Privacy Policy
Effective: October 6, 2026
This Privacy Policy explains how RevHarvester collects, accesses, uses, stores, protects, shares, retains, and deletes information when you use our website, Revenue Leak Audit, customer portal, CRM integrations, connected email features, and related services.
Your business data is yours
The data you provide to RevHarvester belongs to you.
As between you and RevHarvester, you retain ownership and control of the business records, customer information, CRM data, files, communications data, and other information that you provide, upload, connect, or authorize RevHarvester to process on your behalf ("Customer Data"). RevHarvester does not acquire ownership of your Customer Data.
We process Customer Data only as reasonably necessary to provide, secure, support, and operate the RevHarvester services you request, to comply with applicable law, and as otherwise described in this Privacy Policy and our Terms of Service.
Where applicable under privacy law, the business using RevHarvester acts as the controller or business with respect to its Customer Data, and RevHarvester acts as the processor or service provider processing that information on the business's behalf.
Information we process
RevHarvester processes several categories of information depending on how you use the service:
- Account and business information: your name, business name, business contact information, email address, account identifiers, subscription or billing status, CRM platform, and service preferences.
- Customer Data: business and CRM records you upload, connect, or authorize us to access.
- Integration and connection information: connected-system identifiers, authorization status, permissions granted, connection metadata, and credentials or OAuth tokens required to maintain an authorized integration.
- Service and security information: limited technical, usage, audit, diagnostic, and security records used to operate, protect, troubleshoot, and maintain the service.
- Communications: information you provide when contacting RevHarvester for support, account assistance, audits, or other requested services.
Customer Data RevHarvester may process
RevHarvester is designed to work with business and CRM information that you choose to provide or authorize us to access. Depending on the features and integrations you use, Customer Data may include:
- customer or prospect names and business contact information;
- estimates, quotes, opportunities, leads, and related monetary values;
- appointment, service, sales, and follow-up history;
- opportunity, estimate, job, or account status;
- requested callbacks, missed follow-ups, no-shows, stalled opportunities, and similar business records;
- service area, location, and business-related information;
- notes or other fields contained in records you authorize RevHarvester to process;
- information necessary to perform Revenue Leak Audits and recovery analysis; and
- information necessary to carry out customer-authorized recovery activities.
RevHarvester processes only the information made available through the records, files, systems, and integrations you choose to provide or connect. Connecting a system does not give RevHarvester unlimited permission to use the information in that system.
Data minimization
We believe businesses should provide only the information needed for RevHarvester to perform the service they requested. We design integrations and workflows to request the minimum permissions and information reasonably necessary for the selected feature.
The core RevHarvester service does not require Social Security numbers, government identification numbers, medical records, payment-card numbers, personal banking credentials, or similar highly sensitive personal information. You should not intentionally provide highly sensitive personal information unless RevHarvester expressly requests it for a documented feature and explains why it is required.
How we use Customer Data
We use Customer Data only for legitimate purposes related to providing RevHarvester to the business that supplied or authorized the data, including:
- identifying potential missed or recoverable revenue opportunities;
- analyzing and prioritizing business records;
- operating Revenue Leak Audits and recovery workflows;
- generating recovery recommendations and related decision-support information;
- carrying out communications or other actions specifically authorized through RevHarvester;
- synchronizing authorized CRM and business-system integrations;
- providing customer support;
- maintaining security, preventing fraud or abuse, and troubleshooting the service;
- maintaining records necessary to document authorized activity; and
- complying with applicable law.
Customer Data from one RevHarvester customer is not made available to another RevHarvester customer.
What we do not do with Customer Data
RevHarvester does not sell Customer Data. We do not rent Customer Data or provide it to data brokers, information resellers, lenders, or credit-evaluation services.
We do not use one customer's Customer Data to market to another customer. We do not use Customer Data to build unrelated commercial contact databases, and we do not use Customer Data for targeted, personalized, behavioral, interest-based, or retargeted advertising.
We do not disclose Customer Data to third parties for their independent marketing purposes.
We do not use Customer Data obtained through a customer's private CRM, connected account, or Google Workspace account to develop, improve, or train generalized or shared artificial-intelligence or machine-learning models.
Confidentiality and access
We treat Customer Data as confidential information. Access is limited to systems, service providers, and authorized personnel that require access to provide, maintain, secure, troubleshoot, or support RevHarvester.
RevHarvester personnel are not permitted to browse or use Customer Data for personal purposes or for purposes unrelated to providing and protecting the service.
