This English version is provided for your convenience. For consumers, the language version provided to you applies; vis-à-vis businesses, the German version (datenschutz.html) is authoritative.
Using Kobel on a Mac? The version obtained from the Mac App Store has its own privacy policy tailored to Apple/StoreKit 2: Privacy Policy Mac App Store. The present policy covers the Windows version and purchases made through our website.
Kobel runs largely offline on your device. The app transmits data over the internet only in a few specific cases: subscription licence validation, the update check, purchase processing via Paddle (or, for the Mac App Store version, via Apple), the email sign-in with a one-time code for licence restore, optional cloud connections, the optional ChatGPT tunnel via Cloudflare (Windows only), optional team-policy synchronisation set by your IT administrator, the app-proxy subprocesses you set up yourself, and the optional social media integration. Your files and settings otherwise never leave your device.
1. Controller
Amoria · Owner: Lara Möller · Lucia-Pogwisch-Ring 5 · 24253 Probsteierhagen · Germany · hello@kobel.app
2. Overview
Kobel is a desktop application that acts as an access gateway between your local files and AI applications. Its core functions (file-access gateway, knowledge store, MCP connection to AI apps) run entirely locally on your device. Personal data is transmitted only in the following cases:
- Licence validation for an active Pro one-time, Pro subscription, or Team licence (monthly transmission of licence key and device hash over HTTPS for floating-licence binding; see Section 5a),
- Update check against our server (see Section 5b),
- Purchase processing via the payment provider Paddle as Merchant of Record for purchases made through our website / the Windows version (see Section 5c), or via Apple as Merchant of Record for purchases made through the Mac App Store (see Section 5c-2),
- the email sign-in with a one-time code, used at your explicit request to restore an existing licence — in particular across platforms between Windows and Mac (see Section 5i),
- optional cloud connections to Google Drive and Dropbox, activated only at your explicit request (see Section 5d),
- the optional ChatGPT tunnel via Cloudflare, activated only at your explicit request (see Section 5e; Windows only),
- the optional team policy set by your IT administrator (see Section 5f),
- the user-configured app proxy for external MCP servers, which themselves may connect to third parties (see Section 5g),
- the optional social media integration, activated only at your explicit request — connecting and token renewal for Facebook, Instagram, Reddit, TikTok and LinkedIn run through a connection server operated by the provider; Telegram and Bluesky involve no server (see Section 5h).
In all other cases your data does not leave your device. For the optional social media integration (Section 5h), the actual content (posts, comments, messages) is exchanged directly between your device and the respective platform; only the one-time connection step and token renewal for Facebook, Instagram, Reddit, TikTok and LinkedIn run through a connection server operated by the provider.
3. Data processed by the Kobel app (local)
3.1 State data (box-state.json)
Kobel stores a local configuration file on your computer: the paths of the folders and files you add (paths only, not file contents; these may contain your operating-system user name, e.g. C:\Users\YourName\Documents\…), the permission level (traffic-light colour) per file or folder, your project names and assignments, and your preferences (e.g. language).
Storage location — Windows: %APPDATA%\studio.amoria.box\ · macOS: ~/Library/Application Support/studio.amoria.box/ · Linux: ~/.local/share/studio.amoria.box/
3.2 Knowledge database (knowledge.db)
Kobel includes a local knowledge store in which connected AI applications can save notes, summaries, or project knowledge via the MCP interface. This database is stored exclusively on your computer (SQLite). Because AI applications can write to it freely, it may contain personal data if you share such information with the AI in conversation. Kobel does not collect this data itself. You can view and delete entries at any time in the Settings.
3.3 Detection of installed AI applications
When you want to connect an AI app, Kobel checks only whether known installation directories or configuration files exist on your computer. No file contents are read, and the results are neither stored nor transmitted.
3.4 AI app configurations
When you connect an AI application, Kobel writes a configuration entry to that app's config file. This entry contains only the path to the Kobel executable and the server name — no personal data.
3.5 File copies (permission level "Orange")
At the "Orange" level, Kobel creates a copy of your file in the same directory as the original (with a "_kopie" suffix) when requested by the AI application. The copy is subject to the same operating-system permissions as the original.
