Our Privacy Promise
Privacy Policy
Last Updated: August 28, 2025
At RevuX ("we," "our," or "us"), we are committed to protecting your privacy and personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered code review platform and services.
1. Information We Collect
1.1 Information You Provide
- Account Information: When you connect your GitHub account, we collect your GitHub username, profile information, and email address
- Repository Data: We access metadata about your repositories, commit information, and pull request data as needed for code review services
- Configuration Data: Your review preferences, template settings, and service configuration choices
1.2 Information We Collect Automatically
- Usage Data: Information about how you use our Service, including features accessed, review frequency, and interaction patterns
- Technical Data: IP addresses, browser type, operating system, and device identifiers
- Log Data: Server logs, error reports, and performance metrics
1.3 Code and Repository Information
- Code Diffs: Changes in your code that are analyzed by our AI system
- Analysis Results: The output of our AI code review, including identified issues and suggestions
- Metadata: File names, commit messages, branch names, and repository structure information
2. How We Use Your Information
We use the information we collect for the following purposes:
- Provide Our Service: To analyze your code, generate reviews, and provide AI-powered recommendations
- Improve Our Service: To enhance our AI models, develop new features, and improve user experience
- Account Management: To maintain your account, provide customer support, and communicate with you
- Security: To protect our Service, prevent fraud, and ensure system security
- Legal Compliance: To comply with applicable laws and legal obligations
3. How We Share Your Information
3.1 We Do Not Sell Your Information
We do not sell, rent, or trade your personal information to third parties for marketing purposes.
3.2 Limited Sharing
We may share your information in the following circumstances:
- Service Providers: With trusted third-party vendors who help us operate our Service (cloud hosting, analytics, customer support)
- Legal Requirements: When required by law, legal process, or government request
- Business Transfers: In connection with a merger, acquisition, or sale of assets
- Safety and Security: To protect the rights, property, or safety of RevuX, our users, or others
4. Code and Repository Data Handling
4.1 Code Processing
Your code is processed by our AI systems for analysis purposes. We implement the following safeguards:
- Code is processed in secure, encrypted environments
- We do not store complete source code files permanently
- Code analysis is performed in isolated systems
- Access to code data is restricted to authorized personnel only
4.2 Data Retention
- Analysis Results: Retained for service improvement and historical reference
- Usage Metadata: Retained for analytics and service optimization
- Account Data: Retained until you delete your account
5. Data Security
We implement industry-standard security measures to protect your information:
🔒 Encryption
Data is encrypted in transit and at rest using strong encryption protocols
🛡️ Access Controls
Strict access controls and authentication requirements for our systems
👁️ Monitoring
Continuous monitoring for security threats and vulnerabilities
📋 Regular Audits
Regular security assessments and compliance audits
6. Your Rights and Choices
6.1 Access and Control
You have the following rights regarding your personal information:
- Access: Request access to your personal information we hold
- Correction: Request correction of inaccurate or incomplete information
- Deletion: Request deletion of your personal information and account
- Data Portability: Request a copy of your data in a portable format
6.2 Account Deletion
You can delete your account at any time through your account settings. Upon deletion:
- Your account and profile information will be permanently deleted
- Analysis results associated with your account will be anonymized
- Some data may be retained for legal or security purposes as required by law
7. GitHub Integration and Permissions
Our Service integrates with GitHub through their official GitHub App framework. We request only the minimum permissions necessary:
- Repository Access: Read access to code and repository metadata for analysis
- User Information: Basic profile information for account creation
- Webhooks: To receive notifications about code changes for real-time analysis
You can revoke these permissions at any time through your GitHub account settings.
8. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place for such transfers in compliance with applicable data protection laws.
9. Children's Privacy
Our Service is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If we learn that we have collected information from a child under 13, we will delete such information promptly.
10. Cookies and Tracking Technologies
We use cookies and similar technologies to:
- Maintain your session and authentication
- Remember your preferences and settings
- Analyze usage patterns and improve our Service
- Provide personalized experiences
You can control cookie preferences through your browser settings.
