legal

Privacy Policy

Last updated June 13, 2026

AEOScan (the “Service”) helps you see how AI assistants describe your website and what to fix. This policy explains what we collect, why, and who we share it with. We try to collect as little as possible — the core audit needs no account.

Information we collect

We collect only what's needed to run the audit and, if you choose, monitor your site over time:

  • Website URLs you submit. We fetch the public content of the URL you enter in order to audit it.
  • Audit results. Scores, grades, and check results are stored so we can show score history and power weekly monitoring.
  • Email address. Collected only if you subscribe to weekly monitoring, so we can send you change reports.
  • Payment information. Subscriptions are processed by Stripe. We never see or store your full card details.
  • Technical data. We process IP addresses transiently for rate limiting and abuse prevention, and use privacy-friendly, aggregate product analytics to understand how the Service is used.

How we use information

  • To run the audit you requested and return your results.
  • To store score history and run weekly re-scans for monitored sites.
  • To email you monitoring reports and service notices you've opted into.
  • To process and manage your subscription.
  • To prevent abuse, secure the Service, and improve the product in aggregate.

AI processing

To measure your AI visibility, the Service sends the public URL and/or content of the site being audited to third-party AI models (including models from OpenAI, Anthropic, Google, and Perplexity) via our model provider, OpenRouter. We only submit information about the public website being scanned — not your account or payment details.

Service providers we share data with

We use a small number of trusted subprocessors to operate the Service. They only receive the data needed to perform their function:

  • Vercel — hosting and aggregate analytics.
  • Supabase — database storage for monitors, snapshots, and scan history.
  • Stripe — subscription billing and payment processing.
  • Resend — sending monitoring and transactional emails.
  • OpenRouter — routing audit queries to AI models, as described above.

Data retention

Scan history and monitoring snapshots are retained to provide the Service's history and change-tracking features. If you cancel monitoring or want your email and associated data removed, contact us and we will delete it.

Your rights

Depending on where you live, you may have the right to access, correct, export, or delete your personal data, and to object to or restrict certain processing. To exercise any of these rights, email us at hello@aeoscan.net.

Cookies and tracking

The Service uses minimal, privacy-friendly analytics to measure aggregate usage (such as page views and conversion events). We do not sell your personal data.

Children

The Service is not directed to children under 16, and we do not knowingly collect their personal data.

Changes to this policy

We may update this policy from time to time. When we do, we'll revise the “Last updated” date above. Material changes will be reflected here.

Contact

Questions about this policy or your data? Email us at hello@aeoscan.net.