1. Who is responsible
Revinho is responsible for personal information processed through the service. Questions or privacy requests can be sent to support@revinho.com.
2. Information we process
- Account information, such as your name, email address, authentication records, and workspace role.
- Integration information and normalized business metrics imported from services you choose to connect, including Google Analytics 4, Stripe, and Google Search Console.
- Product usage, device, diagnostic, and security information needed to operate and protect the service.
- Messages and feedback you send to us.
We do not add a Revinho tracking script to your website. Connected provider credentials are treated as secrets and are not included in product analytics or application logs.
We use Google Analytics on Revinho’s own website and application to understand visits and the basic journey from viewing the site to creating an account. This is separate from any analytics data you connect from your own business.
3. How we use information
- Provide, maintain, secure, and improve the service.
- Import and normalize the business data you request.
- Generate deterministic metrics, comparisons, and evidence-backed insights.
- Authenticate users, enforce workspace permissions, and prevent abuse.
- Respond to support requests and communicate important service updates.
- Meet legal obligations and establish or defend legal claims.
Depending on the context and your location, these activities rely on performing our contract, legitimate interests, consent, or compliance with law.
4. Google user data
Revinho accesses Google user data only after you choose to connect Google and grant permission through Google OAuth. If you use Google to sign in, we receive basic account information needed to authenticate you, such as your name, email address, profile image, and Google account identifier.
For business-data integrations, Revinho requests only these read-only permissions:
- Google Analytics read-only access, used to list the Analytics accounts and GA4 properties available to you and import reporting data such as acquisition, traffic, engagement, page, and key-event metrics.
- Google Search Console read-only access, used to list the properties available to you and import search performance data such as queries, pages, clicks, impressions, click-through rate, and average position.
We also receive and store the account or property identifiers you select and OAuth access and refresh tokens needed to perform the imports and scheduled refreshes you request. Revinho cannot edit your Analytics or Search Console properties through these permissions.
We use the imported Google data to provide the Revinho features visible to you: normalized reporting, comparisons, funnels, page and acquisition analysis, and deterministic, evidence-backed insights. We do not use Google user data for targeted or personalized advertising, retargeting, data brokerage or resale, creditworthiness or lending decisions, or to train general-purpose artificial intelligence or machine learning models.
OAuth credentials are encrypted at rest, Google API requests use HTTPS, access is restricted by workspace membership and role, and credentials are excluded from product analytics and application logs. Normalized Google data is stored in Revinho's workspace-scoped database for as long as the integration remains connected and the workspace data is retained.
We do not sell Google user data. We disclose it only to authorized members of your workspace; to systems you explicitly authorize to use Revinho; to contracted service providers that host, secure, or operate the service on our behalf; or when disclosure is required for legal or security reasons. Those disclosures are limited to what is necessary for the stated purpose.
Revinho's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy. This includes its Limited Use requirements.
5. Revinho Lens Chrome extension
Revinho Lens processes the URL of a page only when you explicitly click the extension toolbar action. The URL is checked against exact domains authorized for a workspace and is used only to retrieve the matching analytics already imported into Revinho. Lens does not collect browsing history or analyze arbitrary pages in the background.
The extension may read a bounded snapshot of the current page's title, headings, visible text, call-to-action labels, and structured-data types to perform an on-device query/content check. In the current version, this page content remains inside the extension, is not transmitted to or stored by Revinho, and is discarded after the analysis. Only an authorized observed URL and, when valid, an authorized canonical URL are sent to Revinho.
Lens uses a dedicated, revocable, read-only Revinho session. It does not receive Google or Stripe tokens, read page cookies or form values, or make direct provider API requests. You can revoke the extension session by signing out of Lens. Revinho's use of information through Lens follows this policy and the Chrome Web Store Limited Use requirements.
6. Providers and sharing
We share information only with service providers that help us run Revinho, when you direct us to connect a third-party service, during a legitimate corporate transaction, or when required by law. Providers may include hosting, database, authentication, email, monitoring, and support services. We do not sell personal information or connected business data.
Google, Stripe, and other connected services process information under their own terms and privacy policies. The Google-specific limits above apply in addition to this general description.
7. Retention, disconnection, and deletion
We retain information for as long as needed to provide the service, meet legal obligations, resolve disputes, and maintain security. A workspace admin can disconnect Google Analytics or Search Console in Settings → Export & privacy. Disconnecting stops new access and deletes the integration's credentials, selected property, imported Google data, and sync history from the active service. A workspace admin can also delete the workspace and its associated data there.
You can separately revoke Revinho's access in your Google Account permissions. Revoking access stops future access but does not itself delete data already imported into Revinho; use Revinho's disconnect or workspace deletion control, or email support@revinho.com, to request deletion. Limited records may remain temporarily in backups or where retention is legally required, after which they are deleted or de-identified in accordance with our retention practices.
8. Your choices and rights
Depending on where you live, you may have rights to access, correct, delete, restrict, or export personal information, or object to certain processing. You may also withdraw consent where processing relies on it. Email support@revinho.com; we may need to verify your identity.
9. International transfers and updates
Revinho and its providers may process information outside your country. Where required, we use appropriate transfer safeguards. We may update this policy as the product or law changes and will post the revised effective date here.