LEGAL TEMPLATE · PRIVACY
Privacy Policy
Template — review with a lawyer before relying on it. This policy uses placeholders for [YOUR LEGAL ENTITY], [JURISDICTION], and [CONTACT EMAIL]. Do not treat it as legal advice.
Last updated: July 5, 2026
Who this policy covers
This Privacy Policy describes how [YOUR LEGAL ENTITY] (“DeepSEOAnalysis,” “we,” “us,” or “our”) handles information for DeepSEOAnalysis.com, a free no-signup SEO and AI-visibility audit service, and related account, monitoring, billing, and email features.
If you use the service on behalf of a company or client, make sure you are authorized to submit the URL and receive the resulting audit data.
What we collect
- Audit inputs and crawl data. URLs you submit, normalized target domains, HTTP responses, page metadata, links, images, structured data, robots/sitemap signals, Core Web Vitals/PageSpeed data, CMS fingerprints, detected issues, generated fixes, report status, errors, and timestamps. Audit reports are stored so the report URL can be opened later.
- Account data. If you create an account, we store your email address, a scrypt-hashed password, account creation time, email verification state, saved reports, monitored sites, and subscription/plan state.
- Session data. Logged-in users receive an httpOnly, secure session cookie named
deepseo_session. The cookie is used only to keep you signed in. - IP address for security and rate limiting. We use your IP address transiently to enforce anonymous audit and authentication rate limits and to protect the service from abuse. Cloudflare may also process IP addresses as our CDN/security provider.
- Payment and email data. Paddle processes payment details for paid plans. We store subscription identifiers/status, not full card numbers. Resend processes email delivery for transactional and monitoring emails.
Why we use the data
- To run SEO, Core Web Vitals, structured data, internal linking, CMS, and AI-visibility audits.
- To store and display shareable reports under unguessable report URLs.
- To create accounts, authenticate sessions, save history, and monitor sites you choose to monitor.
- To send transactional emails and monitoring digests when those features are enabled.
- To process paid plans, subscription state, invoices, taxes, refunds, and account access through Paddle.
- To prevent abuse, enforce rate limits, troubleshoot errors, improve the product, and keep the service secure.
Cookies and tracking
DeepSEOAnalysis does not use advertising cookies, retargeting pixels, or third-party ad trackers. The application cookie we set is the httpOnly session cookie used for logged-in accounts. Rate limiting is handled server-side with IP-based keys. Cloudflare may set strictly necessary security cookies when needed to protect the site.
Third-party subprocessors
- Google PageSpeed Insights API — performance and Core Web Vitals/PageSpeed audit data.
- DataForSEO — SEO, keyword, ranking, or SERP-related data where product features require it.
- Anthropic — optional AI-visibility probe when enabled; used to evaluate AI-citation readiness, not for advertising.
- Paddle — payments, checkout, subscriptions, invoices, taxes, refunds, and billing portal workflows.
- Resend — transactional email and monitoring digest delivery.
- Cloudflare — CDN, DNS, security, DDoS protection, caching, and abuse prevention.
Retention
- Anonymous audit reports are stored so the shareable report link works; we may delete anonymous reports after 30 days or sooner if needed for security or operations.
- Account data, saved reports, monitored sites, and subscription state are retained while your account is active or as needed to provide the service.
- The session cookie can last up to 30 days unless you log out sooner.
- Rate-limit keys expire after their rate-limit windows plus a short operational buffer.
- Billing, tax, security, and abuse-prevention records may be retained longer where required by law or legitimate operational needs.
Your rights and choices
Depending on where you live, you may have rights to access, correct, export, delete, or object to certain processing of your personal information. To make a request, email [CONTACT EMAIL] with your account email, report URL, or other information needed to locate the data. We may need to verify your request before acting on it.
You can avoid account data by using anonymous audits. You can clear browser cookies to remove the local session cookie, though this may sign you out.
Children
DeepSEOAnalysis is not intended for children. Do not use the service if you are under the age required to consent to online services in [JURISDICTION]. If you believe a child provided personal information, contact [CONTACT EMAIL].
Changes and contact
We may update this policy as the product, subprocessors, or legal requirements change. The “Last updated” date shows when the policy was last revised.
Operator: [YOUR LEGAL ENTITY]. Governing location: [JURISDICTION]. Contact: [CONTACT EMAIL].
FAQ
Privacy questions.
Does DeepSEOAnalysis sell audit data?
No. This template policy states that DeepSEOAnalysis does not sell personal information or use ad trackers. Audit data is used to run, store, secure, and improve the service.
What cookies does DeepSEOAnalysis use?
The app uses an httpOnly session cookie for logged-in accounts. Rate limiting is server-side and IP-based. There are no advertising cookies or retargeting pixels described in this policy.
How do I request deletion?
Email the contact listed in the policy with your account email or audit report URL. The operator may need to verify the request before deleting or anonymizing data.