11. Third-Party Services
Our Service may contain links to third-party websites or integrate with third-party services. This Privacy Policy does not apply to third-party services, and we encourage you to review their privacy policies.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by:
- Posting the updated policy on our website
- Updating the "Last Updated" date
- Sending email notifications for material changes
Your continued use of our Service after such changes constitutes acceptance of the updated Privacy Policy.
13. Contact Us
If you have questions about this Privacy Policy or our data practices, please contact us:
- Email: hectocornclub@gmail.com
14. Regional Privacy Rights
14.1 European Union (GDPR)
If you are located in the European Union, you have additional rights under the General Data Protection Regulation (GDPR), including the right to lodge a complaint with a supervisory authority.
14.2 California (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA), including the right to request information about how we collect and use your personal information.
14.3 Other Jurisdictions
We comply with applicable data protection laws in all jurisdictions where we operate and will honor your rights as provided by local law.
15. AI and Machine Learning
Our Service uses artificial intelligence and machine learning technologies. Here's how we handle your data in this context:
- Model Training: We may use anonymized and aggregated data to improve our AI models
- No Personal Code Storage: Your complete source code is not used for training our models
- Pattern Analysis: We analyze patterns in code quality and common issues to enhance recommendations
- Privacy-Preserving Techniques: We employ techniques like differential privacy where applicable
16. Data Retention and Deletion
Data Type | Retention Period | Purpose |
---|---|---|
Account Information | Until account deletion | Service provision |
Code Analysis Results | 2 years or until deletion request | Historical reference, service improvement |
Usage Logs | 1 year | Security, analytics |
Code Diffs (temporary) | 24-48 hours | AI analysis processing |
17. Security Incident Response
In the event of a security incident that may affect your personal information:
- We will investigate and contain the incident promptly
- We will notify affected users within 72 hours when required by law
- We will provide clear information about what happened and what actions we're taking
- We will implement additional safeguards to prevent future incidents
18. Analytics and Performance Monitoring
We use analytics tools to understand how our Service is used and to improve performance:
- Usage Analytics: Aggregated data about feature usage and user flows
- Performance Monitoring: System performance metrics and error tracking
- A/B Testing: Testing different features to improve user experience
All analytics data is aggregated and does not include personal code content.
19. Compliance and Certifications
🌍 Global Compliance
- GDPR (European Union)
- CCPA (California)
- PIPEDA (Canada)
- LGPD (Brazil)
🔒 Security Standards
- ISO 27001 framework
- SOC 2 Type II compliance
- OWASP security guidelines
- Regular penetration testing
20. Data Subject Rights Requests
To exercise your privacy rights, please contact us at hectocornclub@gmail.com with:
- Your full name and email address associated with your account
- Description of the request (access, deletion, correction, etc.)
- Verification of your identity (we may request additional verification)
- Specific information you're requesting or asking us to delete
Response Time: We will respond to your request within 30 days (or as required by applicable law).
21. Automated Decision Making
Our AI-powered code review involves automated analysis. However:
- Our AI provides recommendations and suggestions, not binding decisions
- You retain full control over how to use our analysis results
- Human oversight is available for complex or disputed analyses
- You can request human review of any automated analysis
22. Business Continuity and Data Recovery
We maintain robust backup and disaster recovery procedures:
- Regular encrypted backups of account and analysis data
- Geographic distribution of backup data
- Tested disaster recovery procedures
- Business continuity planning for service availability
23. Transparency and Accountability
We believe in transparency about our data practices:
- Annual transparency reports on data requests and security incidents
- Regular privacy impact assessments
- Open communication about privacy policy changes
- Accessible privacy controls in your account dashboard
You can request a copy of our latest transparency report by contacting hectocornclub@gmail.com.
24. Effective Date and Acknowledgment
This Privacy Policy is effective as of the date listed at the top of this document. By using RevuX, you acknowledge that you have read and understood this Privacy Policy and agree to the collection, use, and disclosure of your information as described herein.
For the most current version of this Privacy Policy, please visit this page regularly or check the "Last Updated" date at the top.