1. What this draft covers
This draft covers the Cite N Seek website, free Vibe Check, paid AI visibility report, Stripe checkout, and private report access. When a live form is used, information is submitted to the Cite N Seek backend; the report flow is not browser-only.
Sample report content on marketing pages is illustrative and is separate from a customer’s private live result.
2. Information handled
The service handles:
- The website address submitted and public information retrieved from that website.
- A browser-generated visitor identifier and basic network information used for security, rate limiting, and one-free-check enforcement.
- For paid orders, a contact email, service area, best-customer description, competitor choices, Stripe checkout identifiers, payment status, and report intake details.
- AI provider answers, citations, business names, report findings, processing status, and technical logs.
- Private report access keys stored only in the customer’s browser.
- If optional measurement is allowed, consent status, page and product-step events, shared event identifiers, and vendor cookie identifiers. Meta server events may include a hashed email plus IP address and browser information only when ad-measurement consent is active and Global Privacy Control is not active.
Payment-card details are entered on Stripe’s hosted checkout and are not collected by this frontend.
3. How information is used
Information is used to validate submitted websites, read their public content, create the requested free or paid report, verify payment, prevent repeated free use and misuse, maintain private report access, diagnose failures, and meet legal or security obligations.
The final legal basis for each purpose must be confirmed before this draft is treated as the published privacy notice.
5. Retention and security
Orders, check status, report evidence, and security records are stored in the dedicated Cite N Seek database. The current technical schedule deletes free checks and their hashed abuse-control identities after 30 days, redacts raw provider and paid-report working evidence after 30 days, and deletes finished paid reports after 365 days. Stripe event payloads are redacted after 30 days. Payment and order records may need a longer legal or accounting schedule, which still requires legal approval before broad launch.
Private report keys are stored in local storage or, if necessary, same-tab session storage. Clearing site data can remove access from that browser. Reasonable safeguards are used, but no internet service can promise perfect security.
6. Your choices
Optional analytics and advertising measurement start off. You can use Cookie settings on any page to give, refuse, or withdraw consent. Global Privacy Control disables Meta advertising measurement. Product access does not depend on accepting optional tracking.
Other available rights depend on location and applicable law. The service still needs a verified public channel for access, correction, deletion, restriction, objection, portability, and appeal requests. The Privacy Choices request form is clearly labeled as unconnected and does not submit a legal request.
7. Decisions still open
- Legal company name and address
- Privacy contact email
- Jurisdiction and applicable privacy laws
- Final product data fields and legal bases
- Processors and international transfer safeguards
- Legal retention period for payment and order records
- Final analytics and advertising retention settings
- Effective date and update notice process
Start with the current product.
The free check submits one website for a live business-understanding result.
Visit the Vibe Check