Privacy Policy
REEVES handles sensitive documents - receipts, invoices, medical letters, financial records. So we built it to hold as little as possible. This policy explains, in plain English, exactly what we collect, what we deliberately discard, and the control you keep at every step.
01 Who we are
REEVES is operated by 53Alpha("REEVES", "we", "us"). We are the data controller for the personal information described in this policy. For any privacy question, reach us at privacy@reeves.so.
02 What we collect
We collect only what's needed to run the service:
- Account details - your name and email address, used to sign you in and contact you.
- Document content, transiently - when you forward, upload or photograph a document, we process its contents to extract structured data (vendor, date, amount, type).
- Extracted metadata - the structured fields above, plus the filename and a reference (URL) to where the document was filed in your own storage.
- Connection tokens - secure tokens that let REEVES act in the tools you connect, stored encrypted.
- Usage & diagnostics - basic, privacy-respecting logs to keep the service reliable.
03 What we don’t keep
This is the part that matters most. After a document is processed and filed to your storage:
- The document itself is deleted from REEVES servers. We retain only a reference to your filed copy.
- Sensitive identifiers are never retained - passport numbers, dates of birth, full card numbers and loyalty numbers are discarded once the document is processed.
- We never sell your data. Not to advertisers, not to data brokers, not to anyone.
04 How we use what we collect
Strictly to provide and improve the service: to read and classify your documents, to propose and (with your approval) post actions to your connected tools, to send reminders and digests you've configured, and to keep your account secure. We do not use your document content to train third-party AI models.
05 Your connected tools
When you connect Google Drive, Google Calendar, Todoist, Notion or Xero, REEVES uses least-privilege access - it only sees and creates what it needs to. For example, on Google Drive REEVES can manage the files it creates, and nothing else in your Drive. You can disconnect any tool at any time from Settings.
06 Sharing & sub-processors
We share data only with the infrastructure and AI providers required to operate REEVES, under strict contractual controls - for example, cloud hosting and the AI models that read documents. These providers act on our instructions and may not use your data for their own purposes. A current list of sub-processors is available on request.
07 Retention
Document content is held only for the moments it takes to process, then deleted. Extracted metadata and references persist while your account is active, so you can search your Vault. Delete your account and we erase your REEVES data - your documents, already filed in your own storage, remain untouched and yours.
08 Your rights
Depending on where you live, you may have the right to access, correct, export or delete your personal data, and to object to or restrict certain processing. Exercise any of these from your account settings or by emailing privacy@reeves.so. We respond within the timeframes required by law.
09 Security
Connection tokens and data in transit and at rest are encrypted. Access is tightly restricted and audited. Minimising what we store is itself a security measure - what we don't hold can't be exposed. See our Trust Centre for more.
10 Changes & contact
We'll post any material change here and update the date above; significant changes will be notified by email. Questions, requests or concerns: privacy@reeves.so.