Seovision
Privacy Policy
Last updated July 8, 2026
This policy explains what personal data Seovision collects when you use our website and dashboard, why we collect it, who we share it with, and the choices you have. We aim to collect the minimum needed to run the service.
Who we are
Seovision (“we”, “us”) is operated by ENVOXE INC and runs the website at seovision.io and the dashboard application. For privacy questions or to exercise your rights, contact us at support@seovision.io.
What we collect
- Account data — your email address and authentication credentials, handled by our auth provider (Supabase). We never see or store your password in plain text.
- Project data — the domains, brand descriptions, tracked prompts and settings you add so we can run audits and AI-visibility scans for your project.
- Connected-account data — when you connect a store, CMS or Google Search Console, we access the scopes you approve to read your site content and metrics and, if you enable it, to publish content. Access tokens are encrypted and stored server-side only.
- Usage data — your plan, the features you use, and quota counts, so we can operate the product and enforce fair use.
- Technical data — standard server logs (browser type, timestamps) needed for security and debugging.
The market data shown in the product (search metrics and AI-visibility results) is not your personal data — see our Data Sources page for how it is produced.
How we use it
- To create and secure your account and sign you in.
- To run the audits, AI-visibility scans and content generation you request.
- To communicate with you about your account and service changes.
- To improve the product, diagnose problems, and meter paid usage.
- To comply with legal obligations.
We do not sell your personal data, and we do not use it to train machine-learning models.
Who we share it with
We share personal data only with service providers (“data processors”) that help us run the product, under contract and only for that purpose:
- Supabase — authentication and database hosting.
- Vercel — application hosting.
- Resend — transactional email (e.g. account and notification messages).
- AI providers (such as OpenAI, Anthropic, Google, Perplexity and xAI) — to run AI-visibility scans and generate content. We send the prompts and content needed to produce your results; we do not send your account password.
- SEO & market-data providers — to retrieve search volume, difficulty, domain rating and SERP signals.
- Google — only when you connect Google Search Console, to read your site's search metrics.
- Payment processor (Stripe) — card payments and subscription billing are handled by Stripe, a PCI-compliant payment processor. We receive limited billing metadata (such as your plan, status, and the brand and last digits of your card) but never see or store full card numbers.
We may disclose data if required by law, or to protect the rights and safety of our users and the service.
Cookies & advertising
We use strictly-necessary cookies to keep you signed in and secure your session. We also use the Meta (Facebook) pixel and Meta's Conversions API to measure how our advertising performs — for example, which visits followed an ad — so we can reduce wasted ad spend. This may set cookies from Meta (such as _fbp), and for conversions we share limited event data with Meta, including a hashed (non-reversible) form of your email when you are signed in, so Meta can match the event to an ad without receiving your raw details.
Where the law requires consent for advertising cookies (for example in the EU/UK), we will ask for it before these cookies are set. You can opt out of ad personalisation in your Meta ad settings and manage cookies through your browser.
Data retention & deletion
We keep account and project data for as long as your account is active. You can delete your account from your settings or by contacting us; we then delete your personal account data, except where we must retain limited records to meet legal, accounting, or fraud-prevention obligations. Disconnecting a store or CMS revokes our access to it going forward.
Your rights
Depending on where you live (including under the EU/UK GDPR and the California CCPA), you may have the right to access, correct, export, or delete your personal data, and to object to or restrict certain processing. Contact us at support@seovision.io to make a request. We will not discriminate against you for exercising these rights.
International transfers & security
Your data may be processed in countries other than your own, including the United States. We use reputable providers with appropriate safeguards, and we apply industry-standard measures (encryption in transit, encrypted tokens, access controls) to protect your data. No method of transmission is perfectly secure, but we work to protect your information.
Changes to this policy
We may update this policy as the product evolves. We will revise the “last updated” date above and, for material changes, provide a more prominent notice.
