SEO Audit Kit

Privacy Policy

Last updated: May 2026

1. Who We Are

SEO Scripts ("we", "our", "us") operates the SEO Audit Tools platform at seo-scripts-backend-smgfy6pnlq-el.a.run.app. This Privacy Policy explains how we collect, use, and protect your information when you use our services.

For questions about this policy, contact us at support@seoscripts.com.

2. Information We Collect

Account Information: When you sign up, we collect your name, email address, and a hashed version of your password. We store this in Google Cloud Firestore to manage your account.

Google Account Data (OAuth): When you connect your Google account to use our Analytics Intelligence tool, we request read-only access to your Google Analytics (GA4) data and Google Search Console data. We access your email address and profile name from Google to identify your session.

Usage Data: We may collect basic usage information such as pages visited and features used to improve our service.

3. Google User Data — How We Handle It

This section specifically addresses how we handle data obtained through Google APIs, in compliance with the Google API Services User Data Policy.

What we access: We request read-only access to Google Analytics (GA4) reporting data (sessions, page views, bounce rate, engagement metrics, traffic sources, device data, geographic data) and Google Search Console data (search queries, clicks, impressions, CTR, average position). We also access your Google email and profile name for identification.

On-demand only: We fetch your Google data only when you explicitly click "Run" on a report or query. We do not run background syncs, scheduled pulls, or any automated data collection from your Google account.

No storage of analytics data: Your Google Analytics and Search Console data is never stored on our servers. It is fetched in real-time, displayed in your browser, and discarded when you leave the page or close the browser tab. No analytics data is written to any database, file, or cache on our infrastructure.

Token handling: Your Google OAuth access token and refresh token are held only in your browser session (in-memory JavaScript state). They are never stored in our database, never written to server-side files, and never logged. When you disconnect or close the page, tokens are discarded.

No sharing: We do not share, sell, transfer, or disclose your Google user data to any third party. Your data is never used for advertising, marketing, or profiling purposes.

No modification: We only read data. We never write to, modify, or delete anything in your Google Analytics or Google Search Console accounts.

Revocation: You can disconnect your Google account at any time using the "Disconnect" button in our tool. You can also revoke access at https://myaccount.google.com/permissions. Upon revocation, all tokens are invalidated immediately.

4. How We Use Your Information

We use your information solely to:

— Provide and maintain your account

— Authenticate you when you log in

— Display your Google Analytics and Search Console data to you when you request it

— Generate downloadable PDF reports from the data you pull

— Send transactional emails (verification, password reset)

We do not use your data for advertising, profiling, or any purpose beyond providing the service you requested.

5. Data Security

We take reasonable measures to protect your information. Passwords are hashed using bcrypt before storage. All communication between your browser and our servers uses HTTPS/TLS encryption. Our backend runs on Google Cloud Run with automatic security patching.

Google OAuth tokens are never stored server-side, logged, or transmitted to any third party.

6. Data Retention

Account data: Your account information (name, email, hashed password) is retained as long as your account is active. You can request deletion by contacting us at support@seoscripts.com.

Google data: Not retained. Analytics and Search Console data exists only in your browser during your session. Nothing is stored after you leave the page.

7. Third-Party Services

We use the following third-party services:

Google Cloud Platform (Cloud Run, Firestore) for hosting and database

Google OAuth 2.0 for authenticating your Google account connection

Google Analytics Data API and Google Search Console API for fetching your analytics data on-demand

We do not use any advertising, tracking, or analytics services on our own platform.

8. Your Rights

You have the right to:

— Access the personal data we hold about you

— Request correction of inaccurate data

— Request deletion of your account and associated data

— Disconnect your Google account and revoke access at any time

— Export your data

To exercise any of these rights, email us at support@seoscripts.com.

9. Children's Privacy

Our service is not directed to individuals under the age of 13. We do not knowingly collect personal information from children under 13.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date. Continued use of the service after changes constitutes acceptance of the updated policy.

11. Contact Us

If you have questions about this Privacy Policy or our data practices, contact us at:

Email: support@seoscripts.com