Revova

Privacy Policy

Last updated: June 2025

1. Information We Collect

When you use Revova, we collect:

  • Account data: your email address and business name when you sign up.
  • Stripe integration data: a Stripe access token (OAuth), your customers' names and email addresses, and failed payment amounts — to power our recovery service.
  • Email logs: which recovery emails were sent, opened, and clicked, to measure effectiveness.
  • Usage data: page views and feature usage collected via server logs.

2. How We Use Your Data

  • To send AI-generated payment recovery emails to your customers on your behalf.
  • To display analytics (recovery rate, revenue recovered) on your dashboard.
  • To operate, maintain, and improve the Revova service.
  • To send you transactional emails (recovery notifications, billing receipts).

We never sell your data or your customers' data to third parties.

3. Data Storage & Security

Your data is stored in Supabase (hosted on AWS) with row-level security. All data is encrypted at rest and in transit (TLS 1.2+). Stripe credentials are stored using Stripe OAuth and we never store raw secret keys.

4. Third-Party Services

Revova integrates with:

  • Stripe — to access your payment data (see Stripe Privacy Policy).
  • Resend — to deliver emails (your customers' email addresses are shared with Resend for delivery).
  • Anthropic / Google — AI providers used to generate email content. We pass only non-identifiable context (failure reason, general industry) — no customer PII.
  • Google Analytics & Google Ads — used, only with your consent, to measure website traffic and advertising performance (see Cookies & Consent below). You can opt out via our cookie banner.
  • Meta (Facebook Pixel) — used, only with your consent, to measure and optimize our Facebook and Instagram ads. For visitors in the EEA and UK, the Meta Pixel does not load or collect any data until you accept it.

5. Data Retention

We retain your account data for as long as your account is active. Failed payment records and email logs are retained for 12 months. You may request deletion at any time by contacting us.

6. Your Rights

You may request access to, correction of, or deletion of your personal data by emailing support@revova.io. For EU/EEA users, you have rights under GDPR including access, portability, and erasure.

7. Cookies & Consent

Revova always uses essential cookies for authentication (a Supabase session cookie) — these are required for the app to work. With your consent, we also use analytics and advertising cookies, including Google (Analytics and Ads) and Meta (Facebook Pixel), to measure and improve our marketing.

For visitors in the EEA, UK and Switzerland we implement Google Consent Mode v2, and the Meta Pixel does not load until you opt in: no analytics or advertising cookies are set until you accept them in our cookie banner, and you can reject them at any time. Non-essential cookies default to "denied".

8. Changes to This Policy

We may update this policy and will notify you by email or in-app notification if we make material changes.

9. Contact

Questions? Email us at support@revova.io.