Security of Customer Data
RevHarvester uses technical and organizational safeguards designed to protect Customer Data against unauthorized access, disclosure, alteration, misuse, or loss.
These safeguards include encrypted network connections, authentication and access controls, tenant separation, restricted administrative access, protected server-side credential storage, logging and monitoring, and other controls appropriate to the nature of the information being processed.
Credentials and authorization tokens used to connect third-party services are treated as sensitive security information and are protected using controls intended to prevent unauthorized access.
No Internet-based service can guarantee absolute security. If we become aware of a security incident involving Customer Data, we will investigate the incident and notify affected customers when required by applicable law or contractual obligations.
Service providers and subprocessors
RevHarvester uses infrastructure, hosting, database, communications, security, and other technology providers to operate the service. These providers may process limited Customer Data on RevHarvester's behalf where necessary to provide their services to us.
We require providers handling Customer Data to process that information only for the services they provide to RevHarvester and subject to applicable confidentiality, security, and data-protection obligations. Using a service provider does not transfer ownership of Customer Data to RevHarvester or to that provider.
Google Workspace and Gmail API data
Connecting a Google account to RevHarvester is optional. When you choose to connect Google Workspace or Gmail, RevHarvester requests only the Google permissions necessary for the connected feature.
For Gmail sending, RevHarvester requests the https://www.googleapis.com/auth/gmail.send scope. RevHarvester uses this permission solely to send email messages from the connected Google account when that sending activity is initiated or authorized through RevHarvester.
The Gmail send permission does not give RevHarvester access to read your Gmail inbox or existing messages, delete or modify existing messages, manage Gmail settings, or otherwise access mailbox content beyond what is required to submit an authorized outgoing message.
RevHarvester does not receive or store your Google account password. To maintain the Google connection, RevHarvester may securely process and retain limited connection information, including the connected email address, OAuth access or refresh credentials, permissions granted, and records necessary to operate and document authorized sending activity.
Google authorization credentials are used only to provide the Google functionality you authorized and are treated as sensitive credentials.
RevHarvester's use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
How Google user data is shared
RevHarvester does not sell Google user data. We do not transfer Google user data to data brokers, advertising platforms, information resellers, lenders, or credit-evaluation services, and we do not use it for targeted, personalized, behavioral, interest-based, or retargeted advertising.
Limited Google user data may be processed by service providers acting on RevHarvester's behalf only when necessary to host, secure, maintain, troubleshoot, or deliver the user-facing functionality you requested. Those providers are permitted to process the information only for those service-related purposes.
Google Workspace data and artificial intelligence
RevHarvester does not use raw, derived, aggregated, or anonymized data obtained through Google Workspace APIs to develop, improve, or train generalized or non-personalized artificial-intelligence or machine-learning models.
Data retention and deletion
We retain Customer Data only for as long as reasonably necessary to provide the services requested by the customer, maintain security and operational records, meet applicable legal obligations, resolve disputes, or satisfy legitimate contractual requirements.
We do not retain Customer Data merely because it may be commercially valuable to RevHarvester.
When Customer Data is no longer reasonably required, it may be deleted or de-identified in accordance with our retention practices, subject to limited information that must be retained for legal, security, fraud-prevention, backup, or recordkeeping purposes.
Google authorization credentials and related connection information are retained only while needed to provide the connected functionality or satisfy legitimate security or legal requirements. You may disconnect your Google integration or contact RevHarvester to request deletion of information associated with your account, subject to applicable retention obligations.
Your choices and control
You may contact RevHarvester to ask questions about information associated with your business, request corrections, request deletion where applicable, or ask about connected integrations. Disconnecting an integration stops future access through that connection, subject to technical completion of the disconnect process and information we are required to retain.
Business responsibility for Customer Data
Businesses using RevHarvester are responsible for ensuring they have the right and authority to provide or connect Customer Data and to instruct RevHarvester to process that data.
RevHarvester processes Customer Data on behalf of the business and does not independently determine the business's relationship with its customers or the legal basis under which the business originally collected that information.
Customer communications
Submitting a Revenue Leak Audit request authorizes RevHarvester to contact you about that request and related services. It does not by itself authorize automated SMS or voice communications to your customers. Customer outreach remains subject to applicable law, permissions, business rules, and the customer's instructions.
Changes to this policy
We may update this policy as RevHarvester evolves or as legal, security, or platform requirements change. The effective date above will be updated when material changes are made.
Contact
Questions about this policy or Customer Data can be sent to hello@revharvester.com.
← Back to RevHarvester