Privacy Policy

Last updated: December 28, 2025

1. Introduction

Revizly is committed to protecting the confidentiality and security of your personal data. This policy explains how we collect, use, and protect your information in accordance with the General Data Protection Regulation (GDPR).

2. Data Controller

The data controller for personal data is Revizly.

For any questions regarding your personal data, you can contact us via our contact page.

3. Data Collected

3.1 Registration Data

  • Email address
  • First name (optional)
  • Password (encrypted)

3.2 Usage Data

  • Uploaded course content
  • Generated summaries, sheets and quizzes
  • Usage history (number of generations, dates)
  • Navigation data (IP address, browser, pages visited)

3.3 Payment Data

  • Billing information (processed by LemonSqueezy)
  • Transaction history

4. Processing Purposes

We use your personal data to:

  • Create and manage your user account
  • Provide educational content generation services
  • Manage your subscriptions and payments
  • Improve our services and develop new features
  • Send you service-related communications (updates, notifications)
  • Ensure security and prevent fraud
  • Comply with our legal obligations

5. Legal Basis for Processing

We process your data based on:

  • Contract execution : to provide the requested services
  • Consent : for marketing communications (if you agreed)
  • Legitimate interest : to improve our services and ensure security
  • Legal obligation : to comply with tax and accounting obligations

6. Data Sharing

6.1 No Data Selling

We never sell your personal data to third parties.

6.2 Service Providers

We only share your data with the following providers:

  • Supabase : Database hosting and authentication
  • OpenAI : Course processing for content generation (data is not used to train their models)
  • LemonSqueezy : Payment processing and billing
  • Vercel : Application hosting

These providers are bound by confidentiality obligations and can only use your data for the purposes for which we provide it to them.

7. Data Retention

  • Account data : retained as long as your account is active
  • Generated content : retained for the duration of your subscription + 6 months
  • Billing data : retained 10 years (legal requirement)
  • Connection logs : retained maximum 12 months

After account deletion, your data is permanently erased within 30 days, unless legally required to be retained.

8. Data Security

We implement appropriate security measures:

  • Data encryption in transit (HTTPS/TLS)
  • Password encryption (bcrypt)
  • Secure authentication with Supabase
  • Regular backups
  • Restricted access to personal data
  • Intrusion monitoring and detection

9. Your Rights

Under GDPR, you have the following rights:

  • Right of access : obtain a copy of your personal data
  • Right to rectification : correct inaccurate data
  • Right to erasure : delete your data ("right to be forgotten")
  • Right to restriction : restrict the processing of your data
  • Right to portability : receive your data in a structured format
  • Right to object : object to the processing of your data
  • Right to withdraw consent : at any time

To exercise these rights, contact us via our contact page. We will respond within one month.

10. Cookies

We use strictly necessary cookies to:

  • Maintain your login session
  • Ensure application security
  • Remember your preferences (language, theme)

We do not use advertising or third-party tracking cookies.

11. International Transfers

Your data may be transferred and stored outside the European Union, particularly in the United States (Vercel, OpenAI servers). These transfers are governed by appropriate safeguards (standard contractual clauses, Privacy Shield).

12. Minors

Our service is accessible to minors over 13 years old. For minors, we recommend parental consent before registration. Parents can exercise rights relating to their minor children's data.

13. Modifications

We may modify this privacy policy. In case of significant changes, we will inform you by email or via a notification on the service. The current version is always available on this page.

14. Complaints

If you believe your rights are not being respected, you can file a complaint with your local data protection authority.

15. Contact

For any questions regarding this privacy policy or your personal data, contact us via our contact page.

Privacy Policy - Revizly | Revizly