Privacy Policy

Last updated: January 1, 2026

1. Information We Collect

We collect information you provide directly: your name, email address, and profile data from your authentication provider (Clerk). When you use the Service, we collect the URLs you submit for analysis and the resulting analysis data. We also collect standard usage data such as IP addresses, browser type, and pages visited.

2. How We Use Your Information

We use your information to: (a) provide and maintain the Service; (b) process your analyses and store results; (c) manage your account and subscription; (d) communicate with you about service updates; (e) improve the Service through aggregated, anonymized usage analytics.

3. Data Storage

Your data is stored on secure servers provided by Neon (PostgreSQL database). Authentication data is managed by Clerk. Payment data is processed and stored by Polar. We do not store your payment card details directly.

4. Data Sharing

We do not sell your personal data. We share data only with: (a) service providers necessary to operate the platform (Clerk for auth, Neon for database, Polar for payments); (b) third-party APIs used during analysis (Google PageSpeed Insights, OpenPageRank, Wayback Machine, DataForSEO), which receive only the URL being analyzed, not your personal data; (c) law enforcement when required by law.

5. Data Retention

Your analysis data is retained as long as your account is active. When you delete an analysis, it is permanently removed from our database. When you delete your account, all associated data is permanently deleted.

6. Your Rights

You have the right to: (a) access the personal data we hold about you; (b) correct inaccurate data; (c) delete your account and all associated data; (d) export your analysis data; (e) withdraw consent at any time by closing your account.

7. Cookies

We use essential cookies for authentication and session management. We do not use advertising or tracking cookies. Our authentication provider (Clerk) may set additional cookies necessary for secure sign-in.

8. Security

We implement industry-standard security measures including HTTPS encryption, secure authentication via Clerk, webhook signature verification, SSRF protection in our crawler, and parameterized database queries to prevent injection attacks.

9. Children's Privacy

The Service is not intended for users under the age of 16. We do not knowingly collect information from children under 16.

10. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be communicated via the email associated with your account. The date at the top of this page indicates when it was last revised.

11. Contact

For questions about this Privacy Policy or to exercise your data rights, contact us at hello@clonvo.com.