ReviewBell

Privacy Policy

Last updated: August 11, 2026

ReviewBell is a Mac app for managing App Store and Google Play reviews and, if you enable it, customer messages sent to a ReviewBell-hosted support address. This policy describes the data each feature handles.

The short version: Store API credentials stay in your Mac's Keychain. Hosted support email is different: it requires an account and stores support messages on Cloudflare so they can reach your ReviewBell inbox. ReviewBell also records limited first-party feature usage to understand reliability and adoption. We do not sell personal data, the app has no advertising or cross-app tracker, and hosted email is not sent to an AI provider in Version 1.

1. Store credentials and review data

Google OAuth scopes and exact uses

ReviewBell requests the following scopes when you connect Google Play. These are the narrowest scopes Google provides for the production features described below; ReviewBell does not request the broader cloud-platform scope.

Google API data storage, transfer, retention, and deletion

Google API Limited Use: ReviewBell's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements. ReviewBell uses Google API data only to provide or improve the user-facing features described above; it does not sell Google API data, does not use Google API data for advertising, lending, surveillance, or data-broker purposes, and does not use Google API data to train general-purpose AI or ML models.

2. Hosted support-email account

Creating or managing an address at hello-support.com requires Sign in with Apple. We request only the Apple identity needed to authenticate you; the app does not request your Apple name or email scopes for this feature.

3. First-party product analytics

When you are signed in to hosted support email, ReviewBell records limited interactions needed to understand whether the feature works and which parts are useful. These records are linked to your ReviewBell account and user identifier.

4. Support messages we store

When someone sends mail to your hosted address, ReviewBell processes and stores data needed to show the conversation and send your approved reply:

Message bodies are stored in a private Cloudflare R2 bucket. Account and message metadata are stored in Cloudflare D1. Contact addresses and subjects use additional application-level encryption where described by the service design; Cloudflare also provides encryption at rest. Data is encrypted in transit.

Image attachments: ReviewBell stores inbound PNG, JPEG, GIF, and WebP images in the same private Cloudflare R2 storage used for message bodies and makes them available only through an authenticated account-scoped request. Original attachment filenames are not stored. Unsupported, mismatched, or over-budget attachments—including video, SVG, documents, archives, and executables—are discarded and shown as omitted. Images are retained for up to 30 days on Free, 90 days on a paid plan, or 7 days when received in a locked mailbox. A message that exceeds the published per-message safety limits may be rejected.

5. Access rules and retention

6. Your controls

7. Subscriptions and payments

Subscriptions are sold through Apple's App Store using StoreKit. Apple handles payment details. ReviewBell receives and verifies signed subscription status, transaction identifiers represented as keyed digests, product tier, expiration, refund, revoke, billing-retry, and grace-period events so access can be applied across devices.

8. Service providers and disclosures

We use Apple and Google for store access, Google Cloud Storage for read-only historical Play reports, Google Cloud Pub/Sub for required real-time Play notifications, Apple for authentication and subscriptions, Cloudflare for application processing, email routing and sending, databases, object storage, queues, rate limiting, logs, and site hosting, and OpenAI only for AI actions you request. These providers process data under their own terms and as needed to perform those functions.

We may disclose information when legally required, to protect users or the service, or in connection with a business transfer subject to appropriate safeguards. We do not sell or rent support-message content or use it for cross-context behavioral advertising.

9. Website measurement

The ReviewBell website uses Reddit Pixel and LinkedIn Insight Tag to measure site visits and Mac App Store link clicks. Those providers may process cookies, IP address, browser/device data, URL, referrer, and advertising identifiers. We do not intentionally send store credentials, review content, support messages, names, email addresses, or phone numbers to these tags; advanced or enhanced matching is not configured.

See the Reddit Privacy Policy and LinkedIn Privacy Policy.

10. Security and appropriate use

We use access controls, tenant-scoped database relationships, encryption, rate limits, suppression rules, and retention jobs. No internet service is risk-free. Hosted support email is intended for ordinary product-support communications, not health records, financial-account data, government identifiers, legal secrets, or other regulated or highly sensitive information.

11. International processing and children

Service providers may process data in countries other than yours. ReviewBell is a developer tool, is not directed to children under 13, and should not be used to intentionally collect children's data through a hosted address.

12. Changes and contact

We will update the date above when this policy changes and will provide additional notice when appropriate. Privacy questions or requests can be sent to privacy@hello-support.com. Abuse reports can be sent to abuse@hello-support.com.