Privacy Policy
Last updated: August 22, 2026
GetBizAudit ("we", "us", "our") operates the website and online presence audit platform. This Privacy Policy explains what information we collect, how we use it, and your rights.
1. Information we collect
- Account information — name, email address, and password (hashed) when you register, or your Google profile information (name, email, avatar) when you sign in with Google.
- Business information — business name, website URL, phone, address, and target keywords you submit for an audit.
- Billing information — payments are processed by Stripe; we never see or store your full card number. We store Stripe customer/session identifiers and transaction amounts.
- Usage data — pages visited, funnel events (landing page views, checkout starts), and anonymized session identifiers.
2. How we use information
- To provide, operate, and deliver your audit reports.
- To process payments and send receipts, verification, password-reset and report-ready emails.
- To improve our product, including aggregate analytics about conversion and usage.
- To prevent fraud and abuse.
3. Third-party processors
We share the minimum necessary data with: Stripe (payments), Resend (transactional email), Google (OAuth sign-in), DataForSEO and Apify (search, review, website and market data used to build your audit), and an AI language-model provider (to summarize findings). Audit queries include your business name and public web data — never your password or payment details.
4. Public data in reports
Audit reports are generated from publicly available information (search results, reviews, social profiles, news) about the business you submit. You may share a report via an optional shareable link; anyone with that link can view the report until you revoke it.
5. Cookies
We use essential cookies for authentication and session management. We do not use third-party advertising cookies.
6. Data retention & deletion
We retain account and report data while your account is active. You may request deletion of your account and associated personal data at any time by contacting us; we will delete or anonymize personal data within 30 days, except where retention is required by law (e.g., transaction records).
7. Your rights (GDPR/CCPA)
Depending on your jurisdiction, you may have rights to access, correct, export, or delete your personal data, and to opt out of its sale (we never sell personal data). Contact us at the address below to exercise these rights.
8. Security
We use industry-standard measures including TLS encryption, hashed passwords, and least-privilege access. No method of transmission over the Internet is 100% secure.
9. Changes
We may update this policy; material changes will be announced on this page with an updated date.
10. Contact
Questions? Email privacy@.