Privacy policy
Your data, kept small.
Today SitePulse AI keeps almost nothing about you: anonymous usage counts, short lived error logs, and any feedback you choose to send. Here is exactly what, where, and for how long.
Last updated
Who we are
SitePulse AI is run by SitePulse AI, SOON. We decide how the data described here is used, which makes us the “controller” under data protection law such as the GDPR.
For any privacy question or request, email info@sitepulse.ai.
What we collect today
The public demo has no sign up and asks for no personal details. When you use it:
- Anonymous usage counts. When the demo loads, we record that it was viewed, the page address (without any query string) and the time. We record the same kind of count when you send feedback. These rows hold no IP address, no cookie, no device ID and nothing that identifies you, so we cannot tell one visitor from another.
- Error reports. If the page or our server breaks, we log the error message, the technical stack trace, the page address, the app version and your browser family (for example “Firefox”). We never log your IP address, cookies, form input or the full browser details. These logs live only in our host’s log viewer for about an hour.
- Feedback you send. If you use the feedback form, we store your message and, if you pick one, your store platform. We don’t ask for your email. Please don’t put personal or sensitive details in the message.
- What our host sees. Like any website, our host Vercel receives your IP address and basic request details in order to deliver the page and block abuse. We don’t copy these into our database.
The dashboard itself shows sample data for a made up store. It is not about you or any real business.
What we will collect later
SitePulse AI is meant to explain a real store’s numbers. When accounts and integrations launch, we will also handle:
- Account data: your name, email address and sign in details.
- Workspace data: your site address, reporting timezone, currency, goals, and who is a member of your workspace.
- Google Analytics connection: read only access that you grant. We store the access tokens encrypted and never show them in the browser, logs or AI prompts.
- Store metrics: totals such as sessions, conversions and revenue imported from your connected sources.
- Assistant conversations: the questions you ask and the answers you get, saved in your workspace. The assistant only sees summarized numbers needed for the question, and your conversations are never used to train AI models.
We will update this page, and its date, before any of this launches.
Cookies and browser storage
We use no cookies today, and we store nothing in your browser (no local storage, no session storage). That is why you don’t see a cookie banner.
When sign in launches, we will set one cookie that keeps you signed in. It is strictly necessary for your account to work. We will not use advertising or cross site tracking cookies.
How long we keep data
Every kind of data has a fixed limit. Items marked “Today” exist now; items marked “Planned” arrive with accounts and integrations, under the same rules.
Today
Anonymous usage counts (for example, “demo viewed”)
Today- Stored in
- Our database, Frankfurt
- Kept for
- 13 months
- Deleted
- Deleted automatically once they are 13 months old.
Error reports from the page and the server
Today- Stored in
- Vercel runtime logs
- Kept for
- About 1 hour
- Deleted
- Vercel drops them automatically. We never copy them elsewhere.
Request details our host sees (IP address, browser, address of the page)
Today- Stored in
- Vercel
- Kept for
- Visible to us for about 1 hour; Vercel's own security logs follow Vercel's policy
- Deleted
- Handled by Vercel. We never store IP addresses in our database.
Feedback messages you send us
Today- Stored in
- Our database, Frankfurt
- Kept for
- 12 months
- Deleted
- Deleted automatically once they are 12 months old, or sooner if you ask and we can find your message.
Database backups
Today- Stored in
- Neon, Frankfurt
- Kept for
- 6 hours (never more than 30 days)
- Deleted
- Older restore points are removed automatically.
Once accounts and integrations launch
Account data (name, email, sign in details)
Planned- Stored in
- Our database and our sign in provider
- Kept for
- Until you delete your account
- Deleted
- Deleted when you delete your account, and gone from backups within 30 days.
Sign in sessions
Planned- Stored in
- Our database or our sign in provider
- Kept for
- Until you sign out or the session expires
- Deleted
- Deleted on sign out; expired sessions are removed within 7 days.
Workspaces, members and business settings
Planned- Stored in
- Our database, Frankfurt
- Kept for
- While the workspace exists
- Deleted
- Deleted with the workspace, and gone from backups within 30 days.
Google Analytics access tokens (encrypted)
Planned- Stored in
- Our database, Frankfurt
- Kept for
- While the connection is active
- Deleted
- Revoked at Google and deleted immediately when you disconnect, or delete your workspace or account.
Store metrics we import (sessions, conversions, revenue and similar)
Planned- Stored in
- Our database, Frankfurt
- Kept for
- While the workspace exists
- Deleted
- You can delete a source's data at any time. Everything is deleted within 30 days of deleting the workspace.
Records of data sync runs
Planned- Stored in
- Our database, Frankfurt
- Kept for
- 90 days
- Deleted
- Deleted automatically once they are 90 days old.
Conversations with the assistant
Planned- Stored in
- Our database, Frankfurt
- Kept for
- Until you delete them or the workspace
- Deleted
- Deleted when you delete them, or with the workspace. Never used to train AI models.
Copies held by the AI model provider
Planned- Stored in
- The provider we name here before launch
- Kept for
- At most 30 days
- Deleted
- Under the provider's terms, which must rule out training on your data.
Security records (who connected a source or changed a setting)
Planned- Stored in
- Our database, Frankfurt
- Kept for
- 12 months
- Deleted
- Deleted automatically once they are 12 months old, or with the workspace.
How data gets deleted
- Data with a time limit is removed by a regular cleanup once it passes that limit.
- When you delete something (a conversation, a data source, your workspace or your account), we delete it for real, not just hide it. Copies in our database backups disappear as the backups age out, within 30 days at most.
- Disconnecting Google Analytics revokes our access at Google and deletes the stored tokens at once.
Who processes data
We use a small number of providers, and only for the job listed:
- Vercel hosts the app and keeps the short lived logs. The app runs in Vercel’s Frankfurt region; pages are delivered through Vercel’s global network, so your request may pass through a location near you.
- Neon runs our Postgres database in its Frankfurt region (AWS eu-central-1).
Vercel and Neon are US companies, so data may be accessible from outside the EU under their data protection terms. Before launch we will add our sign in provider, Google (only when you connect Google Analytics) and the AI model provider to this list, with where they process data and how long they keep it.
We don’t sell your data or share it for advertising.
Why we may use it
- Anonymous counts, error logs, abuse protection and feedback rely on our legitimate interest in running a working, secure demo and learning whether it is useful.
- Accounts, workspaces, integrations and conversations will rely on providing the service you signed up for.
Your rights
You can ask us to show you, correct, delete or export your data, or object to how we use it. Email info@sitepulse.ai and we will reply within one month.
Usage counts are anonymous, so we cannot link them to you. For feedback, tell us roughly when you sent it and what it said, and we will find and delete it. Once accounts exist, you will be able to delete your account and conversations yourself.
You can also complain to the data protection authority in the country where you live or work.
Children
SitePulse AI is a tool for businesses and is not meant for anyone under 16.
Changes and contact
When we change this policy, we update the date at the top of this page. Before accounts or integrations launch, we will revise it to cover them.
Questions? Email info@sitepulse.ai.