Legal
Privacy Policy
Review Canopy provides business review pages, customer feedback and direct-review forms, review links, QR and NFC attribution, coupons, notifications, and reporting features. This policy explains the information processed through the current Review Canopy application.
Who receives consumer submissions
When you submit information on a Review Canopy page associated with a business or location, you provide it through the Review Canopy platform for that business. Review Canopy processes and stores the submission to operate the service. The applicable business, its authorized Review Canopy users, and notification recipients configured for that business may receive and use the submission for customer feedback, review moderation, coupon fulfillment, requested follow-up, and consented communications.
If you ask the business to contact you, Review Canopy may notify the business using the name, email, feedback, and comments you submitted. If you submit a direct Review Canopy review, the business may approve the review for public display. Public reviews can show your submitted name, review text, rating, and approved photos; the application does not display your email address with the public review.
Information from account and business users
- Account name and email address.
- A one-way password hash, or linked Google or Microsoft identity information such as provider, verified issuer, stable provider subject, and an email snapshot when available.
- Email-verification, password-reset, and invitation records. Raw account tokens are not stored; token hashes and expiration/use timestamps are stored.
- Business names, descriptions, websites, contact details, locations, logos, colors, public-page settings, review links, notification recipients, marketing endpoint configuration, coupon settings, review-page content, and widget configuration.
- Business ownership and access relationships, roles, notification preferences, account timestamps, and authentication/security events.
- Business name and email submitted to request activation of a Review Canopy QR or NFC device.
- Business name, website, email address, submission timestamp, and optional free-stand entry submitted through Get Started. Platform admins can access these details to respond to your request and handle your entry; submitting this form does not subscribe you to marketing emails.
Information from consumers
- Name and email when a form requests them.
- Initial feedback, issue category, comments, whether business contact was requested, and the time feedback was submitted.
- Direct-review rating, review text, optional structured answers, uploaded review photos and original filenames, moderation/publication status, and the name and email supplied with the review.
- Marketing or follow-up selection, consent and unsubscribe timestamps, and an unsubscribe token.
- Coupon code, coupon progress, claim and redemption information, and the name and email used to claim it.
- The review platform selected or recorded, and attribution to the applicable business, review link, widget, QR/NFC device, or page.
- Approximate city and state obtained from hosting/CDN location headers or an IP-location service when a customer record or direct review is submitted.
Activity, device, and analytics information
Depending on the page and interaction, Review Canopy can process page views, form and modal activity, review-link clicks, direct-review activity, coupon activity, durations, traffic source, referring URL and domain, requested path, UTM campaign values, user agent, inferred device type, bot indicators, and associated business, device, link, or widget identifiers.
The application creates random visitor and session identifiers and stores HMAC hashes of those identifiers in analytics or customer-session records. It also stores an HMAC hash derived from the request IP address when the analytics salt is configured. The database schema does not store a raw IP address in analytics or customer-session records, but a request IP may be processed transiently for security throttling and approximate location lookup. Referring URLs, request paths, user agents, and campaign parameters may themselves contain information supplied by a browser or link creator.
Cookies and browser storage
Review Canopy uses a server session cookie for essential functions such as authentication, security tokens, form protection, and the OAuth sign-in transaction. It also uses rs_cookie_consent to remember that the activity-cookie notice was acknowledged, rs_vid and rs_sid for activity measurement, and local or session browser storage for notice and temporary page state.
Business-page visits and interaction analytics are recorded without requiring the activity-cookie notice to be acknowledged or the customer form's marketing checkbox to be selected. The marketing selection is stored separately and applies to future follow-ups, newsletters, coupons, updates, and offers.
Details and current durations are provided in the Cookie and Browser Storage Policy.
How information is used
- Operate, secure, troubleshoot, and improve Review Canopy.
- Create and authenticate accounts, support password and OAuth sign-in, and manage business access.
- Publish business pages and route visitors to business-selected review platforms.
- Store feedback and reviews, provide them to the applicable business, moderate direct reviews, and display approved content.
- Notify the business about feedback, contact requests, submitted reviews, and coupon activity.
- Provide coupons and record claim, progress, and redemption activity.
- Send account, security, operational, requested, or consented messages.
- Measure activity and attribution, generate business reports, prevent duplicate or abusive submissions, and enforce rate limits.
When information is disclosed
- Applicable business: customer submissions and related activity are available to the business and its authorized users. Feedback and contact-request details may also be sent to the business owner or configured feedback-notification email addresses.
- Business-configured marketing service: when a consumer expressly submits a marketing or coupon form and the business has configured an endpoint, Review Canopy posts the submitted email and a consent indicator to that endpoint.
- Review Canopy operational recipients: a QR or NFC device activation request can be sent to the configured activation-support email address so the request can be fulfilled.
- Operational providers: information may be processed by services configured for hosting/CDN delivery, database hosting, email delivery, approximate IP location, or account authentication. The repository does not establish a complete verified production subprocessor list.
- Google or Microsoft: if OAuth is enabled and selected, the browser is redirected to that provider, which processes the sign-in under its own policies and may use its own cookies.
- Review sites and business links: selecting a third-party review platform or other business link sends the browser to that third party. Review Canopy does not control that party's collection or policies.
- Browser-loaded resources: public site pages currently request fonts from Google Fonts, and business-supplied logos or images may load from a business-selected host. Those requests can disclose ordinary request information to the resource host.
- Legal and safety reasons: information may be preserved or disclosed when reasonably necessary to comply with valid legal process, protect the service or users, investigate abuse, or enforce applicable terms.
Security
Current safeguards include prepared database statements, one-way password hashing, hashed account-action tokens, restricted business access, CSRF protection, session hardening, rate limits, OAuth state/nonce/PKCE checks, and filtered security logging. Production cookies are configured as Secure where appropriate, and session and activity identifier cookies are HttpOnly. No internet service can guarantee absolute security.
Retention
The current schema retains account, business, customer, feedback, review, coupon, notification, and analytics records until they are deleted through available administrative functions, associated-record deletion, or operational maintenance. Some short-lived authentication records carry explicit expiration timestamps, and browser identifiers have the durations described in the Cookie Policy. The repository does not implement or verify a single 24-month retention rule or a complete production deletion schedule.
Your choices and requests
- Business account users can update account, business, notification, and public-page settings available in the dashboard.
- Marketing consent associated with a customer record can be withdrawn through a supported unsubscribe link. Unsubscribing updates the Review Canopy customer consent record; a business or its separately configured marketing service may need to process its own copy or suppression record.
- You can decline the optional marketing checkbox on feedback/direct-review forms. Coupon and dedicated marketing forms currently require the displayed communication consent to submit those forms.
- You can clear or block Review Canopy cookies and browser storage through browser controls. Blocking activity identifiers can reduce the accuracy of unique-visitor and session reporting but does not prevent individual visits and interactions from being counted.
The application does not currently provide consumers with a self-service portal to access, export, correct, or delete customer feedback records. The process and verified contact channel for privacy requests require operational and legal confirmation.
Children
Review Canopy is designed for business account users and customers providing feedback about a business experience; it is not designed as a child-directed service. The current application does not perform age verification.
Policy updates
We may revise this policy as the service, providers, or legal requirements change. The updated version will be posted here with a revised date. Material notice practices require legal confirmation.
Contact
Privacy and policy questions can be sent to feed@elleon.ai.