Skip to main content

Legal

Privacy Policy

Last updated: August 19, 2026

Draft — not legal advice

This is a first draft written to accurately describe what Revisr actually collects and does with it today. It has not been reviewed by a lawyer and shouldn’t be relied on as your final privacy policy until one has reviewed it — especially the account-deletion section, flagged below.

This explains what Revisr collects, why, and what happens to it. Written in plain language on purpose — if anything is unclear, email us (see Contact below). Revisr is a U.S.-focused service, and this policy is written with U.S. law in mind.

What we collect

  • Account info— when you sign in with Google, we receive your name, email address, and profile info from Google’s OAuth flow. We never see your Google password.
  • Uploaded course material — the notes, slides, and files you provide to generate a study tool.
  • Generated tools — the study tools Revisr builds for you, saved to your library so you can come back to them.
  • Payment data — handled entirely by Stripe. We receive confirmation that a payment succeeded and how many credits it bought — we never see or store your card number, expiration date, or CVC.

Uploaded files: a real privacy detail

When you upload a file, it’s written directly to private storage (Vercel Blob) — not to our own servers. We fetch it once, server-side, to extract its text, and delete the file from storage immediately after — typically within seconds, before extraction even finishes. The original file doesn’t sit around in storage; only the extracted text is used to build your study tool and, if generation succeeds, gets saved with it.

Where your data lives

  • Supabase — your account info, credit balance, and generated study tools are stored in our Supabase (Postgres) database, access-controlled so only you can read your own rows.
  • Vercel Blob — holds uploaded files only briefly, as described above.
  • Anthropic— your notes and extracted text are sent to Anthropic’s API to generate your study tool’s content. Under Anthropic’s commercial API terms, this data isn’t used to train their models.
  • Stripe — handles checkout and stores your payment method on their own PCI-compliant infrastructure, not ours.

Cookies and sessions

Revisr uses one essential cookie to keep you signed in (issued by Supabase Auth) — it’s required for the app to work and isn’t used for tracking or advertising. Revisr doesn’t currently use analytics or advertising cookies of any kind.

How long we keep it

Uploaded files: deleted immediately after text extraction, as above. Your generated study tools, extracted text, and account info are kept until you delete them individually, or delete your account entirely.

Deleting your account and data

You can delete individual study tools yourself from your Library at any time.

To delete your account and all associated data, use the “Delete your account” option in Settings — it’s immediate and self-serve, no need to contact us. If you’re unable to get into your account, email legal@getrevisr.com from your account’s email address and we’ll handle it manually.

Children's privacy

Revisr requires users to be at least 16 (see the Terms of Service), and isn’t directed at children under 13. We don’t knowingly collect data from anyone under 13.

Security

We use reasonable technical measures to protect your data, including row-level access controls in our database so one user can never read another user’s data. No method of storage or transmission is 100% secure, and we can’t guarantee absolute security.

Changes to this policy

We may update this policy as Revisr changes. If we make a material change, we’ll update the date at the top of this page.

Contact

Questions about this policy, or a request about your data: legal@getrevisr.com