4. File sharing with AI applications
Kobel lets you share local files with AI applications (e.g. Claude Desktop, ChatGPT, GitHub Copilot) via the MCP protocol over local system connections (stdio pipes) — not over the network. You control access through the traffic-light system: Red (invisible to the AI), Yellow (read only), Orange (works on a copy), Green (may edit the original).
When an AI application retrieves the list of shared files it receives the full file paths, which may contain your OS user name. Kobel itself does not transmit this to the internet; however, the connected AI application may send conversation content (including file paths and file contents) to its own servers in accordance with that provider's own privacy policy (e.g. Anthropic for Claude, OpenAI for ChatGPT, Microsoft for GitHub Copilot). Amoria has no control over how AI providers process your data. Please review their privacy policies before sharing sensitive files.
5a. Licence validation (floating licence)
For an active Pro one-time, Pro subscription, or Team licence, the Windows version transmits the licence key and a 32-character device hash (SHA-256 of the Windows MachineGuid) once per month, encrypted over HTTPS, to a server operated by the provider (kobel.app/api/check-abo.php) to verify the licence's validity. The hash is not reversible and is used solely to bind the licence to the device. When the licence key is entered on a new device, the previous device enters a seven-day grace period during which Pro features continue to work; re-entering the key on the original device reverses the transfer.
Note on the change: earlier versions performed no online check for one-time purchase licences; under the floating-licence model, one-time licences also perform the monthly status check.
Legal basis: Art. 6(1)(b) GDPR (performance of a contract). Retention: the validation request is not logged in a personally identifiable form on the server.
Note on the Mac App Store version: the Mac App Store version does not collect or transmit a device hash. There, the licence is bound via the Mac App Store receipt (Apple) or via the email sign-in (Section 5i); in that case the monthly status check transmits the licence key only.
5b. Update check
To deliver security and program updates, the app periodically checks our server (kobel.app/releases/latest.json) for a newer version. As with any internet request, your IP address and the current app version are transmitted to the server in the process. No further personal data is collected, and the request is not used to create a user profile.
Legal basis: Art. 6(1)(f) GDPR (legitimate interest in providing a secure, up-to-date product) and, for security updates of digital products supplied to consumers, Art. 6(1)(c) GDPR in conjunction with the statutory update obligation.
5c. Purchase processing via our website (Windows version) — Paddle
Paid purchases (Pro one-time, Pro subscription, Team subscription) made through our website — which in particular covers the Windows version — are processed by Paddle.com Market Ltd. (Judd House, 18–29 Mora Street, London EC1V 8BT, United Kingdom) as Merchant of Record. Paddle acts as the seller towards the customer and processes payment data (card, PayPal, billing address, tax country, checkout IP address) on its own responsibility.
After a successful purchase, Paddle transmits the following data to the provider via webhook, which is stored in the licence database licenses.sqlite: licence key, plan type, status (active/cancelled), customer email, Paddle customer ID, activation count (to enforce seat limits), and creation/cancellation timestamps.
Legal basis: Art. 6(1)(b) GDPR (performance of a contract); for the retention of tax-relevant data additionally Art. 6(1)(c) GDPR in conjunction with § 147 AO (German Fiscal Code). Retention: on cancellation the record is set to status=cancelled; tax/commercial records are kept for up to 10 years (§ 147 AO) and then deleted. Customer emails kept solely for support purposes without tax/commercial relevance are deleted no later than 24 months after the contract ends. Paddle privacy policy: paddle.com/legal/privacy
5c-2. Purchase processing via the Mac App Store (Apple, StoreKit 2)
Purchases and subscriptions for the version obtained from the Mac App Store are processed exclusively via Apple's App Store (StoreKit 2). The relevant Apple entity (for customers in Europe usually Apple Distribution International Ltd., Hollyhill Industrial Estate, Hollyhill, Cork, Ireland) acts as Merchant of Record — the purchase contract is concluded between you and Apple, not between you and us.
