Data we collect
Account data: email address, organisation name and team membership.
Connection credentials: the API keys and access tokens you enter for connected sources.
Audit data: the findings produced by an audit — for example a duplicate subscription ID, an abandoned checkout total or an ad campaign spend figure — together with the estimated dollar impact.
Usage data: basic technical logs needed to operate and secure the service.
How credentials are protected
Credentials are encrypted with AES-256-GCM before they are written to the database and are decrypted only server-side, at the moment an audit or an approved fix runs. They are never exposed to the browser and never returned by the API.
How we use your data
To run audits, calculate leak estimates, generate AI summaries of findings, execute fixes you approve, send the notifications you configure, and provide support.
We do not sell your data and do not use your connected-account data to advertise to you.
Processors we rely on
Hosting, database, authentication and storage run on our cloud backend provider. Payments and subscription management run through our payment provider. AI summaries are generated through our AI gateway provider. Notifications are delivered to the channels you connect, such as email or Slack.
The providers your own connections point at — for example your billing, commerce, analytics or ad platform — remain controlled by you under their own privacy terms.
Retention and deletion
Findings and audit history stay in your organisation until you delete them. Disconnecting a source removes its stored credentials. Deleting your organisation removes its findings, connections and members. Deletion requests can also be sent to support and are actioned within 30 days.
Your rights
Depending on where you live, you may have rights to access, correct, export or delete your personal data, and to object to certain processing. Write to us and we will respond.
Cookies
We use cookies and local storage that are necessary to keep you signed in and to remember interface preferences. No advertising trackers are used.
Contact
Privacy questions and data requests: support@revenue-leak.biz.