Privacy Policy

Last Updated: 13 November 2025

1. Introduction

Welcome to Applied Insights SEO Pro ("we," "our," or "us"). We are committed to protecting your privacy and personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our SEO analysis and reporting platform at https://applied-insights.co.uk.

By using our service, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, please do not use our service.

2. Information We Collect

2.1 Personal Information You Provide

When you create an account, we collect:

  • Account Information: Email address, password (encrypted), name, and company details
  • Profile Information: User role (superadmin or user), project associations
  • Communication Data: Any information you provide when contacting us for support

2.2 Google Account Data (OAuth)

When you connect your Google account to access Google Analytics and Google Search Console data, we collect:

  • Google Profile Information: Your Google account email and profile details (used for identification only)
  • Google Analytics Data: Traffic metrics, user behavior data, conversion events, ecommerce data, channel performance, device statistics, and geographic distribution from your connected GA4 properties
  • Google Search Console Data: Search query performance (clicks, impressions, CTR, position), page-level search performance, sitemap data, and URL inspection results
  • OAuth Refresh Tokens: Securely stored tokens that allow us to access your Google data on your behalf (you can revoke access at any time)

Important: We only request read-only access to your Google Analytics and Search Console data. We cannot modify, delete, or alter any data in your Google accounts.

2.3 Project and Website Data

For each project you create, we collect:

  • Website Information: Domain name, homepage URL, brand details
  • SEO Configuration: Target keywords, focus pages, optimization goals
  • Performance Data: PageSpeed Insights scores, Core Web Vitals, performance metrics
  • SERP Data: Search engine ranking positions, competitor analysis data (via SERProbot API)
  • AI-Generated Content: SEO recommendations, content analysis, and optimization suggestions generated by OpenAI

2.4 Automatically Collected Information

  • Authentication Data: Firebase authentication session data, login timestamps
  • Usage Data: Feature usage patterns, tool interactions (stored in Firestore)
  • Technical Data: Browser type, device information, IP address (via Firebase and hosting provider)

3. How We Use Your Information

We use the collected data for the following purposes:

3.1 Core Service Functionality

  • SEO Analysis: Analyze your website's search performance using Google Search Console and Google Analytics data
  • Reporting: Generate monthly traffic reports, keyword ranking reports, and comprehensive SEO audits
  • Optimization Recommendations: Use AI (OpenAI) to provide personalized SEO improvement suggestions
  • Performance Monitoring: Track Core Web Vitals and page speed metrics using Google PageSpeed Insights API
  • Rank Tracking: Monitor keyword rankings via SERProbot API

3.2 Account Management

  • Create and manage your user account
  • Authenticate your identity using Firebase Authentication
  • Provide customer support and respond to your inquiries
  • Send important service notifications (e.g., token expiration warnings)

3.3 Service Improvement

  • Analyze usage patterns to improve platform features
  • Troubleshoot technical issues and bugs
  • Develop new tools and functionality

4. How We Store Your Data

4.1 Data Storage Infrastructure

We use the following services to store your data:

  • Firebase (Google Cloud): All user data, project data, and Google OAuth refresh tokens are stored in Firestore (a NoSQL database provided by Google). Firebase servers are located in secure data centers.
  • Firebase Authentication: User credentials are securely managed by Firebase Authentication, with passwords hashed and encrypted.
  • Session Storage: Temporary session data is stored securely using encrypted cookies.

4.2 Data Security Measures

  • Encryption: All data transmitted between your browser and our servers uses HTTPS/TLS encryption
  • Authentication: Firebase Authentication provides industry-standard security for user accounts
  • Access Controls: Role-based access controls ensure users can only access their own projects and data
  • Token Security: OAuth refresh tokens are stored securely in Firestore with strict access rules

4.3 Data Retention

We retain your data for as long as your account is active or as needed to provide you services. If you delete your account, we will delete or anonymize your personal data within 30 days, except where we are legally required to retain it.

5. Third-Party Services

We use the following third-party services to provide our functionality:

Google Services

  • Google Analytics (GA4): To fetch your website's traffic and conversion data
  • Google Search Console: To fetch your website's search performance data
  • PageSpeed Insights API: To analyze your website's performance metrics
  • Firebase (Google Cloud): For authentication, database, and hosting services

Privacy Policy: https://policies.google.com/privacy

OpenAI

We use OpenAI's API to generate SEO recommendations and content analysis. Data sent to OpenAI includes your website content, keywords, and analytics data. OpenAI does not use API data to train their models.

Privacy Policy: https://openai.com/policies/privacy-policy

SERProbot

We use SERProbot's API to track search engine rankings for your target keywords. This service receives your domain name and keyword list to perform rank tracking.

Privacy Policy: https://serprobot.com/privacy-policy

6. Data Sharing and Disclosure

We do not sell, trade, or rent your personal information to third parties. We may share your data only in the following circumstances:

  • With Your Consent: When you explicitly authorize us to share specific data
  • Service Providers: With third-party services listed above (Google, OpenAI, SERProbot) to provide core functionality
  • Legal Requirements: If required by law, court order, or governmental authority
  • Business Transfers: In the event of a merger, acquisition, or sale of assets (you will be notified)
  • Protection of Rights: To protect our rights, property, or safety, or that of our users

7. Your Data Rights

You have the following rights regarding your personal data:

7.1 Access and Portability

You can access your personal data at any time through your account settings. You can request a copy of your data in a machine-readable format by contacting us.

7.2 Correction and Update

You can update your account information, project details, and settings at any time through the platform's user interface.

7.3 Deletion

You can delete your account and all associated data by contacting us. We will process deletion requests within 30 days.

7.4 Google Account Disconnection

You can revoke our access to your Google Analytics and Search Console data at any time by:

  • Visiting your Google Account Permissions page
  • Removing "Applied Insights SEO Pro" from your connected apps
  • Or deleting your refresh token from the Settings page within our platform

7.5 Objection and Restriction

You can object to or request restriction of certain data processing activities by contacting us.

8. Cookies and Tracking

We use cookies and similar tracking technologies to:

  • Authentication Cookies: To keep you logged in and maintain your session
  • Preference Cookies: To remember your settings and preferences
  • Security Cookies: To protect against fraud and unauthorized access

You can control cookies through your browser settings. However, disabling cookies may limit your ability to use certain features of our service.

9. International Data Transfers

Your data may be transferred to and processed in countries other than your country of residence, including the United States (where Google Cloud/Firebase servers are located). These countries may have data protection laws that differ from those in your country.

We ensure appropriate safeguards are in place to protect your data in accordance with this Privacy Policy and applicable laws.

10. Children's Privacy

Our service is not intended for children under the age of 16. We do not knowingly collect personal information from children. If you believe we have collected data from a child, please contact us immediately so we can delete it.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will notify you of any material changes by:

  • Updating the "Last Updated" date at the top of this policy
  • Sending you an email notification (for significant changes)
  • Displaying a prominent notice on our platform

Your continued use of the service after changes are posted constitutes your acceptance of the updated policy.

12. Legal Basis for Processing (GDPR)

If you are in the European Economic Area (EEA) or UK, we process your personal data under the following legal bases:

  • Contractual Necessity: To provide the services you have requested
  • Consent: When you explicitly consent (e.g., connecting your Google account)
  • Legitimate Interests: To improve our service, prevent fraud, and ensure security
  • Legal Obligations: To comply with applicable laws and regulations

13. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Applied Insights SEO Pro

Email: privacy@applied-insights.co.uk

Website: https://applied-insights.co.uk

We will respond to your inquiry within 30 days.