This Privacy Policy explains how we collect, use, share and protect personal data in connection with Seeably, including the website at seeably.ai, the web application, reports and related services (the "Service"), and when we contact businesses about Seeably. It is provided in accordance with the EU General Data Protection Regulation 2016/679 ("GDPR") and applicable Romanian law.
The controller responsible for your personal data is:
We have not appointed a Data Protection Officer, as we are not required to. For any privacy question or request, email [email protected].
Where our customers (typically marketing agencies) enter personal data about their own clients into the Service, the customer is the controller of that data and we act as its processor under our Terms of Service. Questions about that data should be directed to the relevant customer.
You provide most of this data directly. Technical data is collected automatically when you use the Service. We do not request, and you should not enter, special categories of personal data (such as health data).
| Purpose | Legal basis (GDPR) |
|---|---|
| Creating and managing your account, signing you in, running scans, generating and hosting reports, and providing support | Performance of a contract (Art. 6(1)(b)) |
| Processing payments, invoicing and managing subscriptions | Performance of a contract (Art. 6(1)(b)); legal obligation for accounting and tax records (Art. 6(1)(c)) |
| Sending service emails, such as login links, scan notifications and important changes to the Service or our terms | Performance of a contract (Art. 6(1)(b)); legitimate interests (Art. 6(1)(f)) |
| Keeping the Service secure, preventing fraud and abuse (for example of the free scan), and fixing errors | Legitimate interests (Art. 6(1)(f)) |
| Understanding how the website is used and improving it with Google Analytics | Consent (Art. 6(1)(a)), which you can withdraw at any time |
| Improving the Service, for example measuring feature usage and the quality of results | Legitimate interests (Art. 6(1)(f)) |
| Contacting businesses that may benefit from Seeably (see section 5) | Legitimate interests (Art. 6(1)(f)) |
| Complying with legal obligations, responding to lawful requests from authorities, and establishing, exercising or defending legal claims | Legal obligation (Art. 6(1)(c)); legitimate interests (Art. 6(1)(f)) |
Where we rely on legitimate interests, we have balanced them against your rights and interests. You can ask us for more information about this balancing and object at any time (see section 9). We do not sell personal data and do not use it for third-party advertising.
To produce reports, the Service collects publicly available information about local businesses, such as business names, addresses, phone numbers, websites, categories, ratings and review counts, from public sources including Google Maps Platform, OpenStreetMap, business websites and other public web pages, together with the answers AI assistants give about those businesses.
This information concerns businesses, not individuals. However, it may include personal data where a business is named after a person or operated by a sole trader (for example "Dr. Jane Smith, DDS"). We process such data on the basis of our legitimate interest, and that of our customers, in analyzing and improving how businesses appear in AI assistants (Art. 6(1)(f)). We only use data that the business has made public for commercial purposes, and we do not collect private contact details or sensitive data. Report data is kept while the reports are available in our customers' accounts.
If you are the owner of a business, or the person named in a business name, and you want us to stop including your business or correct its information, email [email protected]. We will act on the request without undue delay.
We may contact marketing agencies and other businesses by email to introduce Seeably. For this, we process business contact data: name, job title, work email address, company name, website and location, obtained from public sources (such as company websites and professional directories) and from business contact data providers.
We do this on the basis of our legitimate interest in promoting our services to businesses (Art. 6(1)(f)). Every email identifies us and includes a simple way to opt out. If you opt out or object, we stop contacting you and keep only the minimum data needed to respect your choice (a suppression list). We keep outreach data for up to 24 months after our last contact, unless you become a customer or ask us to delete it sooner.
We share personal data only as needed to operate the Service, with the following categories of recipients, bound by contracts that require them to protect it:
| Provider | Purpose | Location |
|---|---|---|
| Stripe (Stripe Payments Europe, Ltd. and affiliates) | Payment processing and subscriptions | EU, US |
| Hetzner Online GmbH | Server hosting and data storage | EU (Germany) |
| Cloudflare, Inc. | Website delivery, security and hosting of shared reports | Global, including US |
| Resend | Sending service emails such as login links | EU (Ireland), US |
| Google (Google Cloud, Gemini API, Google Maps Platform) | AI analysis, business data | Global, including US |
| OpenAI, Perplexity AI, Anthropic | AI analysis of how businesses appear in AI answers | US |
| OpenStreetMap Foundation (Nominatim, Overpass) | Checking cities and finding public business listings | EU, UK |
| Instantly | Sending our business outreach emails (section 5) | US |
We send AI providers questions about businesses in a market and public business information. We do not send them your account data, such as your email address.
We may also disclose data to our professional advisers (such as accountants and lawyers), to public authorities where required by law, and to a buyer or successor in the event of a merger, acquisition or sale of all or part of our business, subject to this policy.
Some of our providers are located, or process data, outside the European Economic Area, in particular in the United States. Where this happens, we rely on an adequacy decision of the European Commission (including the EU-US Data Privacy Framework for certified providers), or on the European Commission's Standard Contractual Clauses together with appropriate additional safeguards. You can request more information about these safeguards by contacting us.
Under the GDPR you have the right to:
To exercise your rights, email [email protected]. We will respond within one month, which may be extended by two further months for complex requests; we will tell you if so. We may need to verify your identity before acting on a request.
You also have the right to lodge a complaint with a supervisory authority, in particular in the EU country where you live or work, or where an alleged infringement took place. In Romania, this is the National Supervisory Authority for Personal Data Processing (ANSPDCP), B-dul G-ral. Gheorghe Magheru nr. 28-30, Sector 1, Bucharest, Romania, www.dataprotection.ro. We would appreciate the chance to address your concerns first.
We use one essential cookie to keep you logged in and one to remember your cookie choice. These are strictly necessary and do not require consent.
We do not currently use analytics, advertising or tracking cookies. If we start using analytics cookies, we will ask for your consent first and update this policy.
Fonts and other website resources are served from our own servers, so loading the website does not send your data to third-party font services.
We use appropriate technical and organizational measures to protect personal data, including encrypted connections (HTTPS), single-use login links that expire, hashed login tokens, access restrictions, and hosting in the EU. No method of transmission or storage is completely secure, but we work to protect your data and will notify you and the authorities of a personal data breach where required by law.
The Service is intended for businesses and is not directed to anyone under 18. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, contact us and we will delete it.
The Service uses automated analysis to score and rank how businesses appear in AI answers and to prioritize prospects for our customers. This does not produce legal or similarly significant effects on individuals within the meaning of Article 22 GDPR. We do not make such decisions about you.
We do not sell personal information, and we do not share it for cross-context behavioral advertising. Depending on the state where you live, you may have rights to know, access, correct and delete personal information, and to opt out of certain processing. You can exercise these rights by emailing [email protected], and we will not discriminate against you for doing so. The categories of personal information we collect, their sources, purposes and recipients are described in sections 2 to 6.
We may update this Privacy Policy from time to time. We will post the updated version on this page with a new "Last updated" date and, if the changes are significant, notify customers by email or in the Service.
For any question about this policy or your personal data, contact us: