Ovyero
Legal

Privacy Policy

Version 1.2 · Effective 2026-09-29 · Operated by VISNRY Entertainment

We may update this policy as the product evolves; material changes are announced on the dashboard and by email to active customers, with the version and effective date shown above.

1. What we collect

2. What we never collect

3. How we use your data

Audit metadata powers your governance history, dashboards and reports, and lets us detect patterns in your codebase's compliance posture. Email is used for account, security and billing communication, never sold or used for third-party marketing. Aggregate, de-identified verdict counts (no tenant IDs, emails or file paths) appear on our public trust page.

4. Retention

Audit metadata and account data are retained for as long as your account is active, so your history stays available to you. Sign-in links and verification tokens expire within 30 minutes. When an account is deleted, its data is removed within 30 days (billing records are retained as long as tax and accounting law require).

5. Your rights

You can access and export your audit history from the dashboard at any time. To request deletion of all data associated with your account, email ezra@visnryentertainment.com with the subject line "Data Deletion Request" and your tenant ID or registered email; we complete deletion within 30 days and confirm by email. EU/UK users may also exercise access, rectification, portability and objection rights by the same route.

6. Sub-processors and storage

We do not sell your data. It is processed only by the sub-processors needed to run the service, each under a data-processing agreement or industry-standard equivalent terms; the current list, purpose and location of each is published at /legal/sub-processors (hosting: Railway; billing: Stripe; transactional email: Resend; edge/DNS: Cloudflare). Data is encrypted in transit and at rest.

7. Security

API keys are stored only as SHA-256 hashes; dashboard sessions use HttpOnly cookies; two-factor authentication and enforced SSO are available on every account; every security-relevant event is written to a per-tenant, hash-chained audit log that you can export and verify. See /trust for the integrity and authenticity guarantees, and /security for responsible disclosure.

8. Contact

Questions about this policy or our data handling: ezra@visnryentertainment.com. Related documents: Terms of Service · Sub-processors · Trust.