Data Apple processes: Apple receives your payment details (credit card, Apple ID, bank account — depending on the payment method you choose) as well as the information required for the tax statement, and processes them on its own responsibility. Apple's own privacy policy applies: apple.com/legal/privacy/en-ww/. We receive no payment data.
Data we receive and store: for licence validation, our licence server stores exclusively the anonymised Apple transaction identifier (original_transaction_id), the product ID, and the licence status (e.g. "Pro licence active" or "subscription active until [date]"). No device hash is collected. There is no direct payment channel between Kobel and you.
Legal basis: Art. 6(1)(b) GDPR (performance of a contract — provision of the purchased licence).
Retention: for the duration of the subscription or licence; the records are deleted thereafter. Where statutory tax or commercial retention obligations apply in an individual case, the periods stated there govern.
Further details: see our Privacy Policy for the Mac App Store version.
5d. Cloud connections (Google Drive, Dropbox)
At your explicit request, Kobel can connect folders from Google Drive and/or Dropbox via OAuth 2.0 (Authorization Code Flow with PKCE).
Independent third-party controllers: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland (Google Drive); Dropbox International Unlimited Company, One Park Place, Upper Hatch Street, Dublin 2, Ireland (Dropbox).
Stored locally: access token (short-lived), refresh token (for silent renewal), and the email address of the connected account (for display in the UI), on Windows in %APPDATA%\studio.amoria.box\cloud-tokens.json — on your device only. Tokens leave your device only towards the OAuth endpoints of the respective providers.
Note on the Mac App Store version: cloud OAuth for Google Drive and Dropbox is technically disabled in the Mac App Store build; there, access runs through the system file picker instead of external OAuth servers, so no cloud-tokens.json is created. Local app data on macOS generally resides under ~/Library/Application Support/Kobel/ (see Privacy Policy Mac App Store).
Legal basis: Art. 6(1)(a) GDPR (consent by connecting the account); revocable at any time in the Kobel settings via "Disconnect cloud connection" and in your Google/Dropbox account.
5e. ChatGPT tunnel via Cloudflare (Windows, optional)
This feature is disabled by default and starts only on your explicit action (e.g. clicking "Connect ChatGPT"). It is not available in the Mac App Store version due to Apple sandbox requirements.
If you activate it, Kobel downloads the cloudflared helper once from GitHub, Inc. (88 Colin P Kelly Jr St, San Francisco, CA 94107, USA) and verifies it against a pinned SHA-256 hash. cloudflared then opens an encrypted tunnel to Cloudflare, Inc. (101 Townsend St., San Francisco, CA 94107, USA) and provides a random *.trycloudflare.com URL through which ChatGPT (as an MCP client) can access your shared files. During download and operation, your IP address, user agent, and HTTP request headers are transmitted to GitHub and Cloudflare; Cloudflare may process connection and threat data under its own privacy policy.
International transfers: Cloudflare, Inc. and GitHub, Inc. are independent controllers based in the United States. Transfers rely on the EU-US Data Privacy Framework (Commission adequacy decision of 10 July 2023, OJ L 231) and additionally on EU Standard Contractual Clauses (Art. 46(2)(c) GDPR).
Legal basis: Art. 6(1)(a) GDPR (consent by activating the feature); for the international transfer additionally Art. 49(1)(a) GDPR. Revocable at any time with effect for the future via "Stop tunnel" in the Kobel settings; cloudflared.exe can be deleted manually from %APPDATA%\studio.amoria.box\.
Third-party privacy notices: Cloudflare · GitHub
5f. Team policy (IT-administrator configuration, optional)
Disabled by default. Applies only if an IT administrator of your organisation enters a policy source in the Kobel settings — either an HTTPS URL (e.g. https://it.example.com/kobel-policy.json) or a local/UNC path. Kobel loads the JSON file at start-up and periodically thereafter, and enforces the rules it contains (path block-lists, allowed file types, disabling of the app proxy, write/delete restrictions, AI whitelist, pre-installed app-proxy entries).
