Privacy Policy

Last Updated: October 15, 2025

1. Introduction

Welcome to AI Visibility Intelligence ("we," "our," or "us"). We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your data when you use our website, platform, and services (collectively, the "Services").

By accessing or using our Services, you agree to this Privacy Policy. If you do not agree with our policies and practices, please do not use our Services.

2. Information We Collect

2.1 Information You Provide

We collect information you provide directly to us, including:

  • Account Information: Email address, password, company name, and billing details
  • Profile Information: Brand names, competitor names, industry vertical, and website URLs
  • Query Data: Search queries, prompts, and intent configurations you create
  • Payment Information: Credit card details (processed securely through Stripe)
  • Communications: Messages, feedback, and support requests

2.2 Automatically Collected Information

When you use our Services, we automatically collect:

  • Usage Data: Pages viewed, features used, time spent, and interaction patterns
  • Device Information: IP address, browser type, operating system, and device identifiers
  • Log Data: Server logs, error reports, and API requests
  • Cookies: Session cookies, preference cookies, and analytics cookies (see Cookie Policy below)

2.3 AI Model Response Data

Our Services query AI models (ChatGPT, Claude, Gemini, Perplexity, Grok) on your behalf. We collect and store:

  • Raw AI responses to your queries
  • Judge model analysis and scores
  • Citation links and domain mentions
  • Visibility metrics and trends

3. How We Use Your Information

We use your information to:

  • Provide, maintain, and improve our Services
  • Process your queries and generate visibility reports
  • Send alerts and notifications about visibility changes
  • Process payments and manage subscriptions
  • Respond to support requests and communications
  • Analyze usage patterns to improve our platform
  • Detect and prevent fraud, abuse, or security incidents
  • Comply with legal obligations and enforce our Terms of Service
  • Send marketing communications (with your consent)

4. How We Share Your Information

4.1 Service Providers

We share data with trusted third-party service providers who help us operate our Services:

  • Cloud Hosting: Amazon Web Services (AWS), Vercel
  • Payment Processing: Stripe (for credit card processing)
  • AI Model APIs: OpenAI, Anthropic, Google, Perplexity, xAI
  • Email Services: Amazon SES (for transactional emails)
  • Analytics: Google Analytics (anonymized data)

4.2 Legal Requirements

We may disclose your information if required by law, court order, or government request, or to protect our rights, property, or safety.

4.3 Business Transfers

If we are involved in a merger, acquisition, or sale of assets, your information may be transferred. We will notify you before your data is transferred and becomes subject to a different privacy policy.

4.4 Aggregated Data

We may share aggregated, anonymized data that does not identify you personally (e.g., industry benchmarks, trend reports).

5. Data Security

We implement industry-standard security measures to protect your data:

  • Encryption in transit (TLS/SSL) and at rest (AES-256)
  • Secure authentication with JWT tokens
  • Regular security audits and penetration testing
  • Access controls and role-based permissions
  • Automated backups with 30-day retention
  • DDoS protection via Cloudflare

However, no method of transmission over the Internet is 100% secure. We cannot guarantee absolute security of your data.

6. Data Retention

We retain your data for different periods based on type:

  • Account Data: Until you delete your account
  • Query Results: 90 days (raw data), 365 days (aggregated metrics)
  • Payment Records: 7 years (for tax compliance)
  • Support Tickets: 3 years after resolution
  • Analytics Data: 26 months (Google Analytics default)

You can request deletion of your data at any time by contacting us (see Section 9).

7. Your Rights

7.1 GDPR Rights (EU/EEA Users)

If you are in the European Union or European Economic Area, you have the right to:

  • Access: Request a copy of your personal data
  • Rectification: Correct inaccurate or incomplete data
  • Erasure: Request deletion of your data ("right to be forgotten")
  • Restriction: Limit how we process your data
  • Portability: Receive your data in a machine-readable format
  • Objection: Object to processing based on legitimate interests
  • Withdraw Consent: Withdraw consent at any time

7.2 CCPA Rights (California Users)

If you are a California resident, you have the right to:

  • Know what personal information we collect, use, and share
  • Request deletion of your personal information
  • Opt-out of the sale of your personal information (we do not sell your data)
  • Non-discrimination for exercising your privacy rights

7.3 Exercising Your Rights

To exercise any of these rights, please contact us at privacy@sig.ai. We will respond within 30 days.

8. Cookies and Tracking

We use cookies and similar tracking technologies:

8.1 Types of Cookies

  • Essential Cookies: Required for authentication and core functionality
  • Preference Cookies: Remember your settings and preferences
  • Analytics Cookies: Help us understand usage patterns (Google Analytics)
  • Marketing Cookies: Used for advertising (with your consent)

8.2 Managing Cookies

You can control cookies through your browser settings. However, disabling certain cookies may limit functionality. Our cookie consent banner allows you to opt-in/opt-out of non-essential cookies.

9. International Data Transfers

Our Services are hosted in the United States (AWS us-east-1). If you access our Services from outside the U.S., your data will be transferred to and processed in the United States.

We implement appropriate safeguards for international transfers, including Standard Contractual Clauses (SCCs) for EU/EEA users.

10. Children's Privacy

Our Services are not intended for children under 18. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by:

  • Posting the updated policy on this page
  • Updating the "Last Updated" date
  • Sending an email notification (for significant changes)

Your continued use of our Services after changes take effect constitutes acceptance of the updated policy.

12. Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us:

AI Visibility Intelligence

Email: privacy@sig.ai

Support: support@sig.ai

Website: https://aeo.sig.ai

13. Legal Basis for Processing (GDPR)

For EU/EEA users, we process your data based on:

  • Contract Performance: To provide Services you requested
  • Legitimate Interests: To improve our Services and prevent fraud
  • Legal Obligation: To comply with applicable laws
  • Consent: For marketing communications and non-essential cookies