Back to AI Tools
Kadoa
Risk Overview
Moderate Risk
4.1
/10
Web Scraping
·
Data Extraction
·
Top Risks
IP ownership of deliverables remains with Kadoa — users need to transform outputs to exploit commercially. Anonymized data used for service improvement without clear opt-out. No published security certifications. Swiss law but US data processing exposure.
Mitigations
Swiss/EU GDPR jurisdiction provides strong data subject rights. No data selling. Swiss FADP oversight. On-premises/VPC deployment option reduces data exposure. SCCs used for cross-border transfers.
Get started
Is your team using
Kadoa
safely?
Highest Risk Categories
The highest-scoring risk categories identified in this assessment.
Data Retention
Privacy policy states retention 'for as long as it is needed for the purposes for which it was collected.' No specific deletion timeframes after account closure are published. Vague but not indefinite language.
5
/10
Output/IP Ownership
Section 8.2 ToS: 'The Intellectual Property Rights of the Deliverables remain with Kadoa.' Customers get only internal-use rights. Must transform deliverables before commercial exploitation. Feedback fully assigned to Kadoa. Unusual IP regime — company retains rights to scraped output deliverables.
5
/10
Security Posture
Privacy policy describes 'reasonable technical and organisational security measures.' Compliance docs mention enterprise-grade security, RBAC, audit logs, on-prem/VPC options. No SOC 2 or ISO 27001 certifications publicly listed. No public bug bounty program found.
5
/10
Unlock the complete assessment
Run a free assessment to access the full AI tool risk analysis.
Updated July 2026 • AI-assisted research • Reviewed by Verax • Report an issue
Reference Documentation
Official documentation and policies referenced as part of this assessment.
Terms of Service
https://www.kadoa.com/terms
Privacy Policy
https://www.kadoa.com/privacy