Privacy policy
Last updated: 30 September 2026
Who runs Kotatsu
Kotatsu runs this service. Write to hello@kotatsu.ai with privacy questions.
What Kotatsu is
Kotatsu is a private store and memory for one owner's evidence. AI agents the owner approves use it for the owner.
What Kotatsu keeps
Kotatsu keeps the Google account email and account identifier used to sign in, tokens and keys for direct connections the owner adds, pages, tasks, memory, agent records, and activity and audit events. Composio handles sign-in tokens for apps connected through it.
When an agent reads an item through a connection, Kotatsu saves a copy as evidence before returning the item.
Some connected sources sync in the background. Other sources answer only when an agent asks.
Cloudflare observability is enabled for this deployment and can keep Worker logs.
Google user data
Google sign-in asks only for the account identifier and email address. Connecting a Google account as a source asks for read permissions. It also asks for the write permissions of services the deployment has turned on.
Kotatsu asks for these Google permissions:
- Read the Google account identifier to recognize the account at sign-in.
- Read that account's email address for sign-in and connection identity.
- Read Gmail messages the owner asks an agent to use.
- Read calendar events the owner asks an agent to use.
- Read Drive files the owner asks an agent to use.
- Read contacts the owner asks an agent to use.
- Read Google Tasks the owner asks an agent to use.
- Create, change, or delete calendar events when the owner authorizes a write.
- Change Gmail messages and labels when the owner authorizes a write.
- Create or change Gmail drafts when the owner authorizes a write.
- Send Gmail messages when the owner authorizes a write.
- Create or change Gmail labels when the owner authorizes a write.
- Create, change, or delete Drive files when the owner authorizes a write.
- Create or change Google Docs when the owner authorizes a write.
- Create or change Google Sheets when the owner authorizes a write.
- Create or change contacts when the owner authorizes a write.
- Create, change, or delete Google Tasks when the owner authorizes a write.
Kotatsu uses Google data to answer the owner and the owner's approved agents. It saves items agents read as evidence. It encrypts connection tokens with AES-256-GCM before storing them.
When an approved agent asks for an item, Kotatsu sends that item to the agent. The agent's client and provider may handle what the agent receives under their own terms. Kotatsu runs on Cloudflare.
Kotatsu's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
Kotatsu does not use Google user data to develop, improve or train generalized AI or machine-learning models.
Kotatsu does not sell Google user data, use it for advertising, or let people read it, except with your permission for a specific item, for security, or when the law requires it.
Other people's information
The owner's sources may hold other people's messages and details. Kotatsu handles them for the owner in the same way.
Sharing
Kotatsu does not sell data or show advertising. Cloudflare hosts and runs Kotatsu. If the owner connects an app through Composio, Composio handles that app's sign-in and calls.
Cookies
Kotatsu sets a session cookie. It also sets short-lived state and verifier cookies during sign-in and connection flows. It does not set tracking or advertising cookies.
Keeping and deleting
Kotatsu keeps active data until the owner deletes it. In Settings, Delete my account starts removal of the owner's connections, evidence, pages, tasks, agent grants, and other account data from the active store, and signs the owner out.
Disconnecting a connection deletes its stored token. Kotatsu does not revoke a Google token at Google when a Google connection is disconnected. The owner can remove Kotatsu's Google access at Google Account permissions.
Locked backup copies are protected from deletion for 30 days. Kotatsu has no automatic process to delete them after that lock ends.
Write to hello@kotatsu.ai to ask for a copy of your data or to ask for deletion.
Security
Kotatsu encrypts stored connection tokens with AES-256-GCM and uses HTTPS for its public site. The owner approves agents and chooses their access level. Settings has an emergency stop for agent access to connections and keys.
Children
Kotatsu is not meant for anyone under 16.
Changes
When this policy changes, Kotatsu updates the date at the top. For a change that matters, the owner hears about it before it takes effect.