Privacy Policy
Last updated: [DATE]
This Privacy Policy explains what data [EXTENSION NAME] (“the Extension,” “we,” “us”) collects, how it is used, and what choices you have. It applies to the Chrome extension and any associated backend services.
1. Summary
- The free version of the Extension runs entirely on your device. It does not collect, transmit, or store any of your data on our servers.
- The paid version (when enabled) requires a Google account sign-in and sends limited page data to our backend only when you explicitly trigger an AI suggestion or WordPress write-back action.
- We do not sell your data. We do not use your data for advertising. We do not track your browsing history.
2. Free Tier — Local Only
When you use the free audit features, the Extension:
- Reads the content of the current page you are actively viewing (title, meta tags, headings, images, links, and similar on-page elements) to run SEO checks.
- Performs all analysis locally in your browser. No page content, URL, or audit result is sent to our servers.
- May make network requests directly from your browser to the website you are auditing (not to us) — for example, checking that site’s own
sitemap.xml,robots.txt, or internal links for the “site checks” feature. These requests go to the site being audited, not to [COMPANY/EXTENSION NAME]. - Stores your audit history for the current browser session only, using
chrome.storage.session, so duplicate-content checks can compare pages you’ve audited in that session. This data is cleared automatically when your browser session ends and is never transmitted anywhere. - Does not require an account, login, or any personal information to use.
3. Paid Tier — Account and Backend Features
If you choose to sign in and use paid features (AI-generated fix suggestions, saved audit history, WordPress write-back, or report exports), the following applies. These features are optional and inactive unless you sign in.
3.1 Account Sign-In
- We use Google Sign-In (OAuth) to authenticate you. We receive your name, email address, and Google account ID from Google for the purpose of creating and identifying your account.
- We do not receive or store your Google password.
- Authentication and account data are managed via Supabase, our backend and database provider.
3.2 Data Sent to Our Servers
When you trigger an AI suggestion (e.g. “Suggest fixes”), we send the following to our backend, which forwards it to our AI provider (Anthropic) to generate a response:
- The current page’s title, meta description, heading text, and a portion of the page’s body content
- The URL of the page
- Any target keyword you have entered
- Titles of other pages on the same site you have audited (used to avoid duplicate suggestions)
This data is used solely to generate the requested suggestion and is not used to train AI models, sold, or shared with third parties beyond what is necessary to generate the response (our AI provider, Anthropic).
3.3 Audit History
If you are signed in, we store your audit results (URL, score, issues found, and any AI suggestions generated) in our database so you can view your history across sessions. You can request deletion of this data at any time (see Section 6).
3.4 WordPress Write-Back (if applicable)
If you choose to connect a WordPress site and apply suggested fixes directly:
- We use WordPress Application Passwords, which you generate and provide, to make authorized changes to specific fields (e.g. meta title, meta description, image alt text) via the WordPress REST API.
- We only write to the specific fields you approve. We do not access, read, or modify any other content on your WordPress site beyond what is necessary for the requested action.
- Your WordPress credentials are transmitted securely and are not stored in plain text.
4. What We Do Not Do
- We do not track you across websites for advertising purposes.
- We do not sell or rent your personal data to any third party.
- We do not read or transmit page content while using the free tier.
- We do not access your browsing history outside of the specific page you actively run an audit on.
5. Third-Party Services
The paid tier relies on the following third-party services, each governed by their own privacy policy:
| Service | Purpose | Data Involved |
|---|---|---|
| Google Sign-In | Authentication | Name, email, Google account ID |
| Supabase | Database, auth, backend hosting | Account data, audit history |
| Anthropic (Claude API) | AI-generated suggestions | Page content sent for suggestion generation |
We do not control these providers’ data practices beyond the data we choose to send them, and encourage you to review their respective privacy policies.
6. Your Choices and Rights
- Free tier: no account exists, so there is no data to request or delete beyond clearing your browser’s local storage, which you can do at any time via your browser settings.
- Paid tier: you may request access to, correction of, or deletion of your account and associated data at any time by contacting us at [SUPPORT EMAIL]. We will process deletion requests within [X] business days.
- You may revoke the Extension’s Google account access at any time via your Google Account permissions page.
- You may uninstall the Extension at any time via Chrome’s extension management page, which removes all locally stored data.
7. Data Retention
- Session-based data (free tier) is retained only for the duration of your browser session.
- Account and audit history data (paid tier) is retained until you request deletion or close your account.
8. Children’s Privacy
The Extension is not directed at children under 13, and we do not knowingly collect personal information from children under 13.
9. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be reflected by updating the “Last updated” date above. Continued use of the Extension after changes constitutes acceptance of the updated policy.
10. Contact
Questions about this policy or your data can be sent to: support@wptechmaster.com