RevoFiREVOFI.AI
Legal

Privacy Policy

Effective date: February 18, 2026. Last updated: August 27, 2026. This policy describes how RevoFi collects, uses, stores, shares, and protects information across the Raven ecosystem.

Information We Collect

  • Account and organization details needed to provide services.
  • Device telemetry, service usage, and operational metrics for platform reliability.
  • Billing and transaction metadata for RDC, subscription, and payout operations.
  • AI session data, including prompts, generated responses, and related session metadata, when you use Raven AI features.

How We Use Information

  • To deliver, secure, and improve RevoFi cloud, device, communications, and user-facing AI services.
  • To process support requests, account administration, billing, and compliance obligations.
  • To provide service analytics, fraud prevention, security monitoring, and incident response.

Google Workspace and Gmail Data

Connecting Gmail to Raven Business is optional and requires your affirmative authorization through Google OAuth. An organization administrator initiates the connection from Raven Business Settings, reviews the requested Google permissions, and chooses an initial synchronization range before email is imported.

Data Raven accesses

When you connect Gmail, Raven may access your Gmail account address and profile, messages in the Inbox, Sent, and Drafts folders within the synchronization range you select, message bodies, snippets, headers, recipients, timestamps, thread identifiers, labels, read and starred status, drafts, and attachments. Raven does not request permission to immediately and permanently delete Gmail messages or threads while bypassing Trash.

How Gmail data is used

Raven uses Gmail data only to provide visible, user-facing Raven Business email and productivity features: synchronizing and displaying email; searching and reviewing messages; retrieving attachments; managing read, starred, and label state; creating, updating, sending, and deleting drafts; and allowing authorized users to compose, reply, forward, attach files, and send email from the connected account. Imported messages may also be linked to customer relationship management records at the user's direction.

Optional AI email features

If an authorized user separately enables and configures AI email features, selected message content may be processed to classify and summarize email, extract entities and action items, link relevant business records, and prepare suggested reply drafts. Processing may occur through the AI model and provider configured for the assigned Raven agent. These features and their results are visible in Raven Business and are subject to the account's configured automation and approval controls. Google Workspace data is not used to create, train, or improve a generalized or non-personalized artificial intelligence or machine learning model.

Storage, security, and sharing

Raven stores synchronized Gmail content and derived email results in the customer's isolated Raven Business environment so the email features remain available between sessions. OAuth access and refresh tokens are encrypted at rest. Google user data is encrypted in transit and protected at rest using access controls, tenant isolation, monitoring, and other security safeguards. RevoFi does not sell Google user data, use it for advertising, transfer it to data brokers or information resellers, or use it to determine creditworthiness or for lending. Google user data is shared only with service providers when necessary to deliver the user-authorized, visible features described above, for security, to comply with applicable law, or with the user's explicit consent. RevoFi personnel do not read Gmail content except with the user's explicit consent for specific support, when necessary for security or abuse investigation, or when required by law.

Managing access and deleting data

An authorized organization administrator can stop future Gmail access by disconnecting the Gmail account in Raven Business. Disconnecting removes Raven's stored OAuth credentials and synchronized data associated with that email-account connection from the active service, subject to limited retention in security records, legal holds, and time-limited backups. You can also revoke Raven's access from your Google Account's third-party connections page. Revoking access at Google stops future API access but does not itself send Raven a request to delete data already imported; use Raven's disconnect control or contact us to request deletion. You may request access to or deletion of eligible Google user data by emailing support@revofi.ai.

RevoFi's use and transfer of information received from Google Workspace APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Data Sharing

  • We do not sell personal information.
  • Data may be shared with service providers that process it on our behalf under confidentiality, security, and purpose-limitation obligations.
  • We may disclose data when required by law or when reasonably necessary to protect platform integrity, security, and user safety.

Data Security and Retention

  • RevoFi uses encryption, access controls, tenant isolation, monitoring, and audit logging to protect customer data.
  • We retain data only as long as needed to provide the Service and satisfy contractual, security, backup, and legal obligations.
  • Deletion from active systems may not immediately remove copies in time-limited backups or records retained for legal and security purposes.

Your Rights and Contact

  • You may request access, correction, or deletion of eligible personal data.
  • You may opt out of non-essential communications at any time.
  • Privacy and Google user-data requests can be submitted to support@revofi.ai.