Policies
The agreements and policies that govern Recovea. Written to be read: every commitment in them is one we can keep today.
Using Recovea
The agreement governing your use of the Recovea platform.
What you may and may not do with the service.
Your keys, your provider relationships: we never resell or mark up tokens, and you pay your providers directly.
Cancel any time, in-product; we do not block traffic over billing.
How to reach us, what to expect, and when.
Our availability posture, stated honestly: fail-open by design, and no contractual uptime SLA on self-serve plans.
The terms for visiting recovea.ai itself.
Privacy & data
What we collect, what we never collect, and how long we keep it.
The cookies and similar technologies this site uses.
Processor terms for business customers, incorporated automatically where we process personal data for you.
The third parties that process data on our behalf, and how we announce changes.
Retention windows by plan and data class, and how deletion actually works.
CCPA/CPRA and state service-provider terms, part of the DPA by default.
Security & trust
Our security posture, as built — no claims ahead of reality.
How to report a security issue, and the safe harbor for good-faith research.
Measured vs. verified, estimates, and the limits of every number we show.
How we govern our own use of AI and the boundaries we hold.
What receipts and ledger records are — and what relying on them does and does not mean.
Where we are on accessibility and how to reach us about barriers.
US export-control and sanctions compliance for use of the service.
Apps & tools
The terms for npx recovea and our other local tools.
Exactly what the SDK, CLI, and local tools send home — and what they never do.
The terms for building against the Recovea API.
Licenses for our SDKs, open-source components, and the open receipt format.