Privacy Policy
This Privacy Policy explains how DCHUB (“Revnetic”, “we”, “us”), a sole proprietorship established in Switzerland, collects, uses, discloses, and safeguards personal data when you use the Revnetic workshop-management platform at revnetic.ch and related subdomains (the “Service”). We process personal data in accordance with the Swiss Federal Act on Data Protection (revFADP) and, where applicable, the EU General Data Protection Regulation (GDPR).
Contents
- Who we are
- Controller vs. processor
- Data we process
- Why we process it
- Sub-processors
- International transfers
- Retention
- Your rights
- Security
- Contact
1. Who we are
The data controller for account and platform data is DCHUB, a sole proprietorship (Einzelunternehmen) under Swiss law, Seestrasse 216, 8810 Horgen, Switzerland, operator of the Revnetic platform. You can reach us at [email protected].
2. Controller vs. processor
Revnetic is a multi-tenant platform used by independent car workshops (“Garages”). The controller/processor split is as follows:
- Garage account & user data (the workshop's business profile, its team members' login accounts) — Revnetic acts as controller.
- End-customer data that a Garage enters about its own customers and vehicles — the Garage is the controller and Revnetic acts as a processor on the Garage's behalf, under our Data Processing Agreement, which is accepted at sign-up and forms part of our Terms of Service.
3. Data we process
| Category | Examples |
|---|---|
| Account & identity | Name, work email, phone, hashed password, role, garage name and address, VAT/UID |
| Garage's customer records | Customer name, email, phone, postal address, vehicle details (VIN, plate, make/model), service and repair history |
| Billing | Subscription plan, billing cycle; card payments are processed by Stripe — we do not store full card numbers |
| AI assistant | Messages you send to the “Rev” assistant and the vehicle context used to answer them |
| Communications | Emails we send on your behalf and delivery events (delivered, opened, bounced, complained) |
| Technical | IP address, user-agent, audit-log entries of administrative actions, error diagnostics |
4. Why we process it
- To provide the Service (performance of a contract) — accounts, invoicing, parts, scheduling, the customer portal.
- Legitimate interests — securing the platform, preventing abuse, product analytics in aggregate, and supporting you.
- Consent — optional marketing emails to a Garage's customers are only sent where marketing consent has been recorded; consent can be withdrawn at any time.
- Legal obligation — retaining invoicing and accounting records for 10 years as required by Art. 958f of the Swiss Code of Obligations.
5. Sub-processors
We rely on the following sub-processors. Each is bound by a data-processing agreement:
| Provider | Purpose | Location |
|---|---|---|
| Hetzner | Application hosting & object storage | EU (Germany / Finland) |
| Cloudflare | DNS, network tunnel, TLS, CDN | Global (EU edge) |
| Stripe | Subscription billing & card processing | EU / US |
| Resend | Transactional & marketing email delivery and inbound capture | US |
| Anthropic | AI assistant (Claude) | US |
| Sentry | Error monitoring | EU / US |
| BetterStack | Uptime monitoring | EU |
Your workshop data is never used to train any AI model.
6. International transfers
Where data is transferred outside Switzerland or the EEA (for example to US-based providers above), we rely on EU Standard Contractual Clauses and the Swiss addendum, together with appropriate technical safeguards.
7. Retention
- Active account data is retained for as long as your subscription is active.
- After cancellation, uploaded files and documents are deleted promptly; remaining account and tenant data is retained to allow reactivation and is permanently deleted on request, except where longer retention is legally required.
- Administrative audit-log entries are retained for 90 days.
- Invoicing and accounting records are retained for 10 years (Art. 958f Swiss Code of Obligations — see §4) to meet legal obligations.
8. Your rights
Subject to applicable law, you may request access, rectification, erasure, restriction, portability, or object to certain processing. See our GDPR & data-rights page for how to exercise these rights. If end-customer data held by a Garage concerns you, please contact that Garage as controller; we will assist them as processor. You may also lodge a complaint with the Federal Data Protection and Information Commissioner (FDPIC) in Switzerland or, where the GDPR applies, with your competent EU supervisory authority.
9. Security
Data is encrypted in transit (TLS). Access is isolated per tenant, authentication uses hashed credentials and short-lived tokens, and administrative actions are logged. No system is perfectly secure, but we work to protect your data using industry-standard measures.
10. Contact
Questions about this policy or your data: [email protected], or by post to DCHUB, Seestrasse 216, 8810 Horgen, Switzerland. We aim to respond within 30 days.