You decide who sees what.

Kong captures the customer conversations you connect: email, calendar, meetings, and CRM. That makes control over who sees them, what gets processed, and what leaves Kong non-negotiable. Not a feature. The foundation.

Access & permissions

Access that mirrors how your team works

Not everyone should see every conversation. Kong gives workspace admins and managers the controls to match how revenue teams are actually structured.

Team access

Shared meetings and customer context stay inside the workspace, so coaching and handoffs happen on the same conversations.

Privacy

Make a meeting private and it stays isolated. No one else on the team can see the recording, the transcript, or what was discussed. Only you can open it and work the analysis.

Manage access

Acme workspace

  • Sales teamView
  • Customer successEdit
  • RevOpsView

Visibility & privacy

What gets captured, and what stays private.

Recording and processing conversations only works if your team trusts the controls around them. Kong gives you a say over what's connected, what's shared, and what syncs out.

Control what's recorded

You choose which mailboxes, calendars, and meeting sources Kong connects to. Recording notices and consent workflows are built in.

Your workspace, your rules

You remain the data controller. Kong processes data on your instructions, for prep, follow-ups, and next actions.

Control what syncs to CRM

Kong can write summaries, fields, and tasks back to your CRM, but you decide how outputs are used.

For larger organisations

Built to pass procurement.

For organisations with their own security and compliance requirements, Kong Enterprise adds the agreements and support IT and legal teams expect.

Custom agreements

Enterprise customers get custom terms, integrations, and a dedicated success manager, built for procurement cycles.

EU data residency & DPA

EU-hosted by default with a DPA incorporated into every contract. Sub-processors and breach terms live in the Trust Center.

Procurement pack

  • Data Processing Agreement
  • Sub-processor list
  • Enterprise agreement

Built for Europe

Built with compliance as a top priority

Your data is hosted in Europe by default. Your sales cycle, long, multi-stakeholder, and procurement-aware, is the one we built for, not retrofitted from a US motion.

EUAI ACT

EU-hosted

Production workloads run in Google Cloud Frankfurt (europe-west3). Your data stays in the EU by default.

GDPR

GDPR-native

Built in Sweden with GDPR-aligned processing from day one. A DPA sits in every customer agreement.

ADATIER 2 - CASA VERIFIED

EU AI Act-aware

Transparency, accountability, and risk management for AI features, developed with the EU AI Act in mind.

Never used for training

Customer conversations are not used to train LLMs. Your data is processed to run the service. Full stop.

Looking for our policies and documents?

For the compliance layer (DPA, sub-processor list, security controls, and data-processing details), visit the Trust Center.

Trust Center

  • Data Processing Agreement
  • Sub-processor list
  • Incident response

Bring your security team to the demo.

Book a call with us. Bring the access, visibility, and privacy questions your reviewers will ask. We'll walk through every one.

Free trial