Privacy Policy
Effective Date: August 3, 2026 • Last Updated: September 12, 2026
1. Introduction
Welcome to Riven ("rivenforms.in"). We value your privacy and are committed to protecting your personal data. This Privacy Policy explains how we collect, use, store, and share information when you use our visual form builder, data collection platform, and related services.
2. Information We Collect
We collect the following information to provide and improve our services:
- Account Information: Name, email address, profile image, and OAuth credentials when registering.
- Form Data & Responses: Form structures (titles, fields, logic) and the responses submitted by your users.
- AI Usage & Generation Data: Prompts and form contexts sent to AI models when using AI features, alongside usage limits and token metrics.
- Integration Data: Encrypted third-party OAuth tokens (e.g., Google Sheets), connected account IDs, and mapping configurations. We do not read or store your external data beyond what is needed to sync form responses.
- Technical & Analytics Data: IP addresses, browser types, session tokens, and platform analytics.
3. How We Use Information
We process your information to:
- Provide, maintain, and optimize the Riven form builder platform.
- Authenticate user accounts securely via Better Auth.
- Deliver transactional system emails and notifications via Resend.
- Monitor platform stability, Core Web Vitals, and security health.
4. Subprocessors & Service Providers
We partner with trusted third-party infrastructure providers:
| Provider | Purpose | Location |
|---|---|---|
| Neon PostgreSQL | Primary Database Hosting | AWS (ap-southeast-1) |
| Vercel | Web Hosting & Analytics | Global CDN |
| ImageKit | Media & Attachment Storage | Global CDN |
| Resend | Transactional Email Delivery | United States |
5. Third-Party Integrations & Google API Services
When you connect third-party integrations like Google Sheets, we only collect the minimum data necessary to provide the syncing service.
- Account Info: Connected account email or ID to identify your connection.
- OAuth Tokens: Securely encrypted access and refresh tokens used solely to append form submissions on your behalf.
- Spreadsheet Metadata: Basic identifiers like spreadsheet ID, worksheet name, and column headers needed for data mapping. We do not read, modify, or store your existing spreadsheet contents.
6. Security Practices
All network communications enforce SSL/TLS 1.3 encryption. Database storage is protected behind encrypted SSL connections, and user authentication session tokens are stored in secure HTTP-only cookies to safeguard against XSS and session hijacking. Third-party integration credentials are encrypted at rest.
7. Data Retention & User Control
Form creators can permanently delete individual fields, forms, or submission records at any time directly through the Riven dashboard. Files deleted by form creators are automatically purged from our CDN storage provider. When you disconnect a third-party integration, all associated OAuth tokens are permanently deleted from our database.
8. User Rights & Contact
You have the right to access, rectify, or request deletion of your personal data. For privacy inquiries or data removal requests, please contact us at:
Email: amankrdev28@gmail.com