Seeably
How it works Features Pricing Log inFree scan

Privacy Policy

Last updated: 30 September 2026

This Privacy Policy explains how we collect, use, share and protect personal data in connection with Seeably, including the website at seeably.ai, the web application, reports and related services (the "Service"), and when we contact businesses about Seeably. It is provided in accordance with the EU General Data Protection Regulation 2016/679 ("GDPR") and applicable Romanian law.

  1. Who we are
  2. Personal data we collect
  3. Why we use it and our legal bases
  4. Information about businesses in reports
  5. Business contacts we reach out to
  6. Who we share data with
  7. International transfers
  8. How long we keep data
  9. Your rights
  10. Cookies and similar technologies
  11. Security
  12. Children
  13. Automated processing
  14. Additional information for US residents
  15. Changes to this policy
  16. Contact

1. Who we are

The controller responsible for your personal data is:

ALMAV INNOVATION S.R.L.
Registered office: Str. Calea lui Traian nr. 13, Ramnicu Valcea, Romania, postal code 240011
Tax ID (CUI): 52614496 · Trade Register no.: J2025074767004
Email: [email protected]

We have not appointed a Data Protection Officer, as we are not required to. For any privacy question or request, email [email protected].

Where our customers (typically marketing agencies) enter personal data about their own clients into the Service, the customer is the controller of that data and we act as its processor under our Terms of Service. Questions about that data should be directed to the relevant customer.

2. Personal data we collect

  • Account data: your email address, and the date and details of your sign-ins (one-time login links and sessions).
  • Agency and brand settings: agency name, brand name, logo, colors, call-to-action text and link, and similar settings you choose to enter.
  • Service content: the niches and cities you scan, the businesses and websites you choose to track for your clients, and the reports generated for your account.
  • Billing data: your plan, subscription status and payment history. Payments are handled by Stripe, which collects your card and billing details directly; we receive only limited information such as your name, billing address, tax ID if provided, card brand and last four digits.
  • Communications: emails and messages you send us, and records of emails we send you (such as login links and "scan ready" notifications).
  • Technical and usage data: IP address, browser and device information, pages visited, actions in the Service, dates and times, and error and security logs.
  • Analytics data (only with your consent): information collected by Google Analytics about how you use the website, as described in section 10.

You provide most of this data directly. Technical data is collected automatically when you use the Service. We do not request, and you should not enter, special categories of personal data (such as health data).

3. Why we use it and our legal bases

PurposeLegal basis (GDPR)
Creating and managing your account, signing you in, running scans, generating and hosting reports, and providing supportPerformance of a contract (Art. 6(1)(b))
Processing payments, invoicing and managing subscriptionsPerformance of a contract (Art. 6(1)(b)); legal obligation for accounting and tax records (Art. 6(1)(c))
Sending service emails, such as login links, scan notifications and important changes to the Service or our termsPerformance of a contract (Art. 6(1)(b)); legitimate interests (Art. 6(1)(f))
Keeping the Service secure, preventing fraud and abuse (for example of the free scan), and fixing errorsLegitimate interests (Art. 6(1)(f))
Understanding how the website is used and improving it with Google AnalyticsConsent (Art. 6(1)(a)), which you can withdraw at any time
Improving the Service, for example measuring feature usage and the quality of resultsLegitimate interests (Art. 6(1)(f))
Contacting businesses that may benefit from Seeably (see section 5)Legitimate interests (Art. 6(1)(f))
Complying with legal obligations, responding to lawful requests from authorities, and establishing, exercising or defending legal claimsLegal obligation (Art. 6(1)(c)); legitimate interests (Art. 6(1)(f))

Where we rely on legitimate interests, we have balanced them against your rights and interests. You can ask us for more information about this balancing and object at any time (see section 9). We do not sell personal data and do not use it for third-party advertising.

4. Information about businesses in reports

To produce reports, the Service collects publicly available information about local businesses, such as business names, addresses, phone numbers, websites, categories, ratings and review counts, from public sources including Google Maps Platform, OpenStreetMap, business websites and other public web pages, together with the answers AI assistants give about those businesses.

This information concerns businesses, not individuals. However, it may include personal data where a business is named after a person or operated by a sole trader (for example "Dr. Jane Smith, DDS"). We process such data on the basis of our legitimate interest, and that of our customers, in analyzing and improving how businesses appear in AI assistants (Art. 6(1)(f)). We only use data that the business has made public for commercial purposes, and we do not collect private contact details or sensitive data. Report data is kept while the reports are available in our customers' accounts.

If you are the owner of a business, or the person named in a business name, and you want us to stop including your business or correct its information, email [email protected]. We will act on the request without undue delay.

5. Business contacts we reach out to

We may contact marketing agencies and other businesses by email to introduce Seeably. For this, we process business contact data: name, job title, work email address, company name, website and location, obtained from public sources (such as company websites and professional directories) and from business contact data providers.

We do this on the basis of our legitimate interest in promoting our services to businesses (Art. 6(1)(f)). Every email identifies us and includes a simple way to opt out. If you opt out or object, we stop contacting you and keep only the minimum data needed to respect your choice (a suppression list). We keep outreach data for up to 24 months after our last contact, unless you become a customer or ask us to delete it sooner.

