What we collect and what we do with it.
The plain-language version. If you want the formal version, it's the same content with more legal-ese. Reach out at the email at the bottom of the page with any questions.
Effective 2026-08-07 · Version privacy-2026-08-07.1
The short version
Revtek IT Solutions LLC operates Revy's Tech Journey. This policy explains what we collect, how we use it, and what your choices are. We try to collect the least amount of data we can to run the service. We do not sell your data to advertisers. We do not run ads inside the app.
What we collect
Account information. Your email and display name when you sign up. If you choose to set a technician name for Sim mode, we store that too.
Payment information. If you upgrade to Pro or Lifetime, payment processing is handled by Stripe. We do not see or store your full card number. Stripe gives us a token and basic metadata (subscription status, last four digits, billing country) so we can manage your account.
Account learning data. Your progress through lessons, quiz scores, practice exam results, simulator ticket attempts, and time spent. This is what makes the platform work.
Browser-only learning data. Flashcard ratings, in-progress decks, and streak state are stored in your browser. They do not sync across devices and are removed when you clear the site's browser data or sign out on that device.
Technical data. IP address, browser type, device type, timestamps. Used for security, debugging, and abuse prevention.
Communications. If you email support, message us on Discord, or reply to a transactional email, we keep that conversation so we can help you.
How we use it
To run the service (deliver lessons, save account data, sync supported account data across devices), to support you (answer your questions, fix bugs you report), to improve the platform (figure out which lessons are confusing, which features are working), to keep things secure (detect abuse, prevent account takeover), and to bill you (if you're on a paid plan).
We do not use your learning data to train AI models for third parties. We do not share your data with data brokers. We do not run behavioral advertising.
Third-party services we use
Running a platform requires a few external services. The current list:
- Stripe for payments and subscription management.
- Supabase for account database, authentication, and storage of curriculum kit files.
- Cloudflare for Worker hosting, DNS, security, and CDN services.
- A transactional email provider for password resets, billing receipts, and account notifications.
- GoHighLevel (GHL) for educator and prospect email nurture sequences if you opt in. We do not pass your study data to GHL. Only contact info you provide on opt-in forms (email, name, school name if you supplied it).
- Discord if you join our community. Subject to Discord's own privacy policy.
- No outside AI model provider. Revy is a scripted character, so what you type while studying is not sent to an AI model provider today. If we ship a feature that does, we will name the provider here before it turns on. Detail on our AI Policy page.
Each of these has its own privacy policy and we recommend reading them if you want full visibility.
Your rights
Access and export. Signed-in users can open Settings and use Your data to download a versioned JSON copy of their account, profile, server-backed learning, classroom, assignment, and activity records. Passwords, authentication secrets, payment identifiers, and other users' data are excluded. Email support@revystechjourney.com if you need help or a record that is not included in the self-service export.
Correction. Update your account info in Settings. For anything you can't change yourself, email us.
Deletion. Eligible signed-in users can open Settings and use Your data to permanently delete their account after confirming the account email and current password. Deletion is blocked while an account has an active or past-due subscription, active institution or teaching duties, classroom records that need an ownership transfer, or uploaded files that need removal or reassignment. Contact us for help with a blocker or if the account uses a sign-in provider without a password.
Account deletion removes the authentication identity, profile, personal learning progress, study events, achievements, academy pacing, and capability grants. Where required for institutional continuity, billing, security, tax, accounting, or dispute handling, we retain only identity-minimized institutional, assignment, billing, and authorization history.
Opt out. You can opt out of non-essential emails in Settings. Transactional emails (billing, password resets, security alerts) cannot be turned off while you have an account.
Users under 18
The platform is not intended for children under 13. We do not knowingly collect personal information from children under 13. If we learn that we have collected information from a child under 13 without verified parental consent, we delete it. For middle-school CTE programs interested in the platform, contact us so we can discuss a parent-consent flow before any account creation.
If you are 13 to 17, we recommend a parent or guardian help set up your account.
For high school and post-secondary CTE classrooms, teachers can set up classroom codes that link student accounts to a classroom roster. Student progress data within a classroom is visible to the teacher (cohort and individual views) and to the student (their own data only). We treat student progress data tied to a classroom as FERPA-aware educational records: we do not share it with third parties for marketing, we do not sell it, and we do not train AI on it. Parents or eligible students can submit a manual access or deletion request through the teacher or directly to us. There is no parent portal.
How long we keep data
While your account is active, we keep server-backed learning data so you can see your progress. Browser-only learning data can be removed by signing out or clearing the site's browser data. Account deletion requests are handled manually under the retention review described above. We do not currently retain a separate product-analytics dataset.
Payment records are retained as required by tax and accounting law, typically seven years.
Security
Network traffic uses HTTPS. Supabase provides account, authentication, and database services, and Stripe manages payment-card data. We use access controls and database row-level security for current account and classroom boundaries. RTJ has not completed an independent security assessment or formal compliance certification.
No system is perfectly secure. Incident response and breach-notification procedures are being formalized and reviewed. If an incident affects your data, we will investigate and provide notice as required by applicable law and an approved response procedure.
Changes to this policy
We may update this policy when we change the service or when regulations change. Material changes that affect what we collect or how we use it will be communicated through an appropriate account, email, or public notice before or when the change takes effect, as required by the approved policy and applicable law.
Each version we publish carries its version label and effective date at the top of this page, and is recorded in our internal version ledger.
Contact
Questions about this policy? Email support@revystechjourney.com.
Postal: Revtek IT Solutions LLC, Oak Forest, Illinois, USA. Mailing address available on request.
Effective 2026-08-07
This is the operative document for Revy's Tech Journey as of 2026-08-07. It was written in-house and has not been reviewed by outside counsel. When it changes, the version label and effective date change with it.