SearchLens SaaS Platform

Privacy Policy

Last Updated: May 18, 2026

1. Introduction

SearchLens ("we," "our," or "us") operates the SearchLens SEO analytics platform. We are committed to protecting the privacy of our users. This Privacy Policy describes how we collect, secure, utilize, and manage your account parameters and authenticated Google data profiles.

2. Google API Data Usage Disclosure

SearchLens connects directly to the Google Search Console API. The authentication is governed by a secure, official Google OAuth 2.0 gateway:

  • OAuth Scope: We request access exclusively to the https://www.googleapis.com/auth/webmasters.readonly scope. This grants read-only analytics access to inspect website properties, keywords, impressions, CTR, and search queries.
  • Credentials Safety: Resulting access keys and refresh tokens are encrypted and stored in private tables within Supabase, guarded by strict Row Level Security (RLS) policies.
  • No Data Sharing: SearchLens does not resell, aggregate, share, or redistribute search queries, keywords, or website lists collected from the GSC API with any marketing partners or third-party brokers.
  • Connection Revocation: You can completely revoke SearchLens read permissions at any time through the Settings page by clicking "Disconnect Search Console", which completely deletes your credentials from our database.

3. Information We Collect

In addition to GSC metrics, we collect standard administrative data essential to operate the SaaS platform:

  • Authentication Details: Email addresses and password hashes processed securely by Supabase Authentication.
  • Client Profiles: Names, website property URLs, and logo images configured by you in the Clients Dashboard.
  • Billing Mappings: Billing logs, Paddle Customer IDs, active pricing plans, and subscription statuses. All payment processing is handled by Paddle (our Merchant of Record). We do not store raw credit card numbers or processing keys.

4. Cookies and Analytical Tracking

SearchLens utilizes standard security cookies to manage active login sessions and verify dashboard authorizations. These cookies are essential to maintain secure user state. No non-essential advertising trackers are placed.

5. Client Report Token Safeguards

When a monthly SEO report is generated, SearchLens issues a unique, high-entropy cryptographic `share_token` (e.g. `/report/[token]`). Although these portal links bypass normal user authentication so your clients can view them instantly, they are protected against search engine indexation by standard no-index page parameters. As the creator, you retain the ability to revoke the token instantly, destroying the live URL path.

6. Data Deletion Rights

Under applicable digital privacy legislation (such as GDPR & CCPA), you hold absolute rights to inspect, update, or completely delete your account. If you elect to close your SearchLens account, all profiles, client lists, GSC tokens, and historical report logs are permanently purged from our database immediately.

7. Changes to this Policy

We may periodically update this Privacy Policy to reflect security standards or API modifications. In the event of material policy adjustments, we will notify registered users via an email announcement or a clear notice in the dashboard.

8. Contact Information

For data protection questions, privacy queries, or custom security audit records, please contact our support team at privacy@searchlens.io.

© 2026 SearchLens. All Rights Reserved.