Trust & Data Practices

Last updated 10 August 2026 Early access

Kinobi is an early-stage company building infrastructure that reads the public web. That combination — young company, lots of data — is exactly the one you should ask hard questions about. This page answers them without marketing language, including the parts that do not flatter us.

On this page
  1. What is actually live today
  2. Where our data comes from
  3. How to opt out
  4. Accuracy, citations, and being wrong
  5. How we use AI
  6. Subprocessors
  7. Security posture
  8. Who is behind Kinobi

1. What is actually live today

Kinobi is in early access. Some of what we describe on the home page exists and runs every day; some of it is in development. Here is the line between them, and we keep this table current.

CapabilityStatusWhat that means
Agent crawler & extraction Live Runs daily. Reads public pages, extracts structured facts, cites each one to its source URL.
Company graph Live Companies, people, technologies, jobs, funding, and signals, resolved into one graph.
Web app Private beta Available to early-access accounts. Not self-serve yet — we onboard directly in small batches.
REST API Private beta Keys issued to early-access accounts on request. The surface may still change; we will version it before we call it stable.
MCP server Private beta Works with Claude Code, Cursor, and other MCP clients. Enabled per account on request — it is off by default.
Managed campaign service Early access Campaign planning, buying-group audience design, cross-channel media buying and reporting are available as a managed engagement. We onboard directly and scope each program before launch.
Self-serve media buying In development The automated demand-side platform and self-serve campaign controls are not generally available yet. Early campaigns are operated with our team.
SOC 2 Type II Not yet We are not certified. See section 7 for what we do run instead, honestly described.
On the demo on our home page

The terminal on our home page is a representative product demonstration. Company names make the workflow legible; campaign plans, relationship routes and scores shown there are examples, not assertions about a real person or a live customer campaign. Live research includes a source URL and retrieval date for every fact.

2. Where our data comes from

Every fact in the graph stores the URL it came from and the timestamp it was read. If we cannot cite it, we do not keep it. Our sources:

SourceWhat we take
Public company websitesTeam, about, careers, customer, and newsroom pages
Public job postingsRole, department, location, posting date; used to measure hiring velocity
US SEC filings10-K, DEF 14A, 8-K — officers, directors, risk factors, material events
UK Companies HouseFilings and annual accounts, via the official API
Public DNS records & HTTP headersMX, TXT, CNAME, NS, DMARC, CAA and response headers, used to infer vendors in use
Ad transparency librariesPublicly published advertiser activity from the major ad platforms
News, press releases, funding announcementsMaterial company events

What we never do: we do not scrape content behind logins, paywalls, or CAPTCHAs; we do not buy contact lists from data brokers; we do not use personal email addresses or home addresses; we do not collect special-category data.

3. How to opt out

You should not have to ask permission to be left alone, and you should not have to explain why. Either of these works:

We stop collecting within 7 days and delete existing records within 30. We keep a one-way hash of your identifiers afterwards for one purpose only: so that the next collection run does not silently add you back.

4. Accuracy, citations, and being wrong

Automated extraction gets things wrong. Ours will too. What we commit to:

5. How we use AI

Kinobi uses large language models to read public web pages and turn them into structured, cited records, and to power search over that structure. Concretely:

6. Subprocessors

These providers process data on our behalf. The list below is current as of the date at the top of this page. We will post changes here at least 14 days before a new subprocessor starts processing customer data — to be notified, or to request our current list in writing, email ankit@kinobi.so.

ProviderPurposeData it receivesLocation
NetlifyWebsite and app hostingRequest metadata, IP addressUS
ClerkAuthenticationName, work email, auth identifiersUS
AnthropicLanguage models for extraction and searchPublic page content, customer queriesUS
OpenAILanguage models and embeddingsPublic page content, customer queriesUS
OpenRouterModel routingPublic page content, customer queriesUS

7. Security posture

We are early-stage, so we will tell you plainly what we have and what we do not.

What we do today

What we do not have yet

If your procurement process requires any of the above, tell us before you invest time — we would rather lose a deal than misrepresent our posture.

Reporting a vulnerability

Email ankit@kinobi.so with “Security” in the subject, or see security.txt. We acknowledge within 3 business days. We will not pursue legal action against good-faith research that respects user privacy, avoids service degradation, and gives us reasonable time to fix.

Incident notification

If personal data we hold is breached, we notify affected customers without undue delay and within 72 hours of becoming aware, and we notify regulators where required.

8. Who is behind Kinobi

Kinobi is built by Ankit Pansari and operated by Kinobi, Inc., a Delaware corporation, from San Francisco. There is no anonymous team behind this — if something we do is wrong, there is a named person to hold responsible.

Email: ankit@kinobi.so

LinkedIn: linkedin.com/in/ankitkumarpansari

Post: Kinobi, Inc., 11 Franklin St, San Francisco, CA 94102, United States