Privacy Policy
Last updated: August 12, 2026
This describes what the Follow Up Boss MCP Server (the "Service"), operated by the team at Reva AI Solutions, collects, stores, and does not store — written to match how the Service is actually built, not generic boilerplate.
- Your Follow Up Boss API key — it's used per-request to reach Follow Up Boss on your behalf, and is never written to our database.
- Any data from your Follow Up Boss account (contacts, deals, notes, calls, or anything else a tool call returns) — it passes straight through to your AI application and is never written to our database. We log which tool was called and when, for your own usage history — never the arguments or the data returned.
1. What we collect
| Data | Why |
|---|---|
| Email address | Identifies your account; used if we need to contact you about it. |
| A one-way hash of the API key we issue you | Lets us verify your requests without storing the key itself in readable form. |
| Account status, trial start/end dates, request count | Enforces trial limits and determines whether your account is active. |
| Which tool you called and when (e.g. "createTask" at a timestamp) | Powers the usage history and reports shown in My Account — never includes the arguments you sent or the data Follow Up Boss returned. |
| Basic request metadata (timestamp, HTTP method, URL path, status code) | Collected automatically by our hosting infrastructure (Google Cloud Run) for operating the Service — not something we log ourselves. |
This is stored in Google Cloud Firestore, in a single record per account. There is no other database or spreadsheet with your data in it.
2. How your Follow Up Boss key and data flow through the Service
When your AI application calls the Service, your Follow Up Boss API key travels with that one request, is used to start or reuse a short-lived process scoped only to you, and is discarded when that process ends (automatically, after a period of inactivity, or whenever our infrastructure restarts — whichever comes first). The same is true of any data Follow Up Boss returns: it's relayed directly back to your AI application and never written anywhere on our side.
One honest caveat: if the underlying Follow Up Boss connector software writes a diagnostic or error message to its error stream, that message is captured in our infrastructure logs (for debugging purposes) the same as any other server error would be. This is different from your actual data or tool results, which are never logged.
3. Cookies and tracking
We don't use cookies, analytics scripts, or third-party trackers on this site.
4. Who we share data with
We don't sell or share your data with third parties for marketing purposes. The only parties involved are:
- Google Cloud — hosts the Service (Cloud Run) and stores your account record (Firestore).
- Follow Up Boss — the CRM you're connecting to, using your own API key. Your interactions with your own Follow Up Boss account are governed by Follow Up Boss's own privacy policy, not ours.
5. Data retention and deletion
We keep your account record for as long as your account is active or on trial. To request deletion of your account record, contact us — we'll remove it. Since we never stored your Follow Up Boss key or data in the first place, there's nothing further to delete on that front.
6. Security
All traffic to the Service is encrypted (HTTPS). The API key we issue you is stored only as a one-way hash, not in plain text. Access to our infrastructure follows the principle of least privilege.
7. Children's privacy
The Service is intended for business use by real estate professionals and is not directed at, or knowingly used by, children under 18.
8. Changes to this policy
We may update this policy from time to time; the "last updated" date at the top will reflect the most recent change.
9. Contact
Questions about this policy or a data deletion request: revaaisolutions.com.