Security

KBify is a managed-service AI agent hosted at kbify.pipemint.co. This page describes where your data goes and how it's protected.

Sub-processors

KBify routes your video and text content through the following providers to deliver the final article.

ProviderPurposeLocation
AnthropicClaude LLM (draft, structure, HTML)USA
OpenAILLM fallback when Claude is unavailableUSA
AssemblyAILoom / Google Drive audio transcriptionUSA
SupabaseClient configs, article history, audit logEU (eu-central-1)
VercelWeb hosting, API runtimeGlobal CDN
CloudflareDNS, email routing, TLSGlobal CDN

Data flow

  1. 1. Client sends a video URL (Loom / YouTube / Google Drive) or a pasted transcript.
  2. 2. Resolver fetches the media URL. No credentials are stored. Loom and Google Drive require publicly-shared links.
  3. 3. Transcription. AssemblyAI transcribes the audio (Loom / Google Drive) or KBify reads YouTube captions directly. The video file itself is not retained.
  4. 4. Article generation. The transcript passes through 3 Claude agents (draft, structure, HTML). OpenAI is used only as a fallback when Claude is temporarily unavailable.
  5. 5. Human review. The KBify handler reviews every article before delivery — no auto-publishing.
  6. 6. Storage. The transcript and generated article are stored in KBify's dedicated Supabase project (EU region). Default retention: 90 days. Deletable on request.
  7. 7. Delivery. Article is emailed or uploaded to the client's KB platform by the handler.

Encryption

Data retention

DPA & contact

A Data Processing Agreement is available on request. For security questions, incidents, or data deletion requests, contact tiran@pipemint.co.

Scope statement

KBify is designed for SMB and mid-market use. It is not currently SOC 2, ISO 27001, or HIPAA-certified. If you need any of these for an enterprise engagement, please email us and we can discuss a paid pilot with the upgrade path.