When using an HTTPS URL, Kobel transmits your IP address, user agent, and possibly cookies to the policy server when fetching the file; this server is operated by your organisation or its provider — Amoria has no influence over it. The most recently loaded policy is cached locally in box-state.json.
Notice to employees: if you use Kobel within your employment relationship and your employer has set a policy source, your employer can centrally restrict Kobel's functionality on the workplace device. The employer is an independent controller and fulfils its own information obligations under Art. 13 GDPR / § 26 BDSG. Kobel itself does not transmit the contents of your shared files to the policy server as part of the synchronisation.
Legal basis: Art. 6(1)(f) GDPR (legitimate interest of the provider and the organisation in secure, compliant use); in the employment context additionally § 26(1) BDSG / Art. 88 GDPR with the applicable national rules.
5g. App proxy (external MCP servers, optional)
At your explicit request, Kobel can launch external MCP-compatible applications as subprocesses. Each app is added manually by you (or by your IT administrator via the team policy, Section 5f). For each entry, box-state.json stores the display name, executable path, launch parameters, and any environment variables (env) you provide. The latter often contain third-party credentials (e.g. API keys for GitHub, Notion, Slack, databases, or in-house systems). They are stored in plain text in the local app-data folder, protected by your operating-system file permissions, and do not leave the device toward Amoria, Paddle or Apple.
What the MCP servers you start actually do lies outside Kobel's control. A subprocess may itself open network connections to its own third parties (e.g. GitHub API, Notion API, internal corporate servers). The provider of the relevant MCP server is the controller for those processings; please consult its privacy policy.
Legal basis: Art. 6(1)(b) GDPR (provision of the feature at your request); for the local storage of the env variables Art. 6(1)(f) GDPR. Recommendation: use API keys with the minimum required scope ("least privilege") per third party and revoke tokens with the relevant third party when no longer needed.
5h. Social media integration (optional)
At your explicit request, Kobel can connect social network accounts (Facebook, Instagram/Threads, Reddit, TikTok, LinkedIn, Telegram, Bluesky) so that a connected AI application can perform limited actions on your behalf (e.g. publishing posts, reading and replying to comments or direct messages). Nothing is set up by default.
Facebook, Instagram/Threads, Reddit, TikTok, LinkedIn: Sign-in uses OAuth 2.0. So that the secret app credential ("app secret") never has to reside on your device, the sign-in and token-renewal process runs through a connection server operated by the provider at kobel.app/api/connect/ (hosted by 1&1 IONOS SE, Germany; Art. 28 GDPR data-processing agreement in place). In doing so, the access token and any refresh token and basic account details (name, account ID, page token, Instagram account ID where applicable) are processed temporarily: held briefly in a server file (sign-in max. 15 minutes, result max. 3 minutes), handed to your local app exactly once, and then deleted automatically — there is no permanent storage and no database logging. The app secret never leaves the server.
Telegram and Bluesky: here you enter the bot token or app password directly in Kobel. These are stored locally only and sent directly to the platform — without involving our connection server.
Stored locally: after connecting, the tokens/bot token/app password and the account name (for display) are stored locally on your device — on Windows in %APPDATA%\studio.amoria.box\, on macOS under ~/Library/Application Support/Kobel/. The actual content (posts, comments, messages) flows through the local connector directly to the platform — not via our server, not to Amoria and not to Apple.
Independent controllers: Meta Platforms Ireland Limited (Facebook, Instagram, Threads); Reddit, Inc. (USA); TikTok Technology Limited (Ireland); LinkedIn Ireland Unlimited Company; Bluesky Social, PBC (USA); Telegram Messenger Inc. Where processing takes place in the USA, the transfer relies on your explicit consent (Art. 49(1)(a) GDPR) and, where certified, on the EU-US Data Privacy Framework or EU Standard Contractual Clauses. Privacy policies: Meta · Reddit · TikTok · LinkedIn · Bluesky · Telegram.
Legal basis: Art. 6(1)(a) GDPR (consent by connecting) and Art. 6(1)(b) GDPR (providing the function). Revocable at any time via "Disconnect" in the Kobel settings and in your platform account.
