Privacy Policy
Last updated: April 2026
1. Information We Collect
We collect information you provide directly and data generated through your use of the Service:
- Account information: name, email address, organization name, and billing details provided at registration.
- Crawl data: URLs, page content, HTML, metadata, and technical SEO data from websites you choose to crawl.
- Usage analytics: pages visited, features used, crawl frequency, and interaction patterns within the application.
- Technical data: IP address, browser type, operating system, and device information collected automatically.
2. How We Use Information
We use the information we collect to:
- Provide, maintain, and improve the CrawlX Service.
- Generate SEO analysis reports and AI-powered recommendations.
- Process payments and manage your subscription.
- Send transactional emails (account confirmations, billing receipts, alerts).
- Respond to support requests and communicate about your account.
- Detect and prevent fraudulent or abusive use of the Service.
- Analyze aggregate usage patterns to improve product features.
We do not sell your personal data to third parties. We do not use your crawl data to train AI models or for purposes beyond delivering the Service to you.
3. Data Storage & Security
Your data is stored securely using Supabase (PostgreSQL). All data is encrypted at rest and in transit using industry-standard TLS encryption. We implement access controls, audit logging, and regular security reviews. While we take reasonable measures to protect your data, no system is completely secure. In the event of a data breach affecting your personal information, we will notify you in accordance with applicable law.
4. Third-Party Services
CrawlX integrates with the following third-party services. Each has its own privacy policy:
- Supabase — database and authentication infrastructure.
- Vercel — application hosting and edge delivery.
- Stripe — payment processing. We do not store full payment card details; Stripe handles all payment data.
- Google APIs — optional integration for Search Console and Analytics data when you connect your Google account.
- OpenAI / Anthropic — AI model providers used to generate SEO recommendations (see Section 5).
5. AI Data Processing
When you use AI-powered features, relevant crawl data (page content, meta tags, technical metrics) is sent to our AI providers (OpenAI and/or Anthropic) for analysis. This data is processed transiently to generate recommendations and is not retained or used to train AI models by those providers under our enterprise agreements. You can disable AI features at any time in your account settings. Avoid crawling pages that contain sensitive personal data if you are concerned about AI processing.
6. Cookies & Tracking
We use essential cookies to maintain your session and authentication state. We may also use analytics cookies to understand how users interact with the Service in aggregate. You can control cookie preferences through your browser settings. Disabling essential cookies may prevent you from using certain features. We do not use advertising or cross-site tracking cookies.
7. Your Rights
Depending on your location, you may have the following rights regarding your personal data:
- Access & portability: request a copy of your personal data in a machine-readable format.
- Correction: request correction of inaccurate data.
- Deletion: request deletion of your account and associated personal data.
- Objection: object to certain processing activities.
To exercise these rights, contact us at enterprise@crawlx.dev. We will respond within 30 days.
8. Data Retention
We retain your account data for as long as your account is active or as needed to provide the Service. Crawl data is retained according to your plan’s history limits. When you delete your account, we will delete or anonymize your personal data within 90 days, except where retention is required by law (e.g., billing records for tax purposes, typically 7 years).
9. Children’s Privacy
CrawlX is not directed at or intended for use by children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected personal data from a child under 13, we will take steps to delete that information promptly. If you believe we have inadvertently collected such data, please contact us.
10. Changes to Policy
We may update this Privacy Policy periodically. We will post the revised policy on this page with an updated “Last updated” date. For significant changes, we will notify registered users by email. Your continued use of the Service after the effective date of any changes constitutes your acceptance of the revised policy.
11. Contact
If you have questions, concerns, or requests regarding this Privacy Policy, please contact us at enterprise@crawlx.dev.