Privacy Policy
Last updated 1 September 2026
This policy explains what information Reviora collects, why, who we share it with, and the choices you have. It covers our business customers and members of the public who scan a Reviora review card.
1. Introduction
Reviora helps businesses make it easier for their genuine customers to leave a Google review. Operating that service means handling two very different kinds of information. Details about the businesses that use us, and a limited technical record of people who scan a review card. This policy covers both, and treats them differently because they deserve different treatment.
We have tried to describe what actually happens rather than what sounds reassuring. Where we do not do something, we say so.
2. Information we collect
In summary, we collect the following.
- Business and contact details you give us when enquiring or signing up
- Business profile content you supply for your review page and card
- Administrator account details for our staff and partners
- Payment reference details and payment confirmation images
- A limited technical record from people who open a review page
- Basic website analytics, if analytics is enabled — see section 10
We do not collect special category data (health, biometrics, religion, political opinion and similar), and you should not send it to us.
3. Information provided by businesses
To build your review page and QR card we store the business profile you give us. That means the business name, category, description, city and state, your service list, your keyword list, your chosen tone, the languages you enable, your Google review link, and any logo or cover image you supply.
This content is public by design. It appears on your review page, which is a publicly reachable URL and is indexable by search engines. Do not put anything in your profile that you would not want a customer or a competitor to read.
Administrator accounts — held by our staff and city partners, not by business owners — store an email address, a name, an optional phone number, and a log of sign-in activity and administrative actions.
4. Information submitted through contact forms
When you submit the enquiry form on this website, we collect the following.
- Business name
- Your name
- Mobile number
- City
- Business type
- Email address (optional)
We use this solely to contact you about Reviora and to set up your account if you proceed. We do not sell it. We do not add you to a marketing mailing list. We share it only with the Reviora representative assigned to your territory.
Our forms have no free-text message field, so there is no route for you to send us additional personal information through them by accident.
5. Information collected through the review experience
If you are a member of the public who has scanned a Reviora card, we do not ask who you are. There is no account, no sign-up, and we never ask for your name, email address or phone number.
We do automatically record a limited technical footprint.
| What | Why |
|---|---|
| IP address | Rate limiting and abuse prevention |
| Browser and device type | Aggregate reporting to the business |
| Page open (a “scan”) | So the business can see whether its card is being used |
| The star rating and language you selected | To generate an appropriate draft |
| The review draft, if you copy it | To stop the same text being produced twice for that business |
A draft is stored only if you tap Copy & Open Google Review. Drafts you read and discard are not retained.
We never see what you eventually post. Once you are redirected you are on Google's own service, signed into your own account, and what happens there is between you and Google.
6. How we use information
- To provide the service — generating drafts, producing QR cards, running review pages
- To contact enquirers and set up accounts
- To report activity back to the business whose card was scanned
- To take payment and keep financial records
- To prevent abuse, spam and fraudulent use
- To fix problems and improve the product
- To meet legal obligations
We do not use your information for automated decision-making that produces legal or similarly significant effects about a person.
7. AI processing
Review drafts are produced using a third-party AI provider. When a draft is requested, we send that provider only the information needed to write it. The business name, category, description, city, selected services and keywords, the star rating chosen, and the selected language.
We do not send the AI provider the IP address, device details or any identifier of the person scanning the card. The provider receives business context and a rating, not a person.
We record which provider, model and prompt version produced each stored draft, so we can investigate quality problems.
8. Review draft generation
A draft is a suggestion. It is generated automatically, shown to the person who scanned the card, and they decide whether to use it, edit it or ignore it entirely.
Reviora does not post reviews. Reviora does not choose the rating. Reviora has no access to anyone's Google account. See our Review Authenticity page for the full position.
Stored drafts are compared against previous drafts for the same business so the system can avoid producing near-identical text. That comparison is the reason copied drafts are retained at all.
9. QR and usage analytics
We count review-page opens, drafts copied, and redirects to Google, and we report those counts to the business whose card was scanned. Reporting is aggregate — a business sees totals and trends, not individual visitors.
We cannot tell a business whether a review was actually posted, and we do not claim to. Anything past the redirect is invisible to us.
