Privacy policy
Draft pending legal review. It describes how the service works today and will be replaced by the reviewed version before launch.
What we collect
- Account data: name, email address, password hash and optional two-factor or passkey credentials.
- Workspace data: projects, domains, keywords, prompts, competitors, branding and report recipients you add.
- Connected services: when you connect Google, OAuth tokens and the Search Console and GA4 data you choose to import. Tokens are stored encrypted and access is read-only.
- Billing: plan and payment status from our payment provider. We don't store card numbers.
- Usage: server logs needed to run and secure the service.
How we use it
To provide the service, send the reports and alerts you configure, process payments, keep the service secure and contact you about your account. We don't sell personal data.
Processors
We use third parties to run the service, including hosting, email delivery, payment processing (Razorpay) and search and AI data collection (DataForSEO). Keywords, domains and prompts are sent to data providers to collect results; your personal details are not.
Retention and deletion
Workspace data is kept while the workspace exists. You can delete your account from your profile settings; to delete a whole workspace and its data, email [email protected] and we'll remove it from active systems.
Your rights
Depending on where you live, you may have rights to access, correct, export or delete your personal data, and to object to processing. Email [email protected] to exercise them.