Last updated: August 8, 2026

Privacy Policy

How Chrovia collects, uses, shares, and protects personal information when you use our websites, Console, desktop products, and related services.

1. Who we are

This Privacy Policy explains how Chrovia (“Chrovia”, “we”, “us”, or “our”) handles information in connection with:

  • our websites, including getchrovia.com and Console;
  • Persona Hub, Merca, and related desktop software;
  • the Chrovia SDK distribution surfaces we operate;
  • account, license, download, update, and support services tied to those products.

If you do not agree with this Policy, do not use the services. For product terms, see our Terms of Service, Refund Policy, and Software License.

Contact for privacy requests: support@getchrovia.com.

2. Scope

This Policy covers personal information we process as an operator of Chrovia products and websites.

It does not cover:

  • third-party websites, apps, or services you open through a Chrovia browser instance;
  • proxy, VPN, or network providers you configure yourself;
  • destination sites you visit while using Persona Hub, Merca, or the SDK.

Those third parties have their own privacy practices. Chrovia is a technical platform; your use of destination services remains your responsibility.

3. Information we collect

We collect only what we need to operate, secure, and improve the services. Categories typically include:

Account and contact information

Name, email address, authentication data, and optional profile details you provide when creating a Console account or contacting support. If you use Google sign-in where enabled, we receive the account identifiers required to complete authentication.

License, billing, and commercial records

License identifiers, entitlement selections, issuance and revocation state, subscription tier or quota metadata, and related commercial history needed to provide authorized access. Where you use paid services, we may also process billing status, customer and subscription identifiers from our payment partner, transaction references, and related commercial history.

Product, profile, and configuration data

Information needed to prepare and run browser instances, such as profile or store names, Extended Preferences material, signed internal configuration issued for your account, and product settings you store in Console or a desktop agent.

Technical, device, and diagnostic data

IP address, device and OS type, app or browser version, language, timestamps, and limited operational logs used for reliability, abuse prevention, and support. Desktop products may include diagnostic details you choose to send when contacting support.

Payment and commercial billing

Trial license issuance and free-tier use do not require payment card details. Where you purchase a paid subscription, commercial license, or other paid service online, checkout is handled by our payment partner Paddle.

Paddle may collect payment-card details, billing name and address, tax identifiers, and other information needed to process payment, calculate tax, prevent fraud, and issue invoices or receipts. We do not store full card numbers on Chrovia servers. We may receive and store limited billing metadata needed to operate your account, such as Paddle customer or subscription identifiers, product or price references, subscription status, renewal or cancellation timing, and transaction or invoice references.

Where Paddle acts as merchant of record, Paddle’s own privacy notice also applies to personal information it processes as an independent controller or as otherwise described by Paddle.

Support and communications

Messages, attachments, and related metadata you send to support or through product feedback channels.

Cookies and similar technologies

Console uses session cookies or equivalent storage to keep you signed in and protect authenticated requests. We may also store essential preferences such as locale. Public marketing pages covered by this Policy do not use advertising trackers.

4. What we do not need for core operation

We do not need the full browsing content of Persona Hub, Merca, or SDK sessions to operate the core product. Destination-site activity generally remains on your machine unless you intentionally send it to us for support, or a product feature you enable transmits it as part of that feature’s documented behavior.

We do not sell personal information.

5. How we use information

We use information to:

  • create and secure accounts;
  • authenticate users and protect against abuse, fraud, and unauthorized access;
  • issue, validate, renew, revoke, and enforce Chrovia Licenses and, where configured, online leases;
  • deliver downloads, updates, and product control-plane features;
  • operate Console, Persona Hub, Merca, and related services;
  • provide customer support and investigate incidents;
  • improve reliability, performance, and product quality using operational metrics, including aggregated or de-identified metrics;
  • comply with law and enforce our terms.

6. Legal bases

Where required by applicable law, we process personal information on one or more of the following bases:

  • Contract — to provide the services you request and administer your account and licenses;
  • Legitimate interests — security, fraud prevention, service improvement, and internal operations, balanced against your rights;
  • Legal obligation — tax, accounting, or other mandatory retention and disclosure duties;
  • Consent — where we ask for it; you may withdraw consent where applicable.

7. Sharing

We share information only as needed to run Chrovia, including with:

  • infrastructure providers for hosting, databases, object storage, email, authentication, and similar services;
  • Paddle and related payment infrastructure, when commercial checkout, subscriptions, invoices, refunds, or billing portals are used;
  • professional advisers under confidentiality obligations;
  • affiliates or successors in a merger, acquisition, financing, or sale of assets, subject to appropriate protections.

We may also disclose information if we reasonably believe disclosure is necessary to:

  • comply with law, regulation, legal process, or governmental request;
  • detect, prevent, or address fraud, security, or technical issues;
  • enforce our agreements or investigate potential violations;
  • protect the rights, property, or safety of Chrovia, our users, or the public.

Service providers may process data only under our instructions and applicable privacy law. We do not authorize them to use your personal information for their own unrelated marketing.

8. International transfers

Chrovia may process information in the regions where our infrastructure and operators are located. When personal information is transferred across borders, we take steps designed to provide an appropriate level of protection, such as contractual safeguards where required.

9. Retention

We retain account, license, billing, and operational records for as long as needed to provide the service, meet legal obligations, resolve disputes, and enforce agreements.

Typical operational practice:

  • active account and license records: while the account or license remains in use, then for a limited period needed for security, accounting, or legal purposes;
  • diagnostic and crash logs: short retention sufficient for debugging and support;
  • support correspondence: for a reasonable period after the last contact;
  • backups: rolling windows, then deleted or overwritten according to infrastructure policy.

When data is no longer required, we delete or de-identify it according to our retention practices and system capabilities.

10. Security

We use administrative, technical, and organizational measures appropriate to the sensitivity of the data, including:

  • transport encryption for Console and related APIs;
  • access controls and least-privilege operational practices;
  • signed Chrovia License documents and signed Extended Preferences where issuer control is required;
  • fail-closed authorization checks in the browser kernel for gated capabilities.

No method of transmission or storage is perfectly secure. You are responsible for protecting local machines, license files, credentials, and endpoints under your control. If you believe a security issue affects Chrovia, see our Security page.

11. Your rights and choices

Depending on your location, you may have rights to:

  • access a copy of certain personal information;
  • correct inaccurate information;
  • delete information, subject to legal or legitimate retention needs;
  • export information in a portable format;
  • object to or restrict certain processing;
  • withdraw consent where processing is based on consent.

California residents may also have rights under the CCPA/CPRA, including rights to know, delete, and correct. We do not sell personal information.

To make a privacy request, email support@getchrovia.com. We may need to verify your identity before acting. Some rights are not absolute and may be limited by law or our legitimate interests.

You can update certain account details in Console. You may also control browser-local data by deleting local profiles or uninstalling desktop software.

12. Children

Chrovia products and services are intended for adults and commercial or professional use. They are not directed to children. Consistent with our Terms of Service, you must be at least 18, or the age of majority in your jurisdiction, to create an account. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, contact us and we will take appropriate steps to delete it.

13. Third-party links and integrations

Our websites or products may link to third-party resources or integrate optional third-party sign-in, payment, or infrastructure services. This Policy does not control those third parties. Review their policies before providing them with information.

14. Changes

We may update this Privacy Policy from time to time. When we do, we will change the “Last updated” date above. For material changes, we may also provide additional notice through the website, Console, or email where appropriate. Continued use of the services after an update means you acknowledge the revised Policy.

15. Contact

Privacy questions and requests: support@getchrovia.com.