Privacy
Privacy Policy
Last updated June 26, 2026
Our approach to privacy
On KindMark, a mark awarded to you is private until you claim it and choose to make it public. Nothing about you appears on a public page unless you decide it should. This policy explains what we store, what we never store, and the control you have.
The accounts we keep
We keep two kinds of account, each with a minimal profile:
- Recipients — the people marks are awarded to. We store a display name, profession, and optionally a photo, plus the email you sign in with. A recipient profile only becomes publicly reachable after you claim a mark and choose to publish it.
- Members (issuers) — the gatekept people who award marks. We store a display name, a short bio, and a free-text note of the real-world credential that qualifies them, linked to the email they sign in with.
Authentication is passwordless: we send a one-time code to your email. We do not store passwords.
How a mark reaches you, and what we do with your contact details
A member awards a mark by naming you and the act they witnessed, and provides a way to reach you (an email or phone number) so we can send you a single-use claim code. We use that contact detail only to deliver the code.
We do not keep your email or phone number in the clear for this purpose. We store only a salted, one-way hash of it, which lets us match your claim without ever holding the raw value. The hash cannot be reversed to identify you and is never shown on any public page.
Claiming a mark is your decision
When you claim a mark, you review who awarded it and exactly what they wrote, then choose one of three outcomes: claim it and make it public, claim it but keep it private, or decline it. A mark only ever becomes public on your explicit choice.
What is public — and only what is public
Public pages read from a strict, field-by-field allowlist — never directly from our database. What a published mark can show is limited to: your display name, profession, and photo; the member’s name, tier, and credential; the venue, the occasion, the member’s written citation, and the date.
- We never expose your email or the hash of your contact details.
- We never expose claim codes, internal identifiers, or raw metadata.
- We never expose internal member metrics, and we never show a public count or score — KindMark is deliberately not a leaderboard.
- We never sell your data.
No claims about your character
A mark records a specific act a qualified member witnessed, in their own words. KindMark does not generate a verdict about who you are and does not compare you to anyone else. Any summarizing language stays cautious and describes patterns, never character.
How AI is used
We use AI in an internal research tool that reads publicly available text to help us understand what genuine kindness looks like. This tool is separate from the credential: it never reads your private data, and it never creates, sets, or changes a mark awarded to you. Marks are written by members, not by AI.
Your controls
For each mark you hold, you choose whether it is public or private, and you can decline a mark you do not want. You can delete your account at any time.
Contact
If you have questions about this policy or your data, reach out through your account settings.