Data deletion — connected social media accounts
You can end a connected social media link at any time: (1) In Kobel: Settings → Social Media → "Disconnect" for the relevant platform (removes the locally stored credentials). (2) In the platform: additionally revoke Kobel in your account's app/permission settings. (3) Server-side, Kobel stores no permanent account or token data; data used briefly during the connection process is deleted automatically (within 15 minutes at the latest). For Meta accounts, removing the app in your Meta account automatically triggers our deletion endpoint. Questions: hello@kobel.app.
5i. Email sign-in with one-time code (licence restore)
To restore an already purchased licence on a (further) device — in particular across platforms between Windows and Mac — Kobel offers a sign-in via email and one-time code. No password-based user account is created.
How it works: You enter the email address used at purchase in the Kobel app. The app transmits the email address and your display language over HTTPS to a server operated by the provider (kobel.app/api). If an active licence exists for that address, the server sends a six-digit one-time code to it via the provider's own email service (hosted by 1&1 IONOS SE, Germany; an Art. 28 GDPR data-processing agreement is in place). After you enter the code in the app, the associated licence is activated on the device.
Stored server-side — exclusively:
- a non-reversible hash of the email address (SHA-256 with a server-side secret) — not the address itself,
- a hash of the one-time code — never the code in plain text,
- creation and expiry timestamps and a failed-attempt counter.
Safeguards: the code is valid for 10 minutes, works only once, and is discarded after four failed attempts. Requests are rate-limited per IP address and per email address. The server's response is identical whether or not a licence exists for an address, so it cannot be used to probe which email addresses are customers. Logs contain at most a truncated hash of the email address.
Legal basis: Art. 6(1)(b) GDPR (performance of contract — restoring the purchased licence). The code email is a purely transactional message without any advertising.
Retention: one-time-code records (hashes only) are deleted automatically no later than 24 hours after the code expires. The customer email stored at purchase is subject to the retention periods in Section 8.
6. When you visit this website
When you access this website, the web host stores technical access data (IP address, browser type and version, operating system, referrer URL, date/time of the request, data volume transferred, HTTP status code) in the server log. These data serve solely for the technical provision, error analysis, and IT security of the website and are not combined with other data sources.
Legal basis: Art. 6(1)(f) GDPR (legitimate interest in a technically sound and secure website). Retention: a maximum of 14 days, then automatic deletion or anonymisation. Host: the website is hosted by 1&1 IONOS SE, Elgendorfer Str. 57, 56410 Montabaur, Germany; a data processing agreement under Art. 28 GDPR has been concluded.
6.1 Anonymous server statistics
For certain server requests (downloading an installer, licence checks against our API) we increment a purely statistical counter. No personal data is stored: the IP address is immediately converted into a country code within the PHP script and then discarded. Countries with fewer than 5 events are grouped as "XX" (k-anonymity). There is no tracking, profiling, or session tracking. Legal basis: Art. 6(1)(f) GDPR.
6.2 Cookies and storage on your device
This website uses no tracking, analytics or advertising cookies. There is no audience measurement, no profiling and no sharing of usage data with third parties.
For technically necessary purposes we store the following entries in your browser's local storage. This data stays on your device and is never transmitted to us:
- kobel_lang — remembers the language you selected so the site appears in the same language on your next visit. Retention: until you delete it.
- kobel_consent — stores your choice in the privacy notice so it is not shown again on every visit, and serves as a record of consent. Retention: until you delete it.
Legal basis: § 25(2) no. 2 TDDDG (strictly necessary to provide the service you requested) in conjunction with Art. 6(1)(f) GDPR.
Payment processing at checkout
Only on the checkout page do we load the payment script of our payment provider Paddle.com Market Ltd. (Judd House, 18–29 Mora Street, London EC1V 8BT, United Kingdom). Paddle sets its own cookies or storage entries that are required to process the payment and to prevent fraud. Legal basis: § 25(2) no. 2 TDDDG and Art. 6(1)(b) GDPR (performance of a contract). This script is not loaded on any other page. Details: paddle.com/legal/privacy.
