מדיניות פרטיות
עדכון אחרון: 23 ביולי 2026 · גרסה 1.0
שלושת העקרונות שלנו:
1. המידע שלך שלך. אתה הבעלים היחיד של כל מידע שאתה מזין ל-FundKiq.
2. Stealth כברירת מחדל. שום דבר לא נחשף לאיש עד שאתה בוחר לחשוף אותו, במפורש.
3. שקיפות מלאה. אנחנו אומרים לך בדיוק מה נאסף, למה הוא משמש, ומי יכול לראות אותו.
1. מי אנחנו
FundKiq (fundkiq.com) מופעלת על ידי MIRA Technologies Ltd., חברה רשומה בישראל ("אנחנו"). מדיניות זו חלה על האתר, האפליקציה וכל שירות של FundKiq.
2. איזה מידע אנחנו אוספים
- פרטי חשבון: שם, כתובת אימייל, תמונת פרופיל (אם התחברת דרך Google), תפקידים שבחרת (Founder / Investor / CTO / Service Provider).
- מידע על המיזם: שם, תיאור, שלב, תעשייה, אתר, מטריקות וכל פרט שתבחר להזין — בטפסים או בשיחה עם ה-Startup Manager.
- שיחות עם ה-Startup Manager: תוכן ההודעות שלך נשמר כדי לספק רצף שיחה, לחשב את ציון ה-Startup Health ולתת המלצות מותאמות. זו דרך הזנת המידע המרכזית במערכת — כל מה שתספר ל-Manager נחשב מידע שהזנת למיזם שלך.
- נתוני שימוש: צפיות בפספורט (כחלק מ-audit trail שמוצג לך), פעולות במערכת, נתונים טכניים בסיסיים (סוג דפדפן, זמני התחברות).
- מה אנחנו לא אוספים: איננו אוספים מיקום מדויק, אנשי קשר, או מידע מהמכשיר שלך מעבר לנדרש לתפעול השירות.
3. למה המידע משמש
- חישוב ציון Startup Health והצגתו לך בלבד (אלא אם שיתפת את הפספורט).
- התאמת הזדמנויות (משקיעים, שותפים טכניים, נותני שירות) — ההתאמה מבוססת על צרכים שהגדרת, לא על תוכן השיחות שלך.
- מתן המלצות והכוונה מה-Startup Manager.
- תפעול, אבטחה ושיפור השירות.
- לעולם לא: מכירת המידע שלך, העברתו למפרסמים, או שימוש בו לכל מטרה שאינה השירות עצמו.
4. עיבוד באמצעות מודלי שפה
כדי לספק את חוויית ה-Startup Manager ואת ציון ה-Health, תוכן רלוונטי (הודעות שלך ופרטי המיזם) מעובד באמצעות ספק מודלי שפה חיצוני (Google Gemini API) תחת תנאי השימוש העסקיים שלו, הקובעים כי הנתונים אינם משמשים לאימון מודלים. העיבוד מתבצע לצורך הפקת תשובה או ציון בלבד.
5. איפה המידע מאוחסן ואיך הוא מוגן
- אחסון: שרתי Supabase באיחוד האירופי (פרנקפורט, גרמניה), בכפוף לתקני GDPR.
- הצפנה: כל תעבורה מוצפנת (TLS/HTTPS); הנתונים מוצפנים גם באחסון (encryption at rest).
- בידוד ברמת מסד הנתונים (Row Level Security): שיחות ה-Manager, נתוני המיזם וההתקדמות שלך נגישים אך ורק לחשבון שלך. משתמש אחר — כולל משקיע — אינו יכול טכנית לגשת אליהם. הבידוד נאכף בשכבת מסד הנתונים עצמה, לא רק בקוד האפליקציה.
- גישת צוות: גישה תפעולית למסד הנתונים מוגבלת למינימום הנדרש לתחזוקה ואבטחה.
6. מה גלוי לאחרים — ורק בשליטתך
- ברירת מחדל — Stealth: המיזם שלך נסתר לחלוטין. אינו מופיע בחיפוש, בפיד או בהתאמות.
- שישה מצבי פרטיות: Public / Investors Only / Verified Only / Invite Only / Anonymous / Stealth — אתה קובע, וניתן לשנות בכל רגע.
- מה משותף כשמשתפים פספורט: שם המיזם, תקציר, ציון Health ונתונים שאישרת — לעולם לא תוכן השיחות שלך עם ה-Manager.
- Audit Trail: כל צפייה בפספורט שלך מתועדת ומוצגת לך — אתה תמיד יודע מי ראה מה ומתי.
- פיד ההצלחות: הישגים מתפרסמים רק לאחר אישור שלך, עם אפשרות לפרסום אנונימי.
7. הזכויות שלך
- עיון: לקבל עותק של המידע השמור עליך.
- תיקון: לעדכן כל פרט.
