This is a plain-language summary for our beta. It is not legal advice. BAKD AI is a pre-launch, private-beta product, so this policy will evolve as the product matures.
1. Who we are
BAKD AI ("BAKD", "we", "us") operates the website at bakd.my and the private-beta workspace behind it. This policy explains what we collect, how we use it, and the choices you have. If anything here is unclear, reach us at hello@bakd.my.
2. Information we collect
We try to collect only what we need to run the service and talk to you.
2.1 Waitlist and contact form
When you join the waitlist or send us a message, we collect the details you provide: name, work email, company, and the contents of your message. We use this to reply, qualify you for the beta, and tell you when we open up.
2.2 Beta account and workspace content
If you receive a beta invite, we store basic account info (name, email, role, the organisation you belong to) and whatever content you choose to put into your workspace, including documents you upload to your knowledge base, prompts, drafts, approvals, and audit-log entries generated as your AI workers run.
2.3 Usage and technical data
When analytics are enabled, we record basic, mostly aggregated information: pages visited, referrer, approximate region, browser, and timestamps. We use this to understand which parts of the product help and which need work. We do not build advertising profiles.
3. How we use information
- Respond to your inquiries and run the waitlist or beta program.
- Operate, secure, and improve the BAKD product.
- Diagnose bugs, monitor abuse, and keep workspaces isolated.
- Send transactional messages tied to your account (invites, security notices, important service updates). We will not add you to marketing lists you did not ask for.
4. Knowledge base and AI processing
BAKD lets you upload documents and connect sources to a private knowledge base. Your AI workers retrieve answers from that knowledge base to draft replies, fill forms, and complete tasks.
- Scope. Content you upload is used to answer questions and run workflows inside your own workspace. It is not shared with other customers.
- Model training. By default we do not use customer-uploaded data to train foundation models, and we do not sell it for model training. If we ever introduce an opt-in option for improving models from your content, it will be off by default and clearly labelled.
- Third-party model providers. Some AI features call third-party providers (for example through AWS Bedrock). Those calls are processed under the provider's enterprise terms, which generally prohibit using customer prompts and outputs to train their public models.
- Human-in-the-loop. Sensitive actions wait for a person to review and approve. AI outputs may be inaccurate; please treat them as drafts.
5. Where data is stored and how we protect it
BAKD runs on Amazon Web Services. Workspace content and account data are stored in managed AWS services such as S3, RDS or Aurora, and Cognito, with encryption in transit (TLS) and at rest using AWS-managed keys. We follow least-privilege access inside the team, keep audit logs of admin actions, and review our security posture regularly.
We aim to align with widely accepted privacy practices and to give you the kind of rights you would expect under regimes like the GDPR and Malaysia's PDPA. We do not claim SOC 2, ISO 27001, HIPAA, or any other formal certification at this stage; when we achieve one, we will say so plainly.
6. Sharing of data
We do not sell personal data. We share data only in limited cases:
- Infrastructure sub-processors we need to run the service, such as AWS (hosting, storage, AI model access) and email or analytics vendors when used.
- People you choose to involve, for example teammates you invite into your workspace or integrations you connect.
- Legal reasons, when we are required by law or to protect ourselves, our users, or the public from serious harm.
- Business changes, if BAKD ever merges with or is acquired by another company. We would notify you before your data moves.
7. Retention and deletion
We keep data only as long as we need it. Waitlist entries are kept until launch or until you ask us to remove them. Beta workspace content is kept while your account is active. You can ask us to delete specific documents or your entire workspace at any time by emailing hello@bakd.my. Backups roll off on their normal schedule after deletion.
8. Your rights
You can ask us to access, correct, export, or delete the personal data we hold about you, and to stop using it for a specific purpose. We will respond in a reasonable timeframe and may need to verify your identity first. Send requests to hello@bakd.my.
9. Cookies
We use a small number of essential cookies to keep you signed in and to remember your theme preference. If we enable analytics or other optional cookies, we will ask first and let you change your mind.
10. Children
BAKD is a business tool and is not intended for people under 16. We do not knowingly collect data from children.
11. International transfers
We are based in Malaysia and our infrastructure runs in AWS regions we choose for performance and compliance. If your data is processed outside your country, we rely on the safeguards built into our providers' agreements.
12. Changes to this policy
We may update this policy as the product changes. The date at the top reflects the last change. If a change materially affects how we use your data, we will tell beta users directly.
13. Contact
Privacy and data questions go to hello@bakd.my. We read every message.

