Back to Frevio
Legal & Privacy Compliance

Privacy Policy

Effective date: September 8, 2026

This policy explains what information Frevio (“we”, “our”, or “the Service”) collects, how we use it, and the choices you have. By accessing or using Frevio, you consent to the practices described in this policy.

01. Information We Collect

  • Account data — your name, email address, avatar, and authentication credentials (hashed and secured via our identity provider).
  • Workspace records — client profiles, project milestones, status logs, itemized invoices, contract terms, and recorded billable hours.
  • Financial & billing data — encrypted and processed exclusively through Stripe; we maintain customer tokens and subscription tier states, never raw credit card details.
  • Operational logs — essential access records and diagnostic signals required to safeguard infrastructure against malicious activity and ensure high availability.

02. How We Utilize Information

We process data to deliver, maintain, and optimize the Frevio platform, facilitate secure payment processing, dispatch vital notifications (verification tokens, invoice payment receipts, deadline reminders, and weekly digests), prevent fraudulent actions, and satisfy statutory compliance. We never monetize, sell, or rent your personal data to external advertisers.

03. Infrastructure Partners

Data is transferred strictly to vetted cloud infrastructure providers required to operate Frevio:

  • Supabase — managed PostgreSQL database, authentication, and encrypted document storage.
  • Stripe — PCI-DSS Level 1 payment gateways, subscription settlements, and invoice checkout portals.
  • Resend — transactional email delivery for updates, approvals, and reminders.
  • Vercel — global edge execution and web serving environment.

04. Cookies & Local State

We deploy essential first-party cookies and local storage tokens strictly to maintain authenticated user sessions and store interface preferences (such as light or dark themes). We do not embed third-party surveillance or tracking pixels.

05. Data Retention & Purging

Workspace assets are retained while your subscription is active. Upon account termination, workspace records are permanently purged following standard grace periods, excluding financial transaction ledgers mandated by tax authorities.

06. Security Architecture

We enforce end-to-end TLS encryption in transit, AES-256 encryption at rest, Supabase Row-Level Security (RLS) policies at the database layer, and isolated secret management.

07. Your Rights & Inquiries

You maintain the right to inspect, export, modify, or permanently expunge your personal records under applicable GDPR and CCPA statutes. For inquiries, contact our data protection team directly at support@frevio.app.

Frevio Studio Operating SystemTerms of Service →