Privacy Policy
Last updated: March 4, 2026
AI SEO Auditor is designed to minimize data collection and process only what is needed to provide
audit and reporting features.
This policy applies to the AI SEO Auditor Chrome extension, related web pages, and supporting backend services.
Data We Collect and Process
1) Data from pages you choose to audit
- URL and page title.
- Meta tags and Open Graph tags.
- Heading text (h1-h4) and structured data (for example JSON-LD).
- Text excerpts from page body content.
- Derived scoring signals (for example word count, FAQ markers, and basic contact-signal detection).
2) Data you enter in the extension
- AI API keys you provide (OpenAI, Anthropic, Google).
- Optional branding/report fields you enter.
- Optional URL lists you submit for bulk audits.
3) Account and license data
- Email address and user ID (if you sign in).
- Authentication/session tokens.
- License key, license status, plan tier, and feature entitlements.
4) Saved audit history
- URL, score, grade, selected provider, and timestamp.
- Report snapshot data used to restore/export prior audits (which can include extracted page data for that audit).
How We Handle and Use Data
- Run page audits and scoring checks.
- Generate AI analysis, citation simulation, and recommendations.
- Save/restore audit history and export records (when enabled).
- Authenticate users, validate licenses, and enforce plan features.
- Provide support, maintain security, and prevent abuse.
We do not sell personal data and do not use extension data for targeted advertising.
Where Data Is Stored
- Local browser storage (chrome.storage.local): settings, API keys, local report state, and session/license state.
- Supabase backend: authentication, licensing, optional encrypted key backup, and cloud audit history.
- AI provider APIs: data sent only when you trigger AI-powered features.
Data Sharing and Third Parties
We share data only as needed to operate the service.
- Supabase (auth/database/backend): supabase.com/privacy
- Stripe (billing, if applicable): stripe.com/privacy
- Anthropic API, OpenAI API, and Google Generative AI API when requested by user actions.
No sale of personal data. No data broker sharing.
Security
- Data is transmitted over HTTPS/TLS.
- If key sync is enabled, API keys are encrypted client-side before backup.
- Access controls are applied on backend data stores.
No system can be guaranteed 100 percent secure, but we apply reasonable safeguards.
Data Retention and Deletion
- Local extension data remains until you clear it, disable features, or uninstall the extension.
- Cloud audit history remains until you delete records or request account deletion.
- Encrypted key backups are removed when sync is disabled or when account/license data is deleted.
To request deletion, contact [email protected].
Chrome Extension Permissions
- activeTab, tabs, scripting, <all_urls>: read/analyze pages you choose to audit.
- storage: save settings, keys, and report state.
- clipboardWrite: copy generated recommendations/code on user action.
Children
The service is not directed to children under 13, and we do not knowingly collect their personal information.
Changes to This Policy
We may update this policy periodically. Material updates will be reflected by the "Last updated" date.