6. Who we share data with

We share personal data only as needed to operate the Service, with the following categories of recipients, bound by contracts that require them to protect it:

ProviderPurposeLocation
Stripe (Stripe Payments Europe, Ltd. and affiliates)Payment processing and subscriptionsEU, US
Hetzner Online GmbHServer hosting and data storageEU (Germany)
Cloudflare, Inc.Website delivery, security and hosting of shared reportsGlobal, including US
ResendSending service emails such as login linksEU (Ireland), US
Google (Google Cloud, Gemini API, Google Maps Platform)AI analysis, business dataGlobal, including US
OpenAI, Perplexity AI, AnthropicAI analysis of how businesses appear in AI answersUS
OpenStreetMap Foundation (Nominatim, Overpass)Checking cities and finding public business listingsEU, UK
InstantlySending our business outreach emails (section 5)US

We send AI providers questions about businesses in a market and public business information. We do not send them your account data, such as your email address.

We may also disclose data to our professional advisers (such as accountants and lawyers), to public authorities where required by law, and to a buyer or successor in the event of a merger, acquisition or sale of all or part of our business, subject to this policy.

7. International transfers

Some of our providers are located, or process data, outside the European Economic Area, in particular in the United States. Where this happens, we rely on an adequacy decision of the European Commission (including the EU-US Data Privacy Framework for certified providers), or on the European Commission's Standard Contractual Clauses together with appropriate additional safeguards. You can request more information about these safeguards by contacting us.

8. How long we keep data

  • Account, settings and service content: for as long as your account is active, and deleted within 30 days after you close your account, except as described below.
  • Invoices and accounting records: for the period required by Romanian accounting and tax law (currently 10 years).
  • Login links: expire after 20 minutes and can be used once; sessions last up to 30 days.
  • Technical and security logs: up to 12 months.
  • Outreach data: as described in section 5; suppression lists for as long as needed to respect opt-outs.
  • Analytics data: according to our Google Analytics retention settings, up to 14 months.
  • Data needed for legal claims: until the claim is resolved and the applicable limitation period has expired.

9. Your rights

Under the GDPR you have the right to:

  • access your personal data and receive a copy of it;
  • rectify inaccurate or incomplete data;
  • erase your data in certain circumstances;
  • restrict processing in certain circumstances;
  • data portability, to receive data you provided in a structured, machine-readable format;
  • object at any time to processing based on legitimate interests, and in particular to direct marketing, in which case we will stop;
  • withdraw consent at any time where processing is based on consent, without affecting processing carried out before withdrawal.

To exercise your rights, email [email protected]. We will respond within one month, which may be extended by two further months for complex requests; we will tell you if so. We may need to verify your identity before acting on a request.

You also have the right to lodge a complaint with a supervisory authority, in particular in the EU country where you live or work, or where an alleged infringement took place. In Romania, this is the National Supervisory Authority for Personal Data Processing (ANSPDCP), B-dul G-ral. Gheorghe Magheru nr. 28-30, Sector 1, Bucharest, Romania, www.dataprotection.ro. We would appreciate the chance to address your concerns first.

10. Cookies and similar technologies

We use one essential cookie to keep you logged in and one to remember your cookie choice. These are strictly necessary and do not require consent.

We do not currently use analytics, advertising or tracking cookies. If we start using analytics cookies, we will ask for your consent first and update this policy.

Fonts and other website resources are served from our own servers, so loading the website does not send your data to third-party font services.

11. Security

We use appropriate technical and organizational measures to protect personal data, including encrypted connections (HTTPS), single-use login links that expire, hashed login tokens, access restrictions, and hosting in the EU. No method of transmission or storage is completely secure, but we work to protect your data and will notify you and the authorities of a personal data breach where required by law.

12. Children

The Service is intended for businesses and is not directed to anyone under 18. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, contact us and we will delete it.

13. Automated processing

The Service uses automated analysis to score and rank how businesses appear in AI answers and to prioritize prospects for our customers. This does not produce legal or similarly significant effects on individuals within the meaning of Article 22 GDPR. We do not make such decisions about you.

14. Additional information for US residents

We do not sell personal information, and we do not share it for cross-context behavioral advertising. Depending on the state where you live, you may have rights to know, access, correct and delete personal information, and to opt out of certain processing. You can exercise these rights by emailing [email protected], and we will not discriminate against you for doing so. The categories of personal information we collect, their sources, purposes and recipients are described in sections 2 to 6.

15. Changes to this policy

We may update this Privacy Policy from time to time. We will post the updated version on this page with a new "Last updated" date and, if the changes are significant, notify customers by email or in the Service.

16. Contact

For any question about this policy or your personal data, contact us:

ALMAV INNOVATION S.R.L.
Registered office: Str. Calea lui Traian nr. 13, Ramnicu Valcea, Romania, postal code 240011
Tax ID (CUI): 52614496 · Trade Register no.: J2025074767004
Email: [email protected]
Seeably Terms · Privacy · Contact · Statistics · © 2026 Seeably