Privacy Policy
Last updated:
At Site Audit Score (accessible from siteauditscore.com), we prioritize the privacy and security of our visitors and users. This Privacy Policy document outlines the types of information collected and recorded by Site Audit Score, how we handle user data, and your rights regarding data access and deletion.
1. Information We Collect
When you interact with Site Audit Score, run an instant audit, or register for an account, we collect minimal data necessary to deliver high-performance parallel audits:
- Account Identification: When authenticating via Google OAuth or credentials, we store your email address, display name, and optional profile image link.
- Website Scan Logs: Publicly accessible website URLs submitted for analysis, along with module execution scores, recommendations, and timing metrics.
- Transaction & Balance Logs: Credit top-up purchases, active credit balances, and individual coin consumption logs for full transparency.
- Technical Diagnostic Logs: Anonymized server logs including request IP addresses, user-agent strings, and API response status codes for rate-limiting and infrastructure security.
2. How We Use Your Information
We utilize collected information strictly to provide, maintain, and optimize our 18-module audit engine:
- Executing parallel audits across Technical SEO, Core Web Vitals, Schema markup, Content E-E-A-T, and AI Visibility.
- Managing user credit account balances and verifying payment webhooks via Dodo Payments.
- Persisting dashboard settings, website lists, and historical audit reports so you can track ranking progress over time.
- Detecting and mitigating infrastructure abuse, automated scraping attacks, or unauthorized credit manipulation.
3. Cookies, Local Storage & Session State
Site Audit Score uses standard cookies and browser Local Storage to deliver seamless user navigation:
- Authentication Cookies: Managed via NextAuth.js to maintain encrypted, stateless session tokens when signed into your account.
- Theme & Viewport Storage: `localStorage` items (`theme`, `last_website_...`) to preserve user interface preferences (Dark/Light mode) and recent website selection.
4. Data Sharing & Third-Party Processors
We never sell, rent, or trade your personal information or submitted site data. We integrate strictly with trusted, enterprise-grade cloud providers:
- Google Auth: Secure OAuth 2.0 single sign-on provider.
- Dodo Payments: PCI-DSS compliant checkout and merchant services for processing credit top-ups.
- Database Infrastructure: Managed serverless PostgreSQL via Prisma ORM with encrypted data storage at rest.
5. Data Retention & User Deletion Rights
You maintain full control over your stored audit data and personal account profile. You can delete individual website audits directly within your user dashboard at any time. To request a complete deletion of your account, email address, and associated database records, please contact our support team.
6. Contact Us
If you have any questions, security inquiries, or data privacy requests regarding this policy, please reach out via our support channel or official social handle at @menajulm.