Privacy Policy
This Privacy Policy explains what data SEO Climbs collects, how we use it, and the choices you have. We try to keep it plain and honest.
Information we collect
- Account information: your name and email address.
- Google Search Console data, accessed read-only: clicks, impressions, click-through rate, average position, and the queries and pages behind them.
- Google PageSpeed Insights data for your pages.
- Limited usage analytics to understand how the product is used (collected without cookies).
- Billing details, which are processed by our payment provider — we never see or store your full card number.
How we use your information
We use your Search Console and PageSpeed data solely to generate your weekly SEO brief and show it in your dashboard and emails. We use your email to send those briefs and essential account messages. We use aggregate, de-identified usage data to operate and improve the product.
Google API Services User Data Policy — Limited Use
SEO Climbs's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
Specifically: we access your Google Search Console data only to produce the reports you asked for; we do not sell it; we do not use it for advertising; and we do not allow humans to read it, except where you give us permission, where it is necessary for security or to comply with applicable law, or where the data has been aggregated and anonymized.
How your information is shared
We do not sell your personal information. We share data only with service providers that help us run SEO Climbs, under contracts that require them to protect it:
- Supabase — database, authentication, and storage.
- Anthropic — the AI model that writes your brief (it receives a pre-aggregated summary of your data, not raw exports).
- Resend — sending your emails.
- Dodo Payments — processing subscriptions as Merchant of Record.
- Vercel — hosting.
- Google — Search Console and PageSpeed APIs.
Data retention and deletion
We keep your data while your account is active. You can delete your account at any time from Settings, which permanently removes your profile, connected site, snapshots, reports, and tasks. You can also email us to request deletion.
Security
Your Google refresh token is encrypted at rest with AES-256-GCM. Database access is restricted per-user with row-level security, and we never log access tokens or full search-data payloads. No system is perfectly secure, but we take reasonable measures to protect your data.
Cookies
We use a small number of strictly necessary cookies to keep you signed in. Our product analytics run in cookieless mode. We do not use advertising or tracking cookies.
Your rights
Depending on where you live, you may have the right to access, correct, export, or delete your personal data. You can do most of this from Settings, or contact us at privacy@seoclimbs.com.
Changes to this policy
We may update this policy from time to time. If we make material changes, we'll let you know by email or in the app.
Contact us
Questions about privacy? Email privacy@seoclimbs.com.