Privacy
This page describes categories of data Kizunora currently processes to run the product. It may be updated as the service evolves.
What Kizunora is
Kizunora is a modern online marketplace where people buy and sell eligible physical goods, inspect items live with sellers before purchase, and transact with integrated shipping and Purchase Protection.
Kizunora is an online marketplace for adults 18 and older.
Account identity
Email address, password credential material (hashed), verification and recovery challenges, and account status.
Profile data
Display name, handle, birth date (for age eligibility), gender, location labels, bio, prompts, languages, interests, and related profile fields you provide.
Media
Profile photos and derived image variants stored in object storage, plus processing and moderation status needed to show eligible photos.
Buyer-seller messages and order communications
Message content attached to a listing or order, conversation membership, delivery/read cursors, reactions, replies, edits, and soft-delete tombstones required to operate Ask Seller and order communications.
Live inspection and realtime
Live-inspection session metadata, participant roles, and related realtime routing signals. LiveKit Cloud processes media for inspection sessions according to that provider’s role in the architecture.
Reports and safety
Abuse reports you submit, categories/context you provide, and operator-facing audit records used to review and act on reports. Reporter identity is not shown to the reported member.
Device, session, and security data
Session tokens (hashed at rest), approximate user-agent summaries, optional IP hashes where recorded for security, lockout counters, and consent event evidence.
Analytics
When enabled, consent-aware product analytics may record coarse events (for example step views). Analytics payloads are designed to exclude message bodies, precise location, and similar sensitive fields.
Payments
When you buy a paid membership, payment transactions may be processed through Stripe. Kizunora does not store full payment-card numbers. Card entry, if offered, takes place on Stripe-hosted checkout.
Kizunora may receive and store billing metadata needed to operate memberships, including Stripe customer identifiers, checkout and subscription identifiers, payment-intent identifiers, plan/offer codes, amounts and currency, subscription period and status, cancel-at-period-end flags, and a commercial authorization snapshot (product name, price, renewal semantics, and Terms/Privacy version identifiers). Stripe may also send webhook event types and related provider event identifiers so Kizunora can record purchases, renewals, refunds, and disputes.
This payment information and metadata may be processed for subscriptions and one-time purchases, receipts, fraud prevention, disputes, refunds, accounting, tax, and legal or compliance purposes where applicable. See the Refund and Cancellation Policy.
Age assurance
Kizunora is an online marketplace for adults 18 and older. We may require age assurance to confirm that a person is eligible to use the service and to help protect members and platform safety.
Didit is a third-party verification and age-assurance service provider. Didit performs the verification technology. Kizunora decides how a result is used on Kizunora, including whether a person may interact with other members. Didit does not independently decide Kizunora membership eligibility. Facial age estimation does not verify a person’s identity.
Depending on the verification step, Didit may process camera or selfie imagery, a short liveness capture or video, facial or liveness analysis and information derived from those captures, an estimated age or age-threshold result, verification status, session identifiers and timestamps, and fraud, safety, or review signals where applicable. If an ID-based step is required, Didit may also process identity-document information and date of birth.
Kizunora does not retain the raw selfie, liveness video, ID image, biometric template, or document number in its own application database. Kizunora retains minimal consent, verification-result, security, and audit records as reasonably necessary for age-assurance, safety, and applicable legal obligations. That may include verification status, provider and session identifiers, timestamps, and related decision metadata.
Verification may involve facial and liveness analysis. Depending on applicable law, that processing may involve biometric data or biometric-derived information. This page does not claim that every signal is legally “biometric information” in every jurisdiction, and it does not claim that a particular statutory classification has been established for this processing.
Didit’s verification application is currently configured for a 1-month retention period. The retained biometric template setting is currently configured to delete with the session. Those are operational settings and may change; they are not a promise that every copy of verification data is deleted on a fixed calendar day. Kizunora minimizes the verification data it keeps. Some Kizunora records, and in some cases provider records, may be retained longer when reasonably necessary for security, fraud prevention, legal obligations, disputes, enforcement, or audit requirements.
Didit may process verification information outside the country where you start the check, including in other jurisdictions, subject to applicable safeguards. Other service providers may also process related records. This page does not claim a specific hosting or data-residency country.
Age assurance may use automated age estimation, liveness, document, or other verification systems. Some results may require an additional check or review. A facial age estimate alone is not treated as a reason to permanently close an account, and it does not verify another person’s identity.
You may contact hello@kizunora.com to ask about access, correction, deletion, privacy questions, verification-data requests, or withdrawal of age-assurance consent. We may need enough information to locate the relevant account or session. Safety-sensitive reports may also be sent to the safety address published on Help. Withdrawing age-assurance consent does not restore access to features that require age assurance. If we cannot complete the check, Kizunora may be unable to continue providing those features.
Help · Didit legal terms · Verification Privacy Notice · End User Terms for Identity Verification.
What this page does not claim
This page does not claim certifications, sale of personal data practices, or region-specific rights beyond what the product currently implements. Contact us via Help for privacy questions.
