Terms of Service

Last updated: March 8, 2026

1. Service Overview

RevReclaim ("the Service") is a SaaS tool that scans your Stripe, Paddle, or Polar billing account to detect revenue leaks — failed payments, stuck subscriptions, pricing mismatches, and other billing issues that cost you money. The Service is provided by RevReclaim ("we", "us", "our").

2. Eligibility

You must be at least 18 years old and have the authority to grant read-only access to the billing account you are scanning (Stripe, Paddle, or Polar). By using RevReclaim, you confirm that you are the authorized owner or administrator of the billing account and that you have the legal right to access and analyze the data provided.

3. Account & Access

  • You are responsible for maintaining the security of your account credentials.
  • You must provide a valid email address for account registration.
  • You are responsible for all activity under your account.
  • You must notify us immediately of any unauthorized access to your account.

4. API Keys

  • You must only provide read-only restricted API keys. Never share your secret key or a key with write permissions.
  • For one-time scans, your API key is used in memory only and is not stored on any server or database.
  • For automated scans, your API key is encrypted with AES-256-GCM before storage. The encryption key is stored separately. You can delete it at any time from your settings.
  • We access your billing data exclusively for the purpose of generating revenue leak reports. We do not make any modifications to your billing account.
  • Read-only access limitations are enforced at the platform level by Stripe, Paddle, and Polar respectively — RevReclaim cannot create charges, modify subscriptions, or delete data even if it attempted to.

5. Acceptable Use

You agree not to:

  • Use the Service to scan billing accounts you do not own or have authorization to access.
  • Attempt to reverse engineer, decompile, or extract source code from the Service.
  • Use automated scripts to abuse API endpoints or circumvent rate limits.
  • Share your account access with unauthorized third parties.
  • Use the Service for any illegal purpose.

6. Scan Results & Accuracy

  • Scan reports are generated based on automated analysis of your billing data at the time of scanning.
  • Revenue estimates (MRR at risk, annual recovery) are approximate projections, not guaranteed recovery amounts.
  • We recommend reviewing each identified leak manually before taking action.
  • RevReclaim is a diagnostic tool — we identify issues but do not automatically fix them.

7. Pricing & Plans

  • The free plan includes limited scan functionality.
  • Paid plans provide additional features such as unlimited scans, automated weekly scans, and priority support.
  • Prices are subject to change with 30 days notice to existing subscribers.
  • Refunds are handled on a case-by-case basis within 14 days of purchase.

8. Security Measures

We implement commercially reasonable security measures to protect your data, including but not limited to:

  • Encryption in transit: All data transmitted between your browser and our servers is encrypted using TLS 1.3.
  • Encryption at rest: Stored API keys (for auto-scan users) are encrypted using AES-256-GCM with derived keys stored separately from the database.
  • Database isolation: Row Level Security (RLS) ensures each user can only access their own data.
  • Minimal data retention: One-time scan API keys are processed in memory and never written to persistent storage.
  • Infrastructure: Hosted on Vercel with automatic HTTPS, DDoS protection, and SOC 2 compliant infrastructure. Database hosted on Supabase with SOC 2 Type II certification.

While we implement commercially reasonable security measures, no system is 100% secure. We do not warrant or guarantee the absolute security of your data.

9. Breach Notification

In the event of a confirmed security breach that compromises your personal data or API keys, we will:

  • Notify affected users via email within 72 hours of confirming the breach.
  • Provide a description of the nature of the breach, the data affected, and the measures taken to address and mitigate it.
  • Report to relevant data protection authorities as required by applicable law (including GDPR where applicable).
  • Provide guidance on steps you can take to protect yourself, including revoking and regenerating API keys on your billing platform.

10. Indemnification

You agree to indemnify, defend, and hold harmless RevReclaim and its officers, employees, and agents from and against any claims, damages, losses, liabilities, and expenses (including reasonable legal fees) arising out of or related to: (a) your use of the Service; (b) your provision of API keys for billing accounts you do not own or are not authorized to access; (c) your provision of API keys with permissions beyond read-only access; (d) your violation of these Terms; or (e) your violation of any rights of a third party. You are solely responsible for ensuring that the API keys you provide are appropriately scoped to read-only access as instructed.

11. Limitation of Liability

RevReclaim is provided "as is" and "as available" without warranties of any kind, either express or implied, including but not limited to implied warranties of merchantability, fitness for a particular purpose, and non-infringement. We are not liable for any indirect, incidental, special, consequential, or punitive damages arising from your use of the Service. Our total aggregate liability is limited to the greater of (a) the amount you paid us in the 12 months preceding the claim, or (b) $100 USD. We are not responsible for any revenue loss, data loss, or business interruption resulting from actions taken based on scan results. This limitation applies to all causes of action in the aggregate.

12. Termination

  • You may close your account at any time by contacting us.
  • We may suspend or terminate accounts that violate these terms.
  • Upon termination, your data will be deleted within 30 days per our Privacy Policy.

13. Governing Law

These Terms shall be governed by and construed in accordance with the laws of the State of Israel, without regard to its conflict of law principles. Any disputes arising under or in connection with these Terms shall be subject to the exclusive jurisdiction of the courts located in Israel.

14. Changes to Terms

We may update these terms from time to time. Material changes will be communicated via email at least 14 days before they take effect. Continued use of the Service after changes constitutes acceptance of the updated terms.

15. Contact

For questions about these terms, contact us at revreclaim@gmail.com