Your data stays yours. Always.

SearchPilot is built with security and privacy at its core. Here's exactly how we protect your data.

What We Access

SearchPilot only accesses the data you explicitly connect:

  • Read-only access to Google Search Console
  • Optional Google Analytics access
  • Publicly accessible site content for crawling

What We Never Do

We want to be crystal clear about what we don't do:

  • Modify your website
  • Publish changes on your behalf
  • Access unrelated Google services
  • Sell or share your data
  • Use your data for advertising

How Access Works

We use secure OAuth connections to access your data:

  • Scoped permissions: Only the data you authorize
  • No passwords stored: We never see your Google password
  • Revocable anytime: Disconnect from your Google account settings

How Data Is Protected

Your data is secured using industry-standard practices:

  • Encrypted in transit: All connections use HTTPS/TLS
  • Encrypted at rest: Data stored with AES-256 encryption
  • Access controls: Limited to authorized systems only
  • No shared credentials: Each connection is isolated

AI & Your Data

Customer data is not used to train public AI models.

Your search data, analytics, and website content are used only to generate your personalized recommendations. We don't use your data to improve general-purpose AI systems.

You're Always in Control

Disconnect integrations anytime from your dashboard
Revoke access directly from your Google account
Data deleted within 30 days of account closure
No lock-in, no hidden retention

Compliance

We follow GDPR principles and are actively working toward additional certifications as we scale. Our practices include:

  • GDPR-compliant data processing
  • Data Processing Addendum (DPA) available for enterprise customers
  • Regular security reviews and updates
  • Transparent data handling practices

For enterprise compliance requirements or security questionnaires, contact security@getsearchpilot.com.