MySEOWizard

Privacy Policy

Last updated: May 4, 2026

Who we are

My SEO Wizard is a web application that generates branded SEO documents using AI. References to “we,” “us,” or “the service” refer to My SEO Wizard. This policy explains what data we collect, why we collect it, and your rights over it.

What we collect

  • Account data: name (optional), email address, hashed password (for credential signups), Google profile information (for OAuth signups), and the time you created your account.
  • Document inputs and outputs: the business details you submit through the wizard, the documents the AI generates from those inputs, your branding settings (logo URL, colors, footer), and any edits you make.
  • Billing data: credit purchases, credit ledger entries, and Stripe customer / payment-intent identifiers. We do not store full card numbers — Stripe handles all payment data.
  • Operational data: server logs, IP addresses (for rate limiting), authentication cookies, anonymous session cookies, and basic event analytics.

Why we collect it

  • To provide the service and generate the documents you ask for.
  • To process payments and prevent fraud.
  • To send transactional email (verification, password reset, receipts).
  • To rate-limit anonymous use and protect against abuse.
  • To debug errors and improve the product.

Subprocessors

We rely on the following third-party services. Each operates under their own privacy policies, which we encourage you to review:

  • Anthropic — generates document content from the inputs you submit.
  • Stripe — processes credit-pack purchases.
  • Resend — delivers transactional email.
  • Railway — hosts the application and its Postgres + Redis databases.
  • Google — handles OAuth sign-in for users who choose that option.
  • LogRocket and Google Tag Manager — session replay and product analytics.

What we do not sell

We do not sell your data to advertisers, list brokers, or any third party. We do not use the content of your generated documents to train AI models, and we do not pass your inputs to Anthropic for training (Anthropic's API operates under a no-training-by-default policy as of this writing).

Cookies

We use a small set of first-party cookies:

  • A signed JWT cookie for authenticated sessions (httpOnly, Secure, SameSite=Lax).
  • An anon_session cookie (httpOnly) so anonymous visitors can return to a teaser document they generated before signing up.
  • Analytics cookies set by Google Tag Manager / LogRocket for product measurement.

Retention

Account and document data are kept while your account is active. You can delete individual documents from the Documents page at any time, or contact us to delete your account entirely. Server and access logs are retained for up to 90 days for debugging.

Your rights

Depending on where you live, you may have the right to access, correct, export, or delete the personal data we hold about you, and to object to certain processing. Contact us at [email protected] to make a request.

Security

Passwords are hashed with argon2id. Connections are encrypted with TLS. Access to production systems is limited to authorized personnel. No system is perfect — if you discover a vulnerability, please report it responsibly to [email protected].

Changes to this policy

We may update this policy as the service evolves. Material changes will be announced by email to active accounts and reflected in the “Last updated” date above.

Contact

Questions about this policy? [email protected]

This document is a starting point. Have a qualified attorney review and adapt it to your jurisdiction, the regions you serve, and the specifics of your operations before relying on it.