KLDS Platform

Privacy Policy

Last Updated: October 26, 2025

KLDS Platform, operated by Senintel, is committed to protecting your privacy and ensuring the security of your personal information. This policy explains how we collect, use, and safeguard your data.

1. Introduction

KLDS Platform ("we," "our," or "us"), operated by Senintel, is a Security Intelligence and OSINT (Open Source Intelligence) platform that provides cybersecurity tools, threat intelligence, and investigative capabilities. Senintel is the data controller responsible for your personal information. We are committed to transparency about how we collect, use, and protect your personal data.

This Privacy Policy applies to all users of the KLDS Platform and describes our practices concerning personal data protection in compliance with international standards including GDPR (General Data Protection Regulation) and Senegal's data protection laws.

2. Data Collection

2.1 Information You Provide

When you create an account, we collect:

  • Account Information: Email address, username, password (encrypted), first and last name
  • Profile Data: User roles, permissions, and organizational affiliations
  • Communication Data: Messages, chat history, and support requests
  • Credit Information: Platform credit balance and usage for billing purposes

2.2 Automatically Collected Information

  • Usage Data: IP addresses, browser type, device information, and operating system
  • Activity Logs: Search queries, tool usage, investigation history, and timestamps
  • Technical Data: Session information, API calls, and error logs
  • Performance Metrics: Platform usage statistics and feature utilization

2.3 Investigation Data

  • Search Queries: OSINT searches, domain lookups, and breach database queries
  • Investigation Results: Data returned from third-party services (Dehashed, WHOIS, etc.)
  • Security Tool Outputs: Results from Kali Linux tools, vulnerability scans, and penetration tests

3. How We Use Your Data

We process your personal data for the following purposes:

  • Service Delivery: To provide OSINT and security intelligence services
  • Account Management: To create, maintain, and secure your user account
  • Investigation Support: To enable threat intelligence and cybersecurity investigations
  • Platform Improvement: To analyze usage patterns and improve our services
  • Security & Compliance: To detect fraud, prevent abuse, and comply with legal obligations
  • Communication: To send service updates, security alerts, and respond to inquiries
  • Credit Management: To track platform usage and manage billing

Legal Basis (GDPR): We process your data based on (a) contractual necessity to provide our services, (b) legitimate interests in operating and improving our platform, (c) your consent where required, and (d) legal compliance obligations.

4. OSINT Operations & Public Data

The KLDS Platform specializes in Open Source Intelligence (OSINT), which involves collecting and analyzing publicly available information. We are transparent about these operations:

  • Public Data Sources: We aggregate data from publicly accessible websites, breach databases, WHOIS records, DNS information, and other open sources
  • Breach Database Integration: Through our Dehashed integration, we provide access to previously compromised credentials and breach data for legitimate security purposes only
  • Security Tools: We provide access to Kali Linux security tools for authorized penetration testing and vulnerability assessments. We do not direct, control, authorize, or supervise your use of these tools.
  • AI-Powered Analysis: We use artificial intelligence to analyze and correlate intelligence data

CRITICAL NOTICE - Platform Provider Disclaimer: The KLDS Platform is intended exclusively for authorized cybersecurity professionals, investigators, and organizations conducting legitimate security research with proper authorization.

Senintel operates solely as a technology platform provider. We provide tools and access to data sources but do not direct, control, authorize, or approve any specific user activities. Users are independent actors who bear 100% responsibility for:

  • Obtaining all necessary permissions and authorizations before using security tools
  • Ensuring legal compliance with all applicable laws and regulations
  • All consequences of their actions, including legal liability

Misuse of OSINT tools, security tools, or breach data for illegal purposes will result in immediate account termination, reporting to law enforcement authorities, and full cooperation with any criminal or civil investigations. Senintel bears zero responsibility or liability for user misuse of our platform.

