Privacy Policy
Effective July 23, 2026
KOLO (“we”, “us”) is the color studio at usekolo.app and its companion Figma plugin. This policy explains what we collect, why, and what control you have. The short version: we store what's needed to run your account and nothing more — no ads, no data sales, no tracking cookies.
What we collect
- Account details. Your email address and a password (stored only as a secure hash by our authentication provider), or — if you sign in with Google — your email, name, and profile photo as shared by Google.
- Your content. Palettes, gradients, color systems, and profile details (display name, avatar) you choose to save. Palettes you publish to the trend feed are visible to everyone; everything else is private to your account.
- Figma plugin data. Connecting the plugin creates a device token (stored only as a hash). If you click “Import custom tokens to KOLO”, the names and color values of color variables you created in Figma are saved to your account. The plugin reads nothing else from your Figma files.
- GitHub integration. If you connect GitHub, we store the installation reference and a record of commits KOLO created for you. We only access repositories you grant during installation.
- Usage analytics. We use Vercel Web Analytics — cookieless, aggregate page metrics that don't identify you individually.
What we use it for
To operate KOLO: signing you in, syncing your library across devices, pushing color systems to Figma, committing exports to GitHub, and sending account emails (confirmation, password reset). That's the entire list — we don't use your data for advertising and we never sell it.
Where it lives
Data is stored in a Postgres database managed by Supabase, with row-level security so each account can only reach its own rows. The site and API run on Vercel. Sign-in with Google is handled by Google; the GitHub integration by GitHub; the plugin runs inside Figma. Each processes only what's needed for its role.
Cookies & local storage
We use an essential session cookie to keep you signed in — no advertising or cross-site tracking cookies. Your browser's local storage holds convenience state such as unsaved palettes, locked colors, and preferences; it stays on your device.
Your control
- Unpublish or delete any saved palette or gradient at any time.
- Revoke Figma plugin access — per device from the plugin, or every device at once from your account menu.
- Uninstall the GitHub App to revoke repository access.
- Request account deletion at support@usekolo.app — it permanently removes your account and everything attached to it.
Changes
If our practices change, we'll update this page and its effective date. Material changes will be announced in the product.
Contact
Questions? support@usekolo.app