Reva is an AI-powered companion application, a product of Celesyn Labs ("we", "us", "our"). This Privacy Policy explains how we collect, use, store, and protect your personal information when you use Reva.
For privacy-related enquiries, contact us at: celesynlabs@gmail.com
We collect only what is necessary to operate the service:
We use your data to:
We do not use your data for advertising, profiling for third-party marketing, or sale to any third party.
For users in the European Economic Area (EEA) and UK, we process your data under the following legal bases:
We use the following third-party services to operate Reva. Each acts as a data processor under our instructions:
We do not sell your data to any of these parties or to anyone else.
We do not intentionally permanently store full conversation histories on our own servers beyond what is technically necessary to provide the service. Temporary processing or retention may occur through our infrastructure providers for security, abuse prevention, debugging, or operational purposes in accordance with their respective policies.
Message count data (a number, not message content) is stored in Supabase to enforce usage limits. This is not a record of your conversations.
Reva is operated from India. By using Reva, you acknowledge that your data may be transferred to and processed in countries outside your own, including India, the United States, and the EU, where our infrastructure providers are hosted.
For EEA/UK users: where data is transferred outside these regions, we rely on Standard Contractual Clauses (SCCs) or equivalent mechanisms as required by GDPR.
We retain your data for as long as your account is active or as needed to provide the service.
After account deletion, residual data may persist in backups for up to 30 days before permanent removal.
Depending on your location, you may have the following rights regarding your personal data:
To exercise any of these rights, contact us at celesynlabs@gmail.com. We will respond within the timeframe required by applicable law (typically 30 days, with extensions permitted where allowed by law). We may ask you to verify your identity before processing the request.
EEA/UK users also have the right to lodge a complaint with your local data protection authority.
You may request deletion of your Reva account via the app settings or by contacting us at celesynlabs@gmail.com. Upon verified request, we will delete your account and associated data within 30 days, subject to retention obligations under applicable law (such as payment records required by financial regulations).
After deletion, residual copies may remain in encrypted backups for up to 30 days before permanent removal.
Reva is intended for users aged 17 and above. We do not knowingly collect personal data from anyone under 17. If we become aware that a user under 17 has provided personal data, we will delete that data and terminate the account promptly.
Reva uses minimal cookies and local storage strictly necessary to operate the service — for authentication session management and preference storage. We do not use third-party advertising cookies or cross-site tracking technologies.
Push notifications: if you grant permission, Reva may send push notifications to your device. We collect and store a device token solely for the purpose of delivering these notifications. You can revoke notification permission at any time via your device settings. Device tokens are not shared with third parties for advertising or tracking purposes.
If we introduce optional analytics in the future, we will update this policy and seek consent where required by law.
Reva uses automated AI systems to generate all responses. No human reviews your conversations in real-time. Outputs are generated algorithmically and may be inaccurate, incomplete, or contextually inappropriate. You should not rely on Reva's responses as authoritative without independent verification.
We do not use your data for automated decision-making that produces legal or similarly significant effects on you.
We implement reasonable technical and organisational security measures to protect your data, including encrypted connections (HTTPS/TLS), server-side API key storage, and access controls via Supabase authentication. No system is completely secure and we cannot guarantee absolute security of your data.
In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify affected users and relevant authorities as required by applicable law.
We may update this Privacy Policy from time to time. Material changes will be communicated via email or a prominent notice within the app prior to taking effect. The "last updated" date at the top of this page reflects the most recent version. Your continued use of Reva after changes constitutes acceptance of the updated policy.