Kairos Ai

Kairos Ai

Data Processing / GDPR / KVKK

This page summarizes data processing roles, GDPR/KVKK principles, customer responsibilities and data subject request handling for Kairos Ai.

Business identity

Kairos Ai is operated by Ali Balkan, a taxpayer registered in Türkiye. Business address: Aktoprak Mah. 1083 Sk. Gündüz Apt No: 5 İç Kapı No: 8, Kepez/Antalya, Türkiye. Tax office: Düden Vergi Dairesi. Privacy, customer, billing and legal requests can be sent to info@kairosadvision.com. Kairos Ai is the product and service brand used for the SaaS platform.

Roles

For website visitors, demo leads, direct customer accounts, billing and support, Kairos Ai may act as data controller. For Meta Ads data processed on behalf of a customer workspace, Kairos Ai may act as processor or service provider depending on the customer relationship and applicable law.

Customer responsibilities

Customers must have authority and a lawful basis to connect advertising accounts, invite users, submit business data and allow Kairos Ai to process campaign and performance information. Customers are responsible for credentials, team access, billing accuracy, legal compliance, Meta policies, advertising rules and payment provider requirements.

Processing purposes, principles and bases

Processing may include authentication, workspace management, Meta Ads synchronization, campaign analysis, creative fatigue detection, AI recommendations, reporting, billing, Stripe payment records, security, support, abuse prevention, analytics and legal compliance. Kairos Ai aims to process personal data lawfully, fairly, transparently, for specified purposes, limited to what is necessary, accurately where relevant, for limited retention periods and with appropriate security.

Data subject rights

Individuals may request information, access, correction, deletion, restriction, portability, objection and withdrawal of consent where applicable. KVKK/GDPR requests can be sent to info@kairosadvision.com. Requests may require identity verification and are answered within legally required periods.

Deletion, retention, transfers and subprocessors

When processing purposes and legal grounds end, personal data is deleted, destroyed or anonymised unless retention is required for accounting, legal claims, security, fraud prevention, audit logs, backup integrity or mandatory legal obligations. Data may be processed by providers in countries where hosting, email, analytics, security, payment, Meta API or AI infrastructure operates. Subprocessor categories include hosting, databases, backups, SMTP/email, Stripe, analytics, Meta APIs, AI infrastructure, security and logging.

Security measures

Security measures include encrypted transport, access controls, secret management, least-privilege API permissions, audit logs, backups, environment separation, monitoring and incident response processes.

Data Processing Agreement

Business customers may request data processing terms covering subject matter, duration, data categories, subprocessors, confidentiality, security, deletion and audit support by contacting info@kairosadvision.com.

Data Processing / GDPR / KVKK | Kairos Ai