10. Cookies and analytics technologies
Review pages set no advertising or tracking cookies. Sign-in cookies are used only on the administrator portals, and only to keep an administrator signed in.
This marketing website may use a privacy-focused, cookieless analytics tool that records page views and clicks on links and buttons. It does not set cookies, does not track you across other websites, and does not receive your name or contact details. If we instead use a cookie-based analytics product in future, we will say so here and add a consent mechanism where one is required.
11. How we share information
We do not sell personal information. We share it only in the ways listed below.
- Service providers — see section 12.
- Your assigned Reviora representative — a city partner or sales representative can see business profiles and activity for businesses in their own territory only. This restriction is enforced in the database, not only in the interface.
- Legal and safety — where we are required by law, or where it is necessary to investigate abuse of the service.
- Business transfer — if Reviora is acquired or merged, information may transfer as part of that transaction. We would tell affected customers.
12. Service providers
We rely on third parties to operate the service.
- Hosting and database provider — stores all platform data, including business profiles, uploaded images and review-page activity.
- Application hosting provider — serves this website and the review pages.
- AI provider — generates review drafts, receiving only the business context described in section 7.
- Analytics provider — if analytics is enabled, as described in section 10.
These providers process information on our instructions for the purposes described in this policy.
13. Data security
Data is transmitted over encrypted connections (HTTPS). Access is restricted by role, and territory boundaries are enforced at the database level rather than only in the interface. Administrative actions are recorded in an audit log. Public endpoints are rate limited and validated to protect against automated abuse.
We do not claim any security certification, and we hold none. No service can promise that a breach is impossible, and we do not make that promise. If a breach affects your information, we will tell you and take the steps required of us.
14. Data retention
Business and subscription records are kept while the account is active, and afterwards for as long as we are required to keep financial records. Enquiry records are kept while we are in contact with you and for a reasonable period afterwards. Review-page activity data is currently retained for approximately 24 months.
To be accurate about this, deletion is currently a manual process carried out on request or on review. We do not operate an automated deletion schedule, and we are not going to describe one that does not exist. If you want something deleted, ask us — see section 19.
15. Customer and business responsibilities
If you are a business using Reviora, some obligations sit with you.
- Only supply profile content you have the right to use, including logos and images.
- Do not put personal information about your customers or staff into your business profile.
- Place your review card so customers can see it. Do not misrepresent what scanning it does.
- Follow the authenticity rules in our Terms of Service — only genuine customers, never incentives, never review gating.
- You remain responsible for your own compliance obligations to your customers, and for the review policies of any platform you use.
16. Third-party services
This policy covers Reviora. It does not cover third-party services you or your customers use alongside it. Those services have their own privacy policies, and we do not control them.
17. Google and third-party links
Review pages link out to Google. When a person follows that link they leave Reviora and enter Google's service, under Google's own terms and privacy policy.
Reviora is not affiliated with, endorsed by, or acting on behalf of Google. We have no access to Google accounts, no ability to post on anyone's behalf, and no visibility of what is submitted there.
18. International data processing
Reviora operates in India. Some of our service providers operate infrastructure outside India, which means information may be processed outside the country where it was collected. Where that happens we rely on the provider's own contractual safeguards.
We are not making a claim of compliance with any specific international transfer framework. If you need detail about a particular provider or region, contact us and we will tell you what we know.
19. Your rights
Depending on where you live, you may have rights to access a copy of the personal information we hold about you, correct it if it is wrong, ask us to delete it, object to or restrict how we use it, or withdraw consent where we rely on it.
To exercise any of these, contact us using the details in section 22. We will respond within the period required by applicable law. We may need to confirm who you are before acting.
If you scanned a review card and want the associated activity record removed, tell us the business and roughly when, and we will locate and delete it.
20. Children's privacy
Reviora is a service for businesses and is not directed at children. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, contact us and we will delete it.
21. Changes to this policy
If we change this policy we will update the date at the top of this page. Material changes affecting business customers will be communicated directly.
22. Contact information
Reviora
Email: info@revioraai.com
Phone: +91 76240 69300
Questions about this page?
Email info@revioraai.com or call +91 76240 69300.