NEWS
Verax AI Risk Assessment is live. See what's exposed
Kadoa
Kadoa
 
Risk Overview
Moderate Risk
4.1
/10
Web Scraping
·
Data Extraction
·
Top Risks

IP ownership of deliverables remains with Kadoa — users need to transform outputs to exploit commercially. Anonymized data used for service improvement without clear opt-out. No published security certifications. Swiss law but US data processing exposure.

Mitigations

Swiss/EU GDPR jurisdiction provides strong data subject rights. No data selling. Swiss FADP oversight. On-premises/VPC deployment option reduces data exposure. SCCs used for cross-border transfers.

Get started
Is your team using 
Kadoa
 
safely?

Highest Risk Categories

The highest-scoring risk categories identified in this assessment.

Data Retention

Privacy policy states retention 'for as long as it is needed for the purposes for which it was collected.' No specific deletion timeframes after account closure are published. Vague but not indefinite language.
5
/10

Output/IP Ownership

Section 8.2 ToS: 'The Intellectual Property Rights of the Deliverables remain with Kadoa.' Customers get only internal-use rights. Must transform deliverables before commercial exploitation. Feedback fully assigned to Kadoa. Unusual IP regime — company retains rights to scraped output deliverables.
5
/10

Security Posture

Privacy policy describes 'reasonable technical and organisational security measures.' Compliance docs mention enterprise-grade security, RBAC, audit logs, on-prem/VPC options. No SOC 2 or ISO 27001 certifications publicly listed. No public bug bounty program found.
5
/10

Unlock the complete assessment

Run a free assessment to access the full AI tool risk analysis.
Start Free Assessment
Updated July 2026 • AI-assisted research • Reviewed by Verax • Report an issue

Reference Documentation

Official documentation and policies referenced as part of this assessment.