Privacy Policy
Last updated: June 9, 2026
1. Who we are
GaugeSEO is operated by MKSolutions (“we”, “us”, “our”). Our service lets freelance SEO consultants connect their clients’ Google Analytics 4 and Search Console accounts to generate white-label PDF reports. You can reach us at privacy@gaugeseo.com.
2. Data we collect
- Account data: your email address and password (stored via AWS Cognito).
- Agency data: agency name, brand colors, and logo you upload.
- Client data: client names, website URLs, and optionally the client’s email address if you provide it for report delivery.
- Google OAuth tokens: access and refresh tokens for Google Analytics 4 and Google Search Console, encrypted at rest using AES-256-GCM.
- Analytics data: GA4 and Search Console metrics fetched on your behalf to generate reports. This data is used solely to produce the requested report and is not stored beyond the generated PDF.
- Payment data: billing is handled entirely by Stripe. We do not store card numbers or full payment details.
- Usage data: standard server logs (IP address, browser, pages visited) for security and performance monitoring.
3. How we use your data
- To authenticate you and operate your account.
- To fetch GA4 and Search Console data on your behalf and generate PDF reports.
- To manage your subscription and process payments via Stripe.
- To send transactional emails (password reset, report ready notifications).
- To deliver PDF reports to your client’s email address, when you use the one-click send or automated monthly send features. The client’s email is used solely for this purpose and is never shared or used for marketing.
- To improve the reliability and performance of the service.
We do not sell your data. We do not use your clients’ analytics data for advertising or any purpose other than generating the report you requested.
4. Google API data
GaugeSEO’s use of data received from Google APIs complies with the Google API Services User Data Policy, including the Limited Use requirements. Specifically:
- We only request the scopes necessary to fetch analytics and search console data.
- Google data is used exclusively to generate the SEO report you requested.
- We do not transfer Google user data to third parties except as necessary to provide the service.
- We do not use Google data for advertising purposes.
- OAuth tokens are encrypted at rest and never shared.
5. Data storage and security
Your data is stored on AWS infrastructure (Aurora Serverless PostgreSQL, S3). OAuth tokens are encrypted with AES-256-GCM before storage. Logos and PDFs are stored in private S3 buckets; download URLs are time-limited presigned links (1-hour expiry).
6. Data sharing
We share data only with the following sub-processors:
- AWS — hosting, database, storage, and email (SES).
- Stripe — payment processing.
- Google — OAuth authentication and analytics data retrieval.
7. Your rights (GDPR)
If you are in the European Economic Area, you have the right to:
- Access the personal data we hold about you.
- Request correction of inaccurate data.
- Request deletion of your account and associated data.
- Revoke Google OAuth access at any time via your Google account permissions.
To exercise any of these rights, email privacy@gaugeseo.com.
8. Data retention
We retain your data for as long as your account is active. When you delete your account, we delete your personal data within 30 days, except where retention is required by law.
9. Cookies
We use a single session cookie for authentication. We do not use third-party tracking or advertising cookies.
10. Changes to this policy
We may update this policy from time to time. We will notify you by email or via an in-app notice if changes are material. Continued use of the service after changes constitutes acceptance.
11. Contact
Questions or concerns? Email privacy@gaugeseo.com.