Privacy Policy
Last updated 1 Sept 2026
1. What we collect
REPLACE WITH REVIEWED TEXT — Account data (name, email, agency name, brand assets) via Clerk; billing data via Stripe; the domains you audit and the crawl results; a salted hash of the IP address for free audits, used only for rate limiting.
2. What we do not collect
REPLACE WITH REVIEWED TEXT — We crawl public pages. We do not install anything on your clients' sites, we do not see their customer data, and we do not require Search Console or analytics access.
3. Sub-processors
REPLACE WITH REVIEWED TEXT — List each: Clerk (authentication), Stripe (billing), Neon or Supabase (database), Cloudflare (R2 storage, Turnstile), Resend (email), DataForSEO (crawl data), Google PageSpeed Insights (performance data), OpenAI (report narrative), Sentry (error tracking), Vercel and Hostinger (hosting).
4. Retention
REPLACE WITH REVIEWED TEXT — How long scans, reports and free-audit records are kept, and what happens on account deletion.
5. Your rights
REPLACE WITH REVIEWED TEXT — Access, export, correction and deletion; how to exercise them; the export tool in Settings → Danger zone.