Privacy Policy

Last updated: May 25, 2026

1. Overview

SpottedHQ (“we,” “our,” or “us”) operates the SpottedHQ platform, which helps local business owners track their Google Maps ranking, AI visibility, and citation health. This Privacy Policy explains what information we collect, how we use it, and your rights regarding that information.

2. Information We Collect

Account information

When you create an account, we collect your name, email address, and password (stored securely via Supabase Auth).

Business information

To set up tracking, you provide your business name, type, city, state, and optionally your Google Business Profile URL. We use this to run ranking and citation checks on your behalf.

Keywords

We store the keywords you choose to track for Google Maps rankings.

Usage data

We collect anonymized usage data (pages visited, features used) via Mixpanel to understand how the product is used and improve it. This data is linked to your account ID but never sold.

Payment information

Payments are processed by Stripe. We never see or store your full credit card number — only a subscription status and last-4 digits provided by Stripe.

3. How We Use Your Information

  • To run your Google Maps rank checks, AI visibility checks, and citation scans
  • To send your weekly email digest every Monday
  • To notify you of new reviews and provide AI-drafted response suggestions
  • To process payments and manage your subscription
  • To improve the product based on how it's used
  • To respond to support requests

4. Third-Party Services

We use the following third-party services to operate SpottedHQ:
  • Supabase — database and authentication
  • Stripe — payment processing
  • Mixpanel — product analytics
  • SerpAPI — Google Maps ranking data and citation checks
  • OpenAI — ChatGPT AI visibility checks
  • Anthropic — Claude AI visibility checks
  • Perplexity — Perplexity AI visibility checks
  • Yelp — review syncing via the Yelp Fusion API

Each of these services has its own privacy policy. We only share the minimum data necessary for each service to function.

5. Data Retention

We retain your account data for as long as your account is active. If you delete your account, we will delete your personal data within 30 days, except where we are required to retain it by law (e.g., billing records).

6. Your Rights

You have the right to:
  • Access the personal data we hold about you
  • Request correction of inaccurate data
  • Request deletion of your account and data
  • Opt out of marketing emails at any time via the unsubscribe link

To exercise any of these rights, email us at hello@spottedhq.com.

7. Cookies

We use a session cookie for authentication (managed by Supabase) and localStorage for your theme preference. We do not use advertising cookies or sell data to ad networks.

8. Children

SpottedHQ is not directed at children under 13. We do not knowingly collect data from anyone under 13.

9. Changes to This Policy

We may update this policy from time to time. We will notify you of significant changes by email or by a notice in the app. Continued use of SpottedHQ after changes constitutes acceptance.

10. Contact

Questions about this policy? Email us at hello@spottedhq.com.