- מחיקה: למחוק את חשבונך ואת כל המידע הנלווה — מחיקה מלאה ולצמיתות ממסדי הנתונים הפעילים.
- ניידות: לקבל את הנתונים שלך בפורמט מובנה.
- לפניות: privacy@fundkiq.com. מענה בתוך 30 יום.
8. שמירת מידע
המידע נשמר כל עוד חשבונך פעיל. עם מחיקת החשבון, המידע נמחק ממסדי הנתונים הפעילים; עותקי גיבוי נמחקים במחזור הגיבויים הרגיל (עד 30 יום).
9. דין וסמכות שיפוט
מדיניות זו כפופה לחוק הגנת הפרטיות הישראלי, התשמ"א-1981 ותקנותיו. ככל שחלות הוראות GDPR על משתמשים באיחוד האירופי — הן מכובדות. סמכות השיפוט: בתי המשפט המוסמכים בתל אביב.
10. שינויים במדיניות
על כל שינוי מהותי תישלח הודעה לאימייל הרשום ותוצג הודעה באפליקציה, לפחות 14 יום לפני כניסתו לתוקף.
מסמך זה מנוסח בקפידה אך אינו מהווה ייעוץ משפטי. לפני השקה מסחרית מלאה מומלץ לעבור עליו עם עורך/ת דין המתמחה בפרטיות.
Privacy Policy
Last updated: July 23, 2026 · Version 1.0
Our three principles:
1. Your data is yours. You are the sole owner of everything you put into FundKiq.
2. Stealth by default. Nothing is visible to anyone until you explicitly choose to share it.
3. Full transparency. We tell you exactly what is collected, what it's used for, and who can see it.
1. Who we are
FundKiq (fundkiq.com) is operated by MIRA Technologies Ltd., a company registered in Israel ("we"). This policy covers the FundKiq website, app and services.
2. What we collect
- Account details: name, email, profile photo (if you sign in with Google), and the roles you select (Founder / Investor / CTO / Service Provider).
- Venture information: name, description, stage, industry, website, metrics and anything you choose to enter — in forms or in conversation with your Startup Manager.
- Startup Manager conversations: your messages are stored to maintain conversation continuity, compute your Startup Health score and personalize guidance. The conversation is the primary way information enters the system — anything you tell your Manager is treated as information you've entered about your venture.
- Usage data: Passport views (part of the audit trail shown to you), in-app actions, and basic technical data (browser type, sign-in times).
- What we do not collect: precise location, contacts, or device data beyond what's needed to operate the service.
3. How it's used
- Computing your Startup Health score, shown only to you (unless you share your Passport).
- Matching opportunities (investors, technical partners, service providers) — matching is based on needs you define, never on your conversation content.
- Providing Startup Manager guidance.
- Operating, securing and improving the service.
- Never: selling your data, sharing it with advertisers, or using it for anything other than the service itself.
4. Language-model processing
To deliver the Startup Manager experience and Health scoring, relevant content (your messages and venture details) is processed via a third-party language-model provider (Google Gemini API) under its business terms, which provide that data is not used for model training. Processing is performed solely to generate a response or a score.
5. Where your data lives and how it's protected
- Storage: Supabase servers in the European Union (Frankfurt, Germany), subject to GDPR standards.
- Encryption: all traffic is encrypted (TLS/HTTPS); data is encrypted at rest.
- Database-level isolation (Row Level Security): your Manager conversations, venture data and progress are accessible only to your account. No other user — including investors — can technically access them. Isolation is enforced in the database layer itself, not just in application code.
- Team access: operational database access is limited to the minimum required for maintenance and security.
6. What others can see — only on your terms
- Default — Stealth: your venture is fully hidden. It does not appear in search, feeds or matching.
- Six privacy modes: Public / Investors Only / Verified Only / Invite Only / Anonymous / Stealth — you decide, changeable at any time.
- What's shared when you share a Passport: venture name, summary, Health score and data you've approved — never your Manager conversations.
- Audit Trail: every view of your Passport is logged and shown to you — you always know who saw what and when.
- Success feed: achievements are published only with your approval, with an anonymous option.
7. Your rights
- Access: get a copy of the data we hold about you.
- Correction: update any detail.
- Deletion: delete your account and all associated data — fully and permanently from active databases.
- Portability: receive your data in a structured format.
- Contact: privacy@fundkiq.com. We respond within 30 days.
8. Retention
Data is kept while your account is active. Upon deletion, data is removed from active databases; backup copies expire within the regular backup cycle (up to 30 days).
9. Governing law
This policy is governed by the Israeli Privacy Protection Law, 5741-1981 and its regulations. Where GDPR applies to EU users, it is honored. Jurisdiction: the competent courts of Tel Aviv.
10. Changes
Material changes will be announced by email and in-app at least 14 days before taking effect.
This document is carefully drafted but does not constitute legal advice. Before full commercial launch, review with a privacy attorney is recommended.