TheSEOSaaS
ON THIS PAGE

Last updated 12 June 2026. Earlier versions on request.

LEGAL

Privacy Policy

What we collect, why we collect it, and how long we keep it. If anything here is unclear, email privacy@theseosaas.com and we'll explain it in normal words.

01

What we collect

Your email address, and a name and avatar if Google supplies them. Everything else we hold is about websites: the pages we crawled, the findings we produced, and the keywords you asked us to track.
02

There are no passwords

Sign-in is Google OAuth or an emailed link, so we never receive or store a password. Sessions are kept as a SHA-256 hash of a random token — a copy of our database cannot be replayed as a login.
03

Audits run before you have an account

A free audit needs no sign-up, so at that point the only thing tied to it is the domain you entered and the IP that requested it, which we use for rate limiting. Give us an email for the report link and we'll use it for that, and to tell you the audit finished.
04

Who we share it with

Processors only, and only what they need: Serpex for search results, OpenRouter for generation, Dodo Payments for billing, and our email provider for delivery. We do not sell data and we run no advertising trackers.
05

How long we keep it

Crawl and ranking history stays while your account is active, because trend charts are worthless without it. Thirty days after you close your account we delete it. Public reports are removed within one business day of you asking.
06

Your rights

Ask us for a copy of your data, a correction, or deletion, and we'll action it within thirty days. Email privacy@theseosaas.com — no form, no ticket queue.