Who this policy covers
VisiblePilot provides website SEO, GEO, visibility analysis, and merchant-approved content updates. This policy applies to the VisiblePilot website, dashboard, and platform integrations, including the VisiblePilot app for Shopify.
Information we process
- Account information, such as your name, email address, password hash, verification status, and workspace membership.
- Website connection information, such as a store domain, site URL, platform type, granted API scopes, and encrypted access credentials or OAuth tokens.
- Website and catalog content needed to provide the service, such as public pages, product information, SEO fields, approved drafts, audit results, and change history.
- Operational information, such as request timestamps, job status, error details, and security logs used to keep the service reliable.
- Messages you send to support.
VisiblePilot does not request Shopify orders, customer records, payment information, or protected customer data for its current Shopify product SEO features.
How we use information
- Authenticate users and keep each workspace's websites and reports separate.
- Connect to websites with the permissions approved by the merchant.
- Run audits, prioritize supported issues, create grounded suggestions, and apply only changes a user approves.
- Verify applied changes, provide rollback history, diagnose errors, and prevent abuse.
- Send account, verification, security, and support messages.
We do not sell personal information. We do not use connected-store data to advertise to the store's customers.
Service providers and transfers
We use service providers for hosting, databases, email delivery, security, and optional analysis or content generation. They process only the information needed to provide their services under their own contractual and security obligations. Information may be processed in countries other than your own where these providers operate.
Security and credentials
Website credentials and Shopify access tokens are encrypted before storage. Access is limited by workspace permissions. Data is transmitted over HTTPS. No online service can guarantee absolute security, so please contact us promptly if you suspect unauthorized access.
Retention and deletion
We retain account and workspace information while an account is active and as needed for security, legal, and operational purposes. When a Shopify merchant uninstalls VisiblePilot, we mark the connection inactive and remove its usable OAuth token. Shopify privacy webhooks are verified and honored, including shop deletion requests.
You may request access, correction, export, or deletion of your account and workspace information by contacting us. We may retain limited records when legally required or needed to resolve security and billing disputes.
Your choices
You can disconnect a website from VisiblePilot, revoke platform credentials from the connected platform, decline a suggested change, or roll back supported changes from the recorded history. You can also request account deletion using the contact below.
Changes to this policy
We may update this policy as VisiblePilot changes. We will update the date on this page and provide additional notice when a change materially affects how information is used.