Privacy Policy — RepVisit Pro
RepVisit Pro ("the App", "we", "us") is a local-first field-work manager for medical sales representatives. This policy explains what data the App handles, why, and your choices. It applies to the RepVisit Pro mobile apps for Android and iOS.
Developer: VanGiza
Contact: support@vangiza.nl
1. Our approach: local-first by design
RepVisit Pro is built so that your work data stays on your device by default. The business information you enter — clinics, doctors, visits, sales, targets, debts, samples, products, and your weekly plan — is stored in a local database on your phone.
Your business data is never uploaded to any server we control. It leaves your device only when you choose an action such as Google Drive backup, CSV export, printing, emailing, or sharing.
We operate exactly one service of our own: the referral service, which runs the invite-code program. It holds referral identity and reward data only — never your clinics, doctors, visits, sales or any other business content. It is used only if you take part in the referral program, and section 2 lists everything it stores.
We do not show ads, sell or rent personal data, or use advertising or behavioural analytics SDKs. RevenueCat provides the subscription, entitlement and purchase analytics needed to operate Pro access.
2. Data we collect, and why
- Google account email — read only if you connect Google Drive backup, and shown inside the App as the label for the connected backup account. Stored on your device as a label; not sent to any server we operate.
- Stable Google account ID — if you connect Google Drive, used by RevenueCat as your App User ID so cross-platform restore can look for Pro access linked to the same Google account. Sent to RevenueCat. Joining the referral program also sends this ID to our referral service.
- RevenueCat App User ID — when the subscription service starts, RevenueCat assigns an anonymous identifier for this app installation. If you later connect Google Drive, it can be linked to your stable Google account ID. RevenueCat uses these identifiers to manage entitlement and purchase history.
- Subscription & purchase status — when you buy or manage Pro, to grant and verify Pro access and process store receipts. Handled by RevenueCat and Apple App Store or Google Play, depending on your device.
- Device location (approximate/precise) — requested only when you use nearest-clinic sorting or location-aware weekly planning. It is used in memory for that action and is not stored or sent to us.
- Clinic coordinates — coordinates you type, paste from a map link, or otherwise save with a clinic. They are business content stored on your device and are included in a Google Drive backup or CSV export when you choose those actions.
- Photos — when you add a product photo or profile picture, to display them inside the App. Stored on your device (and in your own backup, if enabled).
- Your business content — the clinics, doctors, visits, and sales you enter. Stored on your device; included in your own cloud backup only if you enable it (see section 4).
- Referral account identity — an account id, a hash of your access token, your invite code, your Google account ID and your RevenueCat App User ID. Only if you join the referral program, so we can identify your referral account across reinstalls and devices and apply a reward to the right subscription. Stored on our referral service (Cloudflare).
- Referral ledger — your points balance, who referred whom, your award history and your redemption records. Only if you join the referral program, to pay out invite rewards and enforce the yearly limit on free weeks. Stored on our referral service (Cloudflare).
- Abuse-prevention counters — an hourly counter kept under a key derived from your IP address when your device contacts the referral service, to stop the programme being abused with automated requests. Kept for up to one hour.
You can use the App's local features without creating an account. When the store and subscription integration is available, RevenueCat may still receive its anonymous App User ID and subscription-related events. Your business content is not sent to RevenueCat.
Retention. Referral account data is kept until you delete your account. Redemption records are kept for 24 months after deletion in an anonymised form — stripped of your account and RevenueCat identifiers but keeping a one-way hash of your Google identity — so that the yearly limit on free weeks cannot be reset by deleting and re-joining. The same 24-month period applies to the marker that records an invite code was already claimed. Abuse-prevention counters expire after one hour.
3. What we do NOT do
- We do not send your business data to any server we control. The referral service holds referral identity and reward data only.
- We do not collect behavioural product analytics or advertising identifiers. RevenueCat processes subscription, entitlement and purchase events.
- We do not include third-party advertising SDKs.
- We do not sell, rent, or trade your personal data.
- We do not upload your clinics, doctors, visits, or sales anywhere except your own cloud backup, if you enable it.
- We do not access the contents of your cloud backup.
