SeoVision
Privacy Policy
Last updated August 26, 2026
This policy explains what personal data SeoVision collects when you use our website and dashboard, why we collect it, who we share it with, and the choices you have. We aim to collect the minimum needed to run the service.
Who we are
SeoVision (“we”, “us”) is operated by ENVOXE INC and runs the website at seovision.io and the dashboard application. For privacy questions or to exercise your rights, contact us at support@seovision.io.
What we collect
- Account data — your email address and authentication credentials, handled by our auth provider (Supabase). We never see or store your password in plain text.
- Project data — the domains, brand descriptions, tracked prompts and settings you add so we can run audits and AI-visibility scans for your project.
- Connected-account data— when you connect a store or CMS (for example Shopify, WordPress, Wix or Webflow) or Google Search Console, we access only the scopes you approve. For a connected Shopify store this means reading your blog content and files, and publishing articles you approve to your blog. We do not request or access your customers’ personal data, orders or payment information. Access tokens are encrypted and stored server-side only. Google Search Console has its own section below, which sets out exactly what we read and what we do with it.
- Usage data — your plan, the features you use, and quota counts, so we can operate the product and enforce fair use.
- Technical data — standard server logs (browser type, timestamps) needed for security and debugging.
The market data shown in the product (search metrics and AI-visibility results) is not your personal data — see our Data Sources page for how it is produced.
How we use it
- To create and secure your account and sign you in.
- To run the audits, AI-visibility scans and content generation you request.
- To communicate with you about your account and service changes.
- To improve the product, diagnose problems, and meter paid usage.
- To comply with legal obligations.
We do not sell your personal data, and we do not use it to train machine-learning models.
Who we share it with
We share personal data only with service providers (“data processors”) that help us run the product, under contract and only for that purpose:
- Supabase — authentication and database hosting.
- Vercel — application hosting.
- Resend — transactional email (e.g. account and notification messages).
- AI providers (such as OpenAI, Anthropic, Google, Perplexity and xAI) — to run AI-visibility scans and generate content. We send the prompts and content needed to produce your results; we do not send your account password.
- SEO & market-data providers — to retrieve search volume, difficulty, domain rating and SERP signals.
- Google — when you connect Google Search Console, we call Google's APIs to read your site's search performance and the index status of its pages. See Google user data below.
- Payment processor (Stripe) — card payments and subscription billing are handled by Stripe, a PCI-compliant payment processor. We receive limited billing metadata (such as your plan, status, and the brand and last digits of your card) but never see or store full card numbers.
- Shopify — if you install our app from the Shopify App Store, your subscription is billed by Shopify through its Billing API. We receive limited subscription metadata (plan name, status, billing period) and never see your card details.
We may disclose data if required by law, or to protect the rights and safety of our users and the service.
Google user data (Search Console)
Connecting Google Search Console is optional and always starts with Google's own consent screen, where you choose the Google Account and approve the access. This section sets out exactly what SeoVision does with what we receive.
- What we access — with the Search Console permission you grant, we read the list of properties your Google Account can access and, for the property you select, its search performance (the search queries your site appeared for, the pages that appeared, clicks, impressions, click-through rate and average position) together with the Google index status of individual pages on your site. We also read the email address of the connected Google Account, so the dashboard can show you which account is linked.
- What we use it for — to display these reports inside your SeoVision dashboard, to check whether the articles we publish for you have been indexed by Google, and to suggest article topics for searches your site already appears for. Nothing else.
- What we never do — we never sell this data, never use it for advertising or ad targeting, never use it to train generalised artificial-intelligence or machine-learning models, and never make it available to other SeoVision customers.
- Who can see it — the members of your own SeoVision account. Our infrastructure providers (see above) process it on our behalf under contract. If you choose to turn one of these search queries into an article, that query is sent to the AI provider that writes the article for you, acting on our instructions for that single request.
- How it is stored — the credential Google issues is encrypted before it is stored and is never sent to your browser. The search data is kept in our database for as long as the connection is active, so the reports stay available to you.
- How to disconnect— the Disconnect button on the integration page revokes SeoVision's access at Google and deletes the Search Console data we synced for that project. You can also revoke access at any time from your Google Account permissions page.
SeoVision's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Cookies & advertising
We use strictly-necessary cookies to keep you signed in and secure your session. We also use the Meta (Facebook) pixel and Meta's Conversions API to measure how our advertising performs — for example, which visits followed an ad — so we can reduce wasted ad spend. This may set cookies from Meta (such as _fbp), and for conversions we share limited event data with Meta, including a hashed (non-reversible) form of your email when you are signed in, so Meta can match the event to an ad without receiving your raw details.
Where the law requires consent for advertising cookies (for example in the EU/UK), we will ask for it before these cookies are set. You can opt out of ad personalisation in your Meta ad settings and manage cookies through your browser.
Data retention & deletion
We keep account and project data for as long as your account is active. You can delete your account from your settings or by contacting us; we then delete your personal account data, except where we must retain limited records to meet legal, accounting, or fraud-prevention obligations. Disconnecting a store or CMS revokes our access to it going forward; disconnecting Google Search Console additionally deletes the search data we synced from it.
If you uninstall our app from your Shopify store, we immediately disconnect the store and delete the stored access token, so we can no longer read or publish anything. We also honour Shopify’s mandatory data-erasure requests: when Shopify sends a shop or customer redaction request, we delete the related store records.
Your rights
Depending on where you live (including under the EU/UK GDPR and the California CCPA), you may have the right to access, correct, export, or delete your personal data, and to object to or restrict certain processing. Contact us at support@seovision.io to make a request. We will not discriminate against you for exercising these rights.
International transfers & security
Your data may be processed in countries other than your own, including the United States. We use reputable providers with appropriate safeguards, and we apply industry-standard measures (encryption in transit, encrypted tokens, access controls) to protect your data. No method of transmission is perfectly secure, but we work to protect your information.
Changes to this policy
We may update this policy as the product evolves. We will revise the “last updated” date above and, for material changes, provide a more prominent notice.