Changing your choice
You can change your choice at any time via the "Cookie settings" link in the footer of every page. You may also clear your browser's local storage at any time; the website remains fully usable afterwards.
6.3 Fonts
Fonts (Google Fonts) are embedded locally. When the page loads, no connection to Google servers is established and no IP addresses or other personal data are transmitted to Google.
6.4 Contact by email and security reports
If you contact us by email, the data you provide are used to process your request and then deleted. Vulnerability reports sent to security@kobel.app are processed to maintain product security and to meet statutory reporting obligations (EU Cyber Resilience Act); details are set out in our security policy.
7. Legal bases (GDPR)
- Art. 6(1)(b) — performance of a contract: providing the software, purchase processing via Paddle (5c) and via Apple in the Mac App Store (5c-2), licence validation (5a), the email sign-in with one-time code (5i), handling support requests.
- Art. 6(1)(c) — legal obligation: retention of tax/commercial data (§ 147 AO, § 257 HGB) and security updates.
- Art. 6(1)(a) — consent: optional cloud connections (5d), revocable at any time.
- Art. 6(1)(f) — legitimate interests: local storage of technical configuration data, the update check, server statistics, and protection against licence abuse.
8. Retention and deletion
Local data on your device (configuration, knowledge database, cloud tokens) are not deleted automatically; they remain until you remove them. You can delete all locally stored data at any time by removing the folder listed in Section 3.1. When uninstalling, this data may remain — please delete the folder manually if you wish to remove everything. Cloud tokens can additionally be removed via "Disconnect cloud connection" in the settings.
Licence database (Paddle webhook): during the contract term the data are stored to enforce the subscription and seat limit; after cancellation the record is set to cancelled; tax/commercial invoicing data are kept for the statutory periods (up to 10 years, § 147 AO; 6 years, § 257 HGB) and then deleted; customer emails without tax/commercial relevance are deleted no later than 24 months after the contract ends. One-time-code records of the email sign-in (Section 5i; hashes only) are deleted automatically no later than 24 hours after the code expires.
Licence records for Mac App Store purchases (Section 5c-2): the anonymised Apple transaction identifier, the product ID, and the licence status are stored for the duration of the subscription or licence and deleted thereafter. Payment and billing data remain with Apple; we do not receive them.
9. Your rights under the GDPR
You have the right of access (Art. 15), rectification (Art. 16), erasure (Art. 17, subject to statutory retention obligations), restriction (Art. 18), data portability (Art. 20), and objection to processing based on Art. 6(1)(f) (Art. 21). You may withdraw consent with effect for the future at any time (Art. 7(3)), in particular for the cloud connections. To exercise your rights, contact hello@kobel.app.
You also have the right to lodge a complaint with a supervisory authority (Art. 77). The competent authority for us is the Unabhängiges Landeszentrum für Datenschutz Schleswig-Holstein (ULD), Holstenstraße 98, 24103 Kiel, Germany, datenschutzzentrum.de.
10. International privacy information
Kobel is available worldwide via the Microsoft Store and the Mac App Store. The country-specific notes below supplement the information above; the data flows described in Sections 5a–5i apply in all cases.
10.1 California, USA (CCPA/CPRA)
California residents have the right to know about, delete, and correct personal information concerning them, and to opt out of its "sale" or "sharing". Amoria does not sell or share personal information as defined by the CCPA/CPRA. The payment and licence data required for a purchase or subscription are processed via Paddle (Merchant of Record for purchases through our website; see Section 5c) or, for purchases through the Mac App Store, via Apple (Merchant of Record; see Section 5c-2), and in the provider's licence register. To exercise your CCPA/CPRA rights, contact hello@kobel.app.
10.2 United Kingdom (UK GDPR)
For UK users the principles of the UK GDPR apply as described above. You may complain to the Information Commissioner's Office (ICO): ico.org.uk.
10.3 Canada (PIPEDA)
For Canadian users the principles of PIPEDA apply to the processing described above. For payment processing, data are transmitted to Paddle (Section 5c) or, for purchases through the Mac App Store, processed by Apple (Section 5c-2).
