices or consents you present to the people filling it in.
AI-generated suggestions
Information extracted from a business card scan, or generated by any AI-assisted enrichment feature, may be incomplete or inaccurate. You're responsible for reviewing this information before saving, sharing, or relying on it.
Third parties we use to run the service
We rely on a small number of infrastructure providers, each processing data only as needed to provide their service to us:
- Convex: our database and backend platform.
- Supabase: storage for uploaded card images.
- Google Cloud Vision and OpenAI: business card OCR and structuring.
- Resend: delivery of sign-in codes and transactional email.
- RevenueCat, working with the Apple App Store: subscription billing and entitlements.
- Vercel: hosting for the Kontextual web app.
We don't sell your personal information, and we don't use it for third-party behavioral advertising.
Your choices
- You can edit or delete any contact, list, or card at any time.
- You can unpublish a digital card at any time by deleting it or regenerating its link, which removes public access to the old link.
- Account deletion: Kontextual doesn't yet have an in-app account-deletion option. To request deletion of your account and associated data, email privacy@kontextual.app from your account's email address. We'll confirm and process the request within a reasonable time.
Data retention
We retain your data only as long as necessary to provide the Service, comply with legal obligations, resolve disputes, and enforce our agreements. In practice:
- Scanned card images are deleted shortly after you review and save (or discard) the resulting contact.
- Raw text extracted during scanning isn't stored after the contact is created.
- Account and contact data is retained while your account is active, and deleted or anonymized within a reasonable period after a deletion request.
- Backups are retained for a limited period before expiring automatically.
Age requirement
Kontextual is intended for users aged 16 and older. We don't knowingly collect information from anyone younger, and Kontextual is not directed at children.
Governing law
This policy is governed by the laws of the Province of Ontario, Canada, without regard to conflict-of-law principles. This section currently reflects a US- and Canada-focused launch; if we expand to markets with additional privacy-law requirements (e.g. the EU/UK or California), we'll update this policy accordingly.
Changes to this policy
We may update this policy from time to time. Material changes will be reflected by updating the "last updated" date above.
Contact us
Questions about this policy or your data? Email privacy@kontextual.app.
Mail: Daniel Babalola, PO Box 207, 2525 St. Clair Avenue W (Inside Walmart Supercentre Stockyards), Toronto, ON M6N 4Z5, Canada.