5. Data Security

We implement industry-standard security measures to protect your data:

  • Encryption: All data in transit is encrypted using TLS/SSL. Sensitive data at rest is encrypted
  • Authentication: Passwords are hashed using bcrypt with per-user salts
  • Access Controls: Role-based access control (RBAC) limits data access to authorized personnel
  • Infrastructure: Data is stored on secure AWS infrastructure with regular security audits
  • Monitoring: Continuous security monitoring and intrusion detection systems
  • Backup & Recovery: Regular automated backups with disaster recovery procedures

While we implement strong security measures, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security but continuously work to protect your information.

6. Your Rights (GDPR Compliance)

Under GDPR and applicable data protection laws, you have the following rights:

  • Right to Access: Request a copy of the personal data we hold about you
  • Right to Rectification: Request correction of inaccurate or incomplete data
  • Right to Erasure: Request deletion of your personal data ("right to be forgotten")
  • Right to Restriction: Request limitation of processing of your data
  • Right to Data Portability: Receive your data in a structured, machine-readable format
  • Right to Object: Object to processing of your data for specific purposes
  • Right to Withdraw Consent: Withdraw consent for data processing at any time
  • Right to Lodge a Complaint: File a complaint with your local data protection authority

To exercise any of these rights, please contact us at admin@senintel.sn. We will respond to your request within 30 days.

7. Third-Party Services & Data Sharing

We integrate with third-party services to provide our platform functionality:

7.1 Service Providers

  • Dehashed API: Breach database searches and credential monitoring
  • AWS (Amazon Web Services): Cloud infrastructure and data storage
  • AI/LLM Providers: Artificial intelligence for chat and analysis features

7.2 Data Sharing Practices

We do not sell your personal data to third parties. We may share data in the following circumstances:

  • Service Delivery: With trusted service providers who assist in platform operations
  • Legal Compliance: When required by law, court order, or regulatory authority
  • Security & Fraud: To prevent fraud, abuse, or security threats
  • Business Transfers: In connection with a merger, acquisition, or sale of assets

All third-party service providers are contractually obligated to protect your data and use it only for the specified purposes.

8. Cookies & Tracking Technologies

We use cookies and similar tracking technologies to enhance your experience:

8.1 Types of Cookies

  • Essential Cookies: Required for authentication and platform functionality
  • Preference Cookies: Remember your settings (theme, language)
  • Analytics Cookies: Help us understand platform usage and improve services
  • Security Cookies: Detect and prevent security threats

8.2 Local Storage

We use browser local storage to store authentication tokens, theme preferences, and application state. This data remains on your device and is not transmitted to our servers except when required for authentication.

9. Data Retention

We retain your personal data for as long as necessary to fulfill the purposes outlined in this policy:

  • Active Accounts: Data is retained while your account is active
  • Account Deletion: Upon request, account data is deleted within 30 days, except where retention is required by law
  • Investigation Data: OSINT search results and investigation data may be retained for up to 2 years for service improvement and compliance
  • Logs & Backups: System logs are retained for 90 days; backup data for 30 days
  • Legal Obligations: Data may be retained longer if required by law or for legal proceedings

10. International Data Transfers

The KLDS Platform operates globally and may transfer your data across international borders. Our infrastructure is primarily hosted on AWS in the EU-West-1 (Ireland) region.

When we transfer data internationally, we ensure appropriate safeguards are in place:

  • Standard Contractual Clauses (SCCs) approved by the European Commission
  • Adequate data protection measures as required by GDPR
  • Compliance with local data protection laws in Senegal and West Africa

12. Contact Information

For questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us:

Senintel - Data Protection Office

KLDS Platform

Website: https://senintel.sn

Email: admin@senintel.sn

We aim to respond to all privacy-related inquiries within 30 days in accordance with GDPR requirements.

Changes to This Privacy Policy

We reserve the right to update this Privacy Policy to reflect changes in our practices, legal requirements, or service offerings. Material changes will be communicated through:

  • Email notification to registered users
  • Prominent notice on the platform
  • Updated "Last Modified" date at the top of this policy

Continued use of the KLDS Platform after policy changes constitutes acceptance of the updated terms.

← Back to Login

© 2025 Senintel. All rights reserved.