10.3a Québec, Canada (Law 25 / Bill 64)
Users resident in Québec also benefit from the Loi modernisant des dispositions législatives en matière de protection des renseignements personnels (Law 25, formerly Bill 64) read together with the Loi sur la protection des renseignements personnels dans le secteur privé. You have, in particular, the right to access, rectify, port (since September 2024), and restrict the processing of your personal information. A privacy impact assessment is performed before any transfer of personal information outside Québec; processing by Paddle (UK), by Apple (US/Ireland, for purchases through the Mac App Store) and, where applicable, Cloudflare and GitHub (US, optional ChatGPT tunnel) takes place on the basis of your consent and with contractual safeguards. For Mac App Store purchases we ourselves process only the anonymised transaction identifier, the product ID, and the licence status. Requests under Law 25: hello@kobel.app. Supervisory authority: Commission d'accès à l'information du Québec (CAI), cai.gouv.qc.ca.
10.4 Brazil (LGPD)
For Brazilian users the principles of the LGPD apply to the processing described above. The data subject rights under Art. 18 LGPD can be exercised at hello@kobel.app.
10.5 Australia (Privacy Act)
For Australian users the Australian Privacy Principles (APPs) of the Privacy Act 1988 apply to the processing described above.
10.6 Note on AI applications
The AI applications you connect may transmit conversation content (including file paths and file contents) to their servers according to their own privacy policies. This processing is not controlled by Kobel or Amoria. Please review the privacy policies of the AI applications you use.
11. Third-party providers and processors
Kobel uses open-source libraries that run locally on your computer; a full list with licences is available in the application under Help → Licenses. For individual services the providers named in Sections 5c, 5c-2, 5d, 5e, and 6 are used: Paddle as Merchant of Record for purchases through our website / the Windows version (5c), Apple (Apple Distribution International Ltd., Ireland, and affiliated Apple entities) as Merchant of Record for purchases through the Mac App Store (5c-2), Google and Dropbox for optional OAuth cloud connections (5d), Cloudflare and GitHub for the optional ChatGPT tunnel of the Windows version (5e), and IONOS as web host (6). Subprocesses launched by you via the app proxy (5g) and the third parties they connect to act on their own responsibility. Where providers act on our behalf, the data processing agreements required under Art. 28 GDPR have been concluded; where they act as independent controllers (in particular Paddle and Apple for payment processing, and Cloudflare/GitHub for their respective services), data are transmitted on the legal bases set out in Section 7. For the optional social media integration (Section 5h), the platform operators (Meta, Reddit, TikTok, LinkedIn, Bluesky, Telegram) act as independent controllers; the connection server at kobel.app/api/connect/ is hosted with the provider (IONOS, Germany) under the existing Art. 28 data-processing agreement.
12. Children
Kobel is a paid productivity tool aimed at adults and businesses. A contract is concluded only with persons who are at least 18 years old. Amoria does not knowingly collect personal data from children under 16. If we become aware that personal data of a minor has been processed without the required parental consent, we will delete the record without undue delay. Please send any related notice to hello@kobel.app.
13. Changes to this privacy policy
Changes to this privacy policy are published together with software updates. The current version is always available within the application and on this website.
Version 1.6 (5 August 2026): purchase processing via the Mac App Store added (Apple as Merchant of Record, StoreKit 2): new Section 5c-2; clarified that processing via Paddle applies only to purchases through our website / the Windows version; Apple added to the third-party list and the country-specific sections; Windows-specific file paths marked as such and the macOS equivalents added; prominent reference to the Mac edition privacy-mac.html added.
Version 1.5 (3 July 2026): editorial alignment with the German version 1.5 (scope reference in Section 10 corrected to 5a–5i; children section unchanged).
Version 1.4 (2 July 2026): Section 5i email sign-in with one-time code added (licence restore, hash-only storage, 24-h deletion); clarification that the Mac App Store version transmits no device hash; overview, Sections 5a, 7, and 8 adjusted accordingly.
14. Contact
Amoria · Lara Möller · Lucia-Pogwisch-Ring 5 · 24253 Probsteierhagen, Germany · hello@kobel.app