Security FAQ's

 

 

REV a product developed by Pandera Systems respects your privacy and is committed to protecting it through our compliance with this Privacy Policy. This Privacy Policy describes the types of information we may collect from you when you visit www.revapp.io or use our mobile applications (collectively, the “Site”), how we use the information we collect, with whom we share it, how we protect it, and the choices we offer you regarding our collection and use of such information. Please read this Privacy Policy carefully. By using the Site, you agree to the terms of this Privacy Policy. If you do not agree with the terms of this Privacy Policy, please do not use the Site.

We may collect personal information from you, meaning information about you that can uniquely identify you, such as your name, address, and email address, if you choose to provide us with such information. We may also collect information about you that does not uniquely identify you if you choose to provide us with such information. Additionally, when you access the Site using a mobile device, we may collect and process real-time information about the location of your device.

When you visit the Site, we may also collect certain information by automated means, such as cookies. A “cookie” is a text file that websites send to a visitor’s computer or other Internet-connected device to uniquely identify the visitor’s browser or to store information or settings in the browser. We may also use third-party website analytics tools (such as Google Analytics) that collect information about user traffic on the Site. The information we may collect by automated means may include, but is not limited to, the following:

    • information about the devices you use to access the Internet (such as the IP address and the type of the device, operating system, and web browser);
    • dates, times and duration of visits to the Site (including whether you are a repeat or first time visitor); and
    • information on actions taken on the Site (such as page views and site navigation patterns).
Your web browser may let you choose your preference as to whether you want to allow websites to collect personal information over time about your online activities across different websites or online services. At this time our Site does not respond to the preferences you may have set in your web browser regarding the collection of your information, and our Site may continue to collect information in the manner described in this Privacy Policy.

We may use your information to:

  • provide you with services you request;
  • register you to receive emails or other information or materials you request;
  • understand your needs and interests and tailor the Site and our services accordingly;
  • respond to your questions and comments and provide customer support;
  • communicate with you about our services, offers, and promotions;
  • operate, evaluate, and improve our business and the services we offer;
  • enforce our Terms of Service and other agreements; and
  • comply with applicable legal requirements and industry standards.

In addition to the uses described above, we may use the information collected through cookies to identify and authenticate visitors. We may also combine the information we collect with publicly available information, and with that of other users of the Site. For example, we may use your and other users’ non-identifiable, aggregated data to improve the services we offer, for statistical analysis, and for other business purposes.

We also may use the information we obtain about you in other ways for which we provide specific notice at the time of collection.

You can review and change your personal information by logging into the Site and visiting your account profile page. Subject to applicable law, you may have certain additional rights to request access to and receive information about the personal information we maintain about you, update and correct inaccuracies in your personal information, and have your personal information blocked or deleted, as appropriate. For more information, please email us at support@revapp.io.

REV has reasonable security measures in place in an effort to protect your personal information from loss, misuse, and unauthorized access, disclosure, alteration, and destruction. Please note that no electronic transmission of information can be entirely secure. We cannot guarantee that the security measures we have in place will never be defeated or fail, or that such measures will always be sufficient or effective. Any transmission of information is at your own risk. We are not responsible for circumvention of any Site privacy settings or our security measures.

REV is based in and operates the Site out of the United States. When we obtain personal information about you, we may process such information outside of the country in which you are located, including in the United States. The countries in which we process your information may not have the same data protection laws as the country in which you are located. We will protect your information as described in this Privacy Policy.

The Site is not directed to, and REV does not knowingly collect or solicit personal information from, children under the age of 13. If we learn we have collected or received personal information from a child under the age of 13, we will delete that information. If you believe we might have any information from or about a child under the age of 13, please contact us at support@revapp.io.

REV reserves the right to update or change this Privacy Policy at any time. If we make a material change to our Privacy Policy, we will indicate on the Site that our privacy practices have changed and will provide a link to the new policy. In the event we make a material change to how we use your personal information, we will provide you with an opportunity to opt out of such new or different use. The date this Privacy Policy was last revised is at the top of this page. You are responsible for periodically reviewing the Site and this Privacy Policy to check for any updates or changes.

We always use HTTPS. If your data source provides it, we use it.

REV only ever gets read-only access to your data. We don’t want to, and can’t edit your data. All data is transmitted over the internet via standard 128-bit SSL encryption so none of your data is ever exposed.

When data is ingested from source systems, daily aggregated data is stored in the REV Platform. Each client’s data is stored in a separate database, physically removed from other client’s data. Client’s databases can geographically located anywhere based on data requirements, and can be removed from the platform at any time. All databases exist on a private network and connect to the platform via standard encrypted VPN tunnels.

We use standard OAuth to gain access to most of the third party APIs used to gather your data. You’ll never give your username and password to REV. Instead you login to your account and then authorized the requested permissions for RV. And of course we protect the auth information with encryption in our database.
You can always remove connection data source connection in REV, which deletes the entry in our database, or you can revoke REV’s access from your account.

For certain data sources that require it, such as a few database connections, we use a secure SSH tunnel so your data resides behind a secure firewall, and you never have to open a port. REV users can also white-list our server IPs so a private database is never left wide open.

All login passwords are SHA encrypted and all logins are compared against that SHA encrypted string. If you lose your password we cannot recover it for you, you have to request a reset link that is only active for a limited time.

All of our connections to the app from the browser are forced to https/ssl with a DigiCert SSL certificate.
The connection uses TLS 1.2.
The connection is encrypted and authenticated using AES_128_GCM and uses ECDHE_RSA as the key exchange mechanism.
All of our servers are located on the best of class Amazon Web Services.

Still have questions regarding data and security?

Contact us and our team of security experts will help with any questions that you may have.