4. Cloud backup (optional)
If you enable backup, RepVisit Pro saves a copy of your data to your own
Google Drive, in the private application data folder (appDataFolder).
The App requests only the drive.appdata permission, which limits its access
to the backup it creates — it cannot see your other Google Drive files.
This folder is controlled by your Google account and is not visible or accessible
to us; the App reads and writes your backup on your behalf, from your device.
Disconnecting Google Drive or turning off automatic backup stops future access from the
App but does not delete snapshots already stored there. To remove those,
delete RepVisit Pro's app data through your Google account's Drive app-data controls.
5. Permissions we may request
- Location — to sort visits by the nearest clinic and improve location-aware weekly planning when you request those actions. Optional; the App functions without it. The device reading is used on the spot and not stored.
- Camera / Photos — to add product photos and a profile picture.
- Biometrics (Face ID / fingerprint) — for the optional app lock. Biometric data is handled entirely by your device's operating system and is never sent to us.
- Notifications — to show local reminders you schedule. These are generated on your device.
You can grant or revoke any of these in your device settings.
6. Third-party services
We rely on a small number of providers to deliver specific features. Each has its own privacy policy:
- Google Sign-In & Google Drive API — used so you can sign in
with your Google account and back up to your own Drive
appDataFolder. The App requests only thedrive.appdatascope. — policies.google.com/privacy - RevenueCat (subscription management) — receives an anonymous App User ID, store and app information, and purchase/entitlement events. If you connect Google Drive, the anonymous profile can be linked to your stable Google account ID. — revenuecat.com/privacy
- Apple App Store or Google Play (payments) — processes purchases, renewals, cancellations and refunds on the platform you use. — apple.com/legal/privacy · policies.google.com/privacy
- Cloudflare (hosting for our referral service) — processes and stores the referral data listed in section 2 on our behalf. Used only if you join the referral program. — cloudflare.com/privacypolicy
We share with these providers only the minimum needed for the feature to work.
7. Deleting your account and your data
You can delete your data — and the account identity linked to it — at any time. Here is where it lives and how to remove it from each place:
- On your device — use Settings → Delete my data inside the App. The local wipe never depends on our referral service being reachable; if your referral account could not be deleted at that moment, the App retries the next time it starts. Uninstalling removes the local business database but does not request deletion from the referral service, RevenueCat, or Google Drive, so use the in-app control first if you want those linked deletion steps to run.
- Your referral account — deleted automatically by the step above. We keep the anonymised redemption records described in section 2 for 24 months so the yearly limit on free weeks cannot be reset by deleting and re-joining.
- Your Google Drive backup — disconnecting Drive or turning off automatic backup does not delete existing snapshots. Delete RepVisit Pro's app data through your Google account's Drive app-data controls.
- Your subscription identity (RevenueCat) — RevenueCat creates an anonymous subscription profile when its service starts; connecting Google Drive can link that profile to your Google account ID. To request deletion of this profile and the data held under it, email support@vangiza.nl from the address associated with your account, with the subject "Delete my account". We will verify the request and delete the associated data within 30 days.
Please note: Apple, Google, RevenueCat, or we may retain purchase records where required for legal, tax, accounting, fraud-prevention, or platform obligations, even after other data is deleted.
8. Security
Data exchanged with the third-party services we use (Google, Apple, RevenueCat and Cloudflare) is encrypted in transit (HTTPS/TLS). You can add an optional biometric app lock for an extra layer of on-device protection. No system is perfectly secure, but we take reasonable measures to protect your information.
9. Children
RepVisit Pro is a professional tool intended for adults and is not directed to children under 13 (or the equivalent minimum age in your jurisdiction). We do not knowingly collect data from children.
10. International data transfers
Some third-party providers we use (such as Google and RevenueCat) may process limited data on infrastructure located outside your country. Where required, we rely on the appropriate safeguards offered by those providers for such transfers.
11. Your rights
Depending on where you live, you may have rights to access, correct, export, or delete your personal data. To exercise these rights, contact us at support@vangiza.nl.
12. Changes to this policy
We may update this policy from time to time. We will revise the "Last updated" date above and, where appropriate, notify you in the App.
13. Contact us
Questions about this policy or your data?
VanGiza — support@vangiza.nl