Privacy Policy
How Revvify handles your data. We are a data controller for your account and a processor for the content you manage through the platform.
What we store
Account details (name, email), workspace and brand configuration, the content you create, and connection metadata. Third-party access tokens and BYO API keys are envelope-encrypted (AES-256-GCM) with a master key held outside the database, decrypted only inside workers at use time, and never returned to the client or logged.
How we use it
To operate the service you asked for: scheduling and publishing content, running the Radar, sending email you initiate, and producing analytics. We do not sell your data.
AI processing
When you use the platform-credits tier, prompts are sent to the AI provider you selected. With BYO keys or MCP, inference runs on your own credentials/subscription. Provider terms apply to that processing.
Your rights (GDPR)
You can export your data or delete your account at any time in Settings → Security. Deletion is a cascade: your account and any workspace where you are the sole member are removed, along with their data, and connected MCP tokens are revoked.
Contact
Questions about privacy: privacy@revvify.io.