SEO System

Privacy Policy

Last updated: March 22, 2026

1. Introduction

SEO System ("we", "our", "us") is operated by NetDNA. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website seo.netdna.ca, use our platform, or interact with our services, including any related subdomains and connected third-party integrations.

By using our services, you agree to the collection and use of information in accordance with this policy.

2. Information We Collect

2.1 Information You Provide

  • Account Information: Name, email address, and password when you create an account.
  • Business Information: Business name, address, phone number, website, hours of operation, services offered, and other business profile details you enter into the platform.
  • Contact Form Submissions: Name, email, phone number, and message content when customers submit contact forms on hosted business pages.
  • Booking Information: Customer name, email, phone number, appointment date/time, and any notes provided during online booking.
  • Chat Messages: Messages exchanged through our AI-powered chat widget on business pages.
  • Payment Information: Billing details processed through our payment provider (Stripe). We do not store full credit card numbers on our servers.

2.2 Information Collected Automatically

  • Usage Data: Pages visited, features used, click tracking data, and interaction patterns.
  • Device Information: Browser type, operating system, IP address, and device identifiers.
  • Cookies: Session cookies for authentication and preferences. We do not use third-party advertising cookies.

2.3 Information from Third-Party Services

When you connect third-party accounts, we may receive:

  • Google Business Profile: Business information, reviews, ratings, and location data via Google APIs.
  • Google Calendar / Microsoft 365: Calendar event times (start/end) to prevent booking conflicts. We do not store the full content of your personal calendar events.
  • Google Search Console: Website search performance data (keywords, impressions, clicks).
  • Social Media Platforms: Account identifiers and posting permissions through connected social accounts (via Postiz integration).

3. How We Use Your Information

We use the information we collect to:

  • Provide, maintain, and improve our SEO management platform.
  • Process bookings, send appointment confirmations and reminders via email and SMS.
  • Sync your calendar to prevent double-booking.
  • Generate AI-powered content suggestions, review responses, and chat replies.
  • Send campaign emails and SMS messages on your behalf to your customers.
  • Publish social media posts to your connected accounts.
  • Submit your website URLs to search engines for indexing.
  • Display your business information on public landing pages and directories.
  • Process payments and manage subscriptions.
  • Send you service-related communications (account updates, security alerts).
  • Analyze usage patterns to improve our platform.

4. How We Share Your Information

We do not sell your personal information. We may share information with:

  • Service Providers: Third-party services that help us operate (e.g., Stripe for payments, Mailgun for email delivery, VoIP.ms for SMS, Backblaze for cloud storage).
  • Connected Platforms: Google, Microsoft, and social media platforms when you explicitly connect your accounts and authorize data sharing.
  • Public Display: Business information you choose to publish on your public landing page, directory listing, or hosted website is visible to anyone.
  • Legal Requirements: When required by law, court order, or to protect our rights and safety.

5. Google API Services

Our use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Specifically:

  • We only request the minimum scopes necessary for each feature.
  • Google data is used solely to provide the features you authorize (e.g., review management, calendar sync, search analytics).
  • We do not use Google data for advertising purposes.
  • Access tokens are stored securely and refreshed automatically. You can revoke access at any time through your Google Account settings or through our platform.

6. Microsoft API Services

When you connect your Microsoft 365 account for calendar sync:

  • We only request Calendars.ReadWrite permission.
  • We read event start/end times to check for scheduling conflicts. We do not access email, contacts, or other Microsoft data.
  • You can disconnect your Microsoft account at any time from the Calendar Integration settings page.

7. Data Storage and Security

  • Data is stored on secure servers located in Canada.
  • All data in transit is encrypted using TLS/SSL.
  • OAuth tokens are stored in our database with restricted access.
  • Hosted site files are backed up to Backblaze B2 cloud storage with 30-day version history.
  • We use security headers (CSP, HSTS, X-Frame-Options) on all pages.
  • Payment processing is handled by Stripe, a PCI DSS Level 1 certified provider.

8. Data Retention

  • Account Data: Retained for as long as your account is active. You may request deletion at any time.
  • Booking Records: Retained for 2 years for business reporting purposes.
  • Chat Conversations: Retained for 90 days, then automatically purged.
  • SMS/Email Logs: Retained for 1 year for delivery tracking and compliance.
  • Backups: Cloud backups are retained for 30 days via Backblaze B2 lifecycle rules.

9. Your Rights

Depending on your jurisdiction, you may have the right to:

  • Access the personal information we hold about you.
  • Correct inaccurate or incomplete data.
  • Delete your personal data ("right to be forgotten").
  • Export your data in a