Privacy Policy
This policy explains what AEO스캐너 collects, why we use it, how long we keep it, and what rights users have.
If this privacy policy changes, the company will publish the reason, effective date, and changed content through the website or service screen.
1. Controller
주식회사 AIT operates AEO스캐너.
AEO스캐너 processes personal information to provide AI visibility audits, patch drafts, deployment verification, billing, and customer support.
Privacy questions, rights requests, and complaints can be sent to [email protected].
2. Information we collect
Account data may include email address, authentication identifiers, profile image, login provider, account status, and plan tier.
Service data may include site URLs, brand names, competitor URLs, keywords, audit requests, audit results, patch drafts, deployment history, and verification logs.
Billing data may include payment identifiers, customer identifiers, subscription status, payment amount, billing cycle, receipts, and tax-related records processed through providers such as Paddle.
Technical data may include IP address, browser and device data, access time, request path, error logs, security events, cookies, and similar technologies.
3. Purposes of use
We use information to create accounts, authenticate users, manage accounts, identify users, and respond to support requests.
We use information to run AI visibility audits, analyze site structure, generate patch drafts, verify deployment, and provide reports.
We use information to enforce plan permissions, process payments, renew subscriptions, manage usage limits, detect abuse, respond to security incidents, and improve service quality.
We may use information to comply with law, handle disputes, investigate terms violations, and keep operational records.
4. Retention and deletion
Account data is kept until account deletion or contract termination, unless retention is required by law or needed for dispute handling.
Audit results, patch drafts, deployment history, and verification logs may be kept while the account is active so customers can review records and trace issues.
Billing and transaction records may be kept for tax, accounting, billing, refund, and dispute handling purposes.
Security logs and access records may be kept for a reasonable period to maintain service stability and prevent abuse.
5. Sharing and processors
AEO스캐너 does not sell personal information.
We may use external providers such as Supabase, Paddle, Sentry, Cloudflare, hosting providers, email providers, and AI API providers.
Processors handle information only as needed for authentication, storage, payment, error monitoring, security, infrastructure operations, and AI analysis.
We may disclose information where permitted by law, including legal obligations, valid government requests, dispute handling, or protection of rights.
6. International transfers
Personal information may be processed or stored outside the user's country depending on cloud, payment, monitoring, and AI API provider infrastructure.
Where international transfers occur, we will provide required information such as recipient, country, data categories, purpose, retention period, and how to object.
Actual transfer countries and processors must be finalized after cloud regions, payment settings, and operating vendors are confirmed.
7. Cookies
We may use cookies and similar technologies for login sessions, security, usage checks, language settings, and service stability analytics.
Users can limit or delete cookies in browser settings, but login, billing, or dashboard features may not work correctly.
8. User rights
Users may request access, correction, deletion, restriction, or withdrawal of consent where applicable.
We may need to verify identity before handling a request. Requests may be limited where retention is legally required or where another person's rights may be affected.
Send rights requests to [email protected]. We will respond within a reasonable period.
9. Security
AEO스캐너 applies reasonable safeguards such as access control, encrypted transmission, least-privilege access, log review, secret separation, and deployment permission controls.
No internet service can remove every risk, especially where external APIs, customer domains, DNS, or third-party infrastructure are involved.
10. Changes and contact
If this policy changes, we will notify users through the service or website.
For privacy questions, contact [email protected].