Privacy Policy

Last updated: 8 July 2026

Who we are

Neva is a product of Neva Tech SRL, registered in Algeria. This policy explains what data we collect, how we use it, and how we protect it. If you have any questions, email hello@neva.business.

What Neva does with data

Neva is an AI front desk for solo service providers. When a customer sends a message to one of our users through WhatsApp, Instagram, SMS, or a website widget, Neva reads the message, generates a reply on the pro's behalf, and where relevant creates a booking or a callback request. To do this, Neva processes:

  • The content of the customer's message
  • The pro's own price list and calendar (which the pro provides to us)
  • Basic metadata: timestamp, channel, sender identifier (phone number or handle)

Where the data goes

Messages are sent to OpenAI's API to generate replies. OpenAI processes the data under their API data usage policy and does not use API inputs or outputs to train their models. See openai.com/policies/api-data-usage-policies.

Messages and booking data are stored in our database (Supabase, hosted in the EU) so the pro can review their history and so Neva can maintain conversation context.

We do not sell data. We do not share data with advertisers. We do not use customer messages to train our own models.

Retention

Conversation history is retained for as long as the pro's account is active, plus 90 days after account closure, then deleted. A pro can request earlier deletion at any time by emailing hello@neva.business.

Your rights

If you are a customer whose message was handled by Neva on behalf of a pro, and you would like your data deleted, contact the pro directly or email us at hello@neva.business. We will delete your data within 30 days.

If you are a resident of the EU, UK, or a jurisdiction with equivalent data protection laws, you have the right to access, correct, delete, or export your personal data, and to withdraw consent to processing at any time. Email hello@neva.business to exercise these rights.

Security

Data in transit is encrypted with TLS. Data at rest is encrypted at the database level. Access to production data is restricted to the founder and is logged. We do not currently hold formal certifications (SOC 2, ISO 27001) — we are a pre-launch company and will pursue these as we grow.

Cookies and tracking

Our marketing site uses one first-party analytics cookie to count visitors. We do not use third-party advertising trackers. The signed-in product uses a session cookie for authentication.

Changes

We may update this policy. If we make material changes, we will notify signed-in users by email and update the "Last updated" date at the top of this page.

Contact

Neva Tech SRL — hello@neva.business