Privacy Policy

Effective date: 11 July 2026 · Last updated: 11 July 2026

Reyuko ("Reyuko", "we", "us") provides a business management and accounting application (the "Service"), available as a desktop application and, for certain features, a companion cloud service. This Privacy Policy explains what information we collect, how we use it, and the choices you have.

1. Information we collect

Account information. When you create a Reyuko account — either with an email and password, or by signing in with Google — we collect your name, email address, and (if you use Google Sign-In) the profile information Google shares with us (name, email, profile photo). We use Google Sign-In only to authenticate you; we do not request access to your Gmail, Drive, Calendar, or other Google data beyond your basic profile.

Business data you enter. Reyuko is an accounting and business-management tool. Data you or your team enter — contacts, invoices, products, inventory records, ledger entries, and similar business records — is stored so the Service can function. This data belongs to you (see Terms of Service, "Your data").

Local data. The Reyuko desktop application stores your business data primarily in a local database on your own device. Cloud features (multi-device sync, backup, AI reporting) transmit relevant data to our servers only when you use those specific features.

Usage & device information. We collect limited technical information needed to operate the Service reliably: application version, operating system, device identifiers used for license activation, and request logs (timestamps, IP address, error details) on our servers.

Payment information. Subscription payments are processed by third-party payment providers (including Xendit for Southeast Asia, and a Merchant of Record for international customers). Reyuko does not receive or store your full card number, bank account number, or other raw payment credentials — these are handled directly by the payment processor.

2. How we use information

3. How we store and protect data

Cloud-side business data (for customers using cloud sync/backup) is stored in a multi-tenant PostgreSQL database, logically isolated per business account (tenant). Backups are encrypted and stored with Cloudflare R2. Passwords are never stored in plain text. We apply reasonable technical and organizational measures to protect your data, but no system can be guaranteed 100% secure.

4. Third parties we share data with

We do not sell your personal information. We share data only with service providers who help us run Reyuko, under confidentiality obligations:

We may also disclose information if required by law, or to protect the rights, property, or safety of Reyuko, our users, or the public.

5. Data retention

We retain account and business data for as long as your account is active, plus a reasonable period afterward to allow account recovery and to meet legal/accounting record-keeping obligations. You can request deletion of your account and associated data at any time (see Section 7).

6. International data transfers

Reyuko serves customers in multiple countries. Depending on your region and plan, your data may be processed on servers located outside your country, operating in globally distributed data centers. We take steps to ensure such transfers are protected consistently with this Policy.

7. Your rights and choices

Depending on your jurisdiction (including Indonesia's Personal Data Protection Law (UU PDP), the EU/UK GDPR, and similar laws elsewhere), you may have the following rights over your personal data:

To exercise any of these rights, email us at support@reyuko.net from your account email. We will respond within a reasonable period and, where required by law, within 30 days. We may need to verify your identity before acting on a request. Exercising these rights is free unless a request is manifestly unfounded or excessive.

8. Cookies and similar technologies

Our public website (reyuko.net) and admin dashboard use a small number of cookies and similar technologies that are necessary to operate the site, keep you signed in, and understand basic, aggregated usage. The Reyuko desktop application itself does not rely on advertising cookies. We do not use third-party advertising trackers, and we do not sell data collected through cookies. Where required by law, we ask for consent to any non-essential cookies; you can also control cookies through your browser settings.

9. Communications

We send transactional messages required to run your account (e.g. verification, receipts, security and billing notices) — these are not optional while you have an account. Any product or marketing emails are optional, and you can unsubscribe at any time using the link in the message or by contacting us.

10. Security incidents

If we become aware of a personal-data breach that is likely to affect your rights, we will notify you and the relevant authorities as required by applicable law, without undue delay, and describe the nature of the incident and the steps we are taking.

11. Complaints

If you have a concern about how we handle your data, please contact us first so we can try to resolve it. You also have the right to lodge a complaint with the data-protection authority in your country (for example, the relevant authority under Indonesia's UU PDP, or your local supervisory authority in the EU/UK).

12. Children's privacy

Reyuko is a business tool intended for use by business owners, staff, and professionals. It is not directed at children, and we do not knowingly collect personal information from children.

13. Changes to this Policy

We may update this Privacy Policy from time to time. Material changes will be announced through the Service or by email, and we will update the "Last updated" date above. Continued use of the Service after changes take effect constitutes acceptance of the updated Policy.

14. Contact

Questions about this Privacy Policy or your data can be sent to support@reyuko.net.