Our Privacy Promise

Secure Code Processing
Your code is processed securely and not stored permanently
No Code Sharing
We never share or sell your code or personal data
GDPR Compliant
Full compliance with global privacy regulations

Privacy Policy

Last Updated: August 28, 2025

At RevuX ("we," "our," or "us"), we are committed to protecting your privacy and personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered code review platform and services.

1. Information We Collect

1.1 Information You Provide

  • Account Information: When you connect your GitHub account, we collect your GitHub username, profile information, and email address
  • Repository Data: We access metadata about your repositories, commit information, and pull request data as needed for code review services
  • Configuration Data: Your review preferences, template settings, and service configuration choices

1.2 Information We Collect Automatically

  • Usage Data: Information about how you use our Service, including features accessed, review frequency, and interaction patterns
  • Technical Data: IP addresses, browser type, operating system, and device identifiers
  • Log Data: Server logs, error reports, and performance metrics

1.3 Code and Repository Information

  • Code Diffs: Changes in your code that are analyzed by our AI system
  • Analysis Results: The output of our AI code review, including identified issues and suggestions
  • Metadata: File names, commit messages, branch names, and repository structure information

2. How We Use Your Information

We use the information we collect for the following purposes:

  • Provide Our Service: To analyze your code, generate reviews, and provide AI-powered recommendations
  • Improve Our Service: To enhance our AI models, develop new features, and improve user experience
  • Account Management: To maintain your account, provide customer support, and communicate with you
  • Security: To protect our Service, prevent fraud, and ensure system security
  • Legal Compliance: To comply with applicable laws and legal obligations

3. How We Share Your Information

3.1 We Do Not Sell Your Information

We do not sell, rent, or trade your personal information to third parties for marketing purposes.

3.2 Limited Sharing

We may share your information in the following circumstances:

  • Service Providers: With trusted third-party vendors who help us operate our Service (cloud hosting, analytics, customer support)
  • Legal Requirements: When required by law, legal process, or government request
  • Business Transfers: In connection with a merger, acquisition, or sale of assets
  • Safety and Security: To protect the rights, property, or safety of RevuX, our users, or others

4. Code and Repository Data Handling

4.1 Code Processing

Your code is processed by our AI systems for analysis purposes. We implement the following safeguards:

  • Code is processed in secure, encrypted environments
  • We do not store complete source code files permanently
  • Code analysis is performed in isolated systems
  • Access to code data is restricted to authorized personnel only

4.2 Data Retention

  • Analysis Results: Retained for service improvement and historical reference
  • Usage Metadata: Retained for analytics and service optimization
  • Account Data: Retained until you delete your account

5. Data Security

We implement industry-standard security measures to protect your information:

🔒 Encryption

Data is encrypted in transit and at rest using strong encryption protocols

🛡️ Access Controls

Strict access controls and authentication requirements for our systems

👁️ Monitoring

Continuous monitoring for security threats and vulnerabilities

📋 Regular Audits

Regular security assessments and compliance audits

6. Your Rights and Choices

6.1 Access and Control

You have the following rights regarding your personal information:

  • Access: Request access to your personal information we hold
  • Correction: Request correction of inaccurate or incomplete information
  • Deletion: Request deletion of your personal information and account
  • Data Portability: Request a copy of your data in a portable format

6.2 Account Deletion

You can delete your account at any time through your account settings. Upon deletion:

  • Your account and profile information will be permanently deleted
  • Analysis results associated with your account will be anonymized
  • Some data may be retained for legal or security purposes as required by law

7. GitHub Integration and Permissions

Our Service integrates with GitHub through their official GitHub App framework. We request only the minimum permissions necessary:

  • Repository Access: Read access to code and repository metadata for analysis
  • User Information: Basic profile information for account creation
  • Webhooks: To receive notifications about code changes for real-time analysis

You can revoke these permissions at any time through your GitHub account settings.

8. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place for such transfers in compliance with applicable data protection laws.

9. Children's Privacy

Our Service is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If we learn that we have collected information from a child under 13, we will delete such information promptly.

