THE SHORT VERSION
We use personal information to respond to you, deliver resources and services, and understand how our work performs. We do not sell your personal information. You can stop marketing messages and contact us to exercise your privacy rights.
01 Who we are
RevScaled is the trading brand of MRO VISUALS MARKETING SERVICES - FZCO, based in Dubai, United Arab Emirates. In this policy, “RevScaled”, “we”, “us” and “our” refer to that company. Our privacy contact is admin@revscaled.io.
This policy covers personal information we handle through revscaled.io, our linked resource pages and client portal, enquiries, job applications, business communications, and our content and marketing services.
We are responsible as a data controller when we decide why and how your information is used. When we handle audience or customer information solely on a client's instructions, we act as their service provider or data processor. That client's privacy notice and our agreement with them govern that processing. Contact the relevant business about its campaign; we can help route a request concerning information we hold for it.
02 Information we collect
What we receive depends on how you interact with us:
- Enquiries and bookings: your name, email address, phone number, business or social profile, appointment details, and information you provide in forms, emails or messages.
- Creative applications: your contact details, location, portfolio and work samples, editing experience, skills, availability, expected pay and other answers you provide, including drafts saved before submission.
- Resources and social messages: your email, requested guide or resource, Instagram username or platform identifier where provided, the keyword or message that triggered a request, and the associated post or campaign.
- Client services: contact and account details, briefs, contracts, invoices and payment records, brand materials, footage, voice and images, scripts, feedback, approvals, and channel or campaign performance information. Connected services may also provide access credentials or authorisation tokens needed for agreed work.
- Calls and meetings: participant details and, where a meeting is recorded or transcribed, audio, video, transcripts, summaries and action items. If you prefer a meeting without recording or AI notes, tell us before the meeting or ask the host when it starts.
- Website and link activity: IP address, browser and device details, approximate location derived from the connection, referring page, pages and links used, timestamps, and engagement such as scroll depth or time on a resource page. Some resource visits can be linked to an earlier signup or DM request.
- Campaign attribution: source links, UTM campaign parameters, advertising click identifiers where present, and a browser visitor identifier used on resource pages.
We receive information directly from you, from clients and their authorised team members, from connected platforms, and from publicly available business websites and social profiles used for relevant research. Please avoid sending sensitive personal information that is unnecessary for the service.
03 How we use it
We use information to answer enquiries, arrange calls, deliver requested resources, provide and manage client services, assess creative applications and contact applicants about editing opportunities, administer accounts and payments, research and create content, measure campaign performance, maintain security, resolve disputes and meet legal obligations. For relevant opportunities, we may share submitted application details with recruitment and placement partners and prospective hiring clients.
We use transcription and AI-assisted tools for research, drafting, editing, summaries and internal organisation. Relevant briefs, transcripts and source materials may be processed by these providers. AI-assisted work does not change your ability to contact us about the information used.
Our legal grounds
The legal ground depends on the activity and the law that applies:
- Contract or steps you request before a contract: processing needed to enter into or perform a service agreement with you personally.
- Consent: activities that require your permission, including marketing or optional tracking where applicable law requires consent. You may withdraw it at any time without affecting earlier lawful processing.
- Legal obligations: required accounting, tax, regulatory and lawful disclosure duties.
- Legitimate interests, where recognised by applicable law: relevant business communications, managing relationships with contacts who act for business clients, assessing applicants and matching them to relevant opportunities, service improvement, research, fraud prevention, security and protecting legal rights, subject to your interests and rights. Under EU or UK data protection law, these are the interests we assess when relying on this ground.
Providing information is generally voluntary. Without contact details we may be unable to answer you or deliver a resource; without the details needed for an account, invoice or agreed work, we may be unable to provide that service. This policy does not itself constitute consent.
04 Emails & messages
When you request a resource, we use the details you supply to fulfil that request. We may also send related follow-ups or marketing about our services, subject to the permissions and legal requirements that apply. A request for a resource is not, by itself, consent to ongoing marketing.
Applicant thank-you emails may include a small image that records a first observed open. Email apps may block or prefetch images, so this is an approximate signal.
Use the unsubscribe link in a marketing email, or email admin@revscaled.io to ask us to stop marketing. For social or direct messages, tell us in the conversation or contact that address. If an opt-out link fails or messages continue, contact us so we can investigate.
Opting out of marketing does not stop necessary service, billing or account-security messages. We may retain a limited record of your preference so we do not contact you again by mistake.
07 International transfers
We operate from the UAE and work with people and providers in other countries. Your information may be processed outside your country, including in the UAE, United States and countries where our providers or authorised team members operate. Our PostHog website integration uses its US endpoint.
Cross-border processing is subject to the requirements of applicable law. Where EU or UK transfer restrictions apply, an appropriate transfer mechanism is required, such as an applicable adequacy decision or approved contractual safeguards, with additional measures where necessary. Contact admin@revscaled.io for information about the destination and safeguards relevant to your data, or to request a copy of applicable safeguards.
08 How long we keep it
There is no single retention period for all information. We determine how long it is needed by its purpose, the relationship involved, legal recordkeeping requirements, and any outstanding dispute or claim.
- Enquiries and resource requests: for fulfilment, relevant follow-up and management of the relationship, taking account of inactivity and any objection or deletion request.
- Creative applications: while assessing current or relevant future opportunities, with periodic review and deletion when no longer needed, taking account of any objection or deletion request.
- Client files, media and meeting records: for delivery, revisions, agreed access and the administration or protection of the client relationship, including relevant contractual obligations.
- Financial and legal records: for applicable accounting, tax and legal retention periods.
- Analytics, logs and backups: according to the operational purpose and the retention or backup settings of the system involved.
We are required to delete or anonymise personal information when it is no longer needed for a lawful purpose. Some records may need to remain after a deletion request for legal duties, claims or suppression of further marketing. Backup copies may remain until overwritten through the relevant backup cycle. Contact us for the criteria applicable to a particular record.
09 Security
We use measures such as encrypted website connections, account authentication and access controls to protect information. The appropriate protections depend on the information and the service. No method of storage or transmission is completely secure.
Please protect your account and sign-in links. If you believe information has been exposed or an account misused, contact admin@revscaled.io.
10 Your rights
Depending on your location and the law that applies, you may have the right to:
- Ask what personal information we hold and obtain access or a copy.
- Correct inaccurate or incomplete information.
- Request deletion or restriction of processing.
- Object to certain uses, including direct marketing.
- Receive eligible information in a portable format.
- Withdraw consent where processing relies on it.
- Challenge a decision based solely on automated processing where the law provides that protection.
- Lodge a complaint with the relevant data protection authority.
Email admin@revscaled.io with your request and enough context to locate the information, such as the email used or the resource or client involved. We may need to verify your identity and authority before disclosing or changing records. Please do not send identity documents unless we request them through an appropriate channel.
We respond within the period required by applicable law. For requests under EU or UK data protection law, this is normally one month; permitted extensions for complexity or multiple requests will be explained. Rights can be subject to legal exceptions, and we will explain if we cannot fulfil a request.
You can complain to the competent UAE authority or, where EU or UK law applies, your local supervisory authority. In the UK this is the Information Commissioner's Office; EU authorities are listed by the European Data Protection Board. You do not have to contact us before making a complaint.
11 Children
Our services are intended for adults and businesses, not children under 18. If you believe a child has provided us with personal information, contact us so we can assess the situation and remove information where appropriate.
12 Changes & contact
We may update this policy as our services or legal obligations change. The date at the top shows the latest revision. Where required, we will provide an additional notice of material changes or seek consent for a new use.
Back to top