10. Cookies and Tracking Technologies

We use cookies and similar technologies to:

  • Maintain your session and authentication
  • Remember your preferences and settings
  • Analyze usage patterns and improve our Service
  • Provide personalized experiences

You can control cookie preferences through your browser settings.

11. Third-Party Services

Our Service may contain links to third-party websites or integrate with third-party services. This Privacy Policy does not apply to third-party services, and we encourage you to review their privacy policies.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes by:

  • Posting the updated policy on our website
  • Updating the "Last Updated" date
  • Sending email notifications for material changes

Your continued use of our Service after such changes constitutes acceptance of the updated Privacy Policy.

13. Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us:

  • Email: hectocornclub@gmail.com

14. Regional Privacy Rights

14.1 European Union (GDPR)

If you are located in the European Union, you have additional rights under the General Data Protection Regulation (GDPR), including the right to lodge a complaint with a supervisory authority.

14.2 California (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA), including the right to request information about how we collect and use your personal information.

14.3 Other Jurisdictions

We comply with applicable data protection laws in all jurisdictions where we operate and will honor your rights as provided by local law.

15. AI and Machine Learning

Our Service uses artificial intelligence and machine learning technologies. Here's how we handle your data in this context:

  • Model Training: We may use anonymized and aggregated data to improve our AI models
  • No Personal Code Storage: Your complete source code is not used for training our models
  • Pattern Analysis: We analyze patterns in code quality and common issues to enhance recommendations
  • Privacy-Preserving Techniques: We employ techniques like differential privacy where applicable

16. Data Retention and Deletion

Data TypeRetention PeriodPurpose
Account InformationUntil account deletionService provision
Code Analysis Results2 years or until deletion requestHistorical reference, service improvement
Usage Logs1 yearSecurity, analytics
Code Diffs (temporary)24-48 hoursAI analysis processing

17. Security Incident Response

In the event of a security incident that may affect your personal information:

  • We will investigate and contain the incident promptly
  • We will notify affected users within 72 hours when required by law
  • We will provide clear information about what happened and what actions we're taking
  • We will implement additional safeguards to prevent future incidents

18. Analytics and Performance Monitoring

We use analytics tools to understand how our Service is used and to improve performance:

  • Usage Analytics: Aggregated data about feature usage and user flows
  • Performance Monitoring: System performance metrics and error tracking
  • A/B Testing: Testing different features to improve user experience

All analytics data is aggregated and does not include personal code content.

19. Compliance and Certifications

🌍 Global Compliance

  • GDPR (European Union)
  • CCPA (California)
  • PIPEDA (Canada)
  • LGPD (Brazil)

🔒 Security Standards

  • ISO 27001 framework
  • SOC 2 Type II compliance
  • OWASP security guidelines
  • Regular penetration testing

20. Data Subject Rights Requests

To exercise your privacy rights, please contact us at hectocornclub@gmail.com with:

  • Your full name and email address associated with your account
  • Description of the request (access, deletion, correction, etc.)
  • Verification of your identity (we may request additional verification)
  • Specific information you're requesting or asking us to delete

Response Time: We will respond to your request within 30 days (or as required by applicable law).

21. Automated Decision Making

Our AI-powered code review involves automated analysis. However:

  • Our AI provides recommendations and suggestions, not binding decisions
  • You retain full control over how to use our analysis results
  • Human oversight is available for complex or disputed analyses
  • You can request human review of any automated analysis

22. Business Continuity and Data Recovery

We maintain robust backup and disaster recovery procedures:

  • Regular encrypted backups of account and analysis data
  • Geographic distribution of backup data
  • Tested disaster recovery procedures
  • Business continuity planning for service availability

23. Transparency and Accountability

We believe in transparency about our data practices:

  • Annual transparency reports on data requests and security incidents
  • Regular privacy impact assessments
  • Open communication about privacy policy changes
  • Accessible privacy controls in your account dashboard

You can request a copy of our latest transparency report by contacting hectocornclub@gmail.com.

24. Effective Date and Acknowledgment

This Privacy Policy is effective as of the date listed at the top of this document. By using RevuX, you acknowledge that you have read and understood this Privacy Policy and agree to the collection, use, and disclosure of your information as described herein.

For the most current version of this Privacy Policy, please visit this page regularly or check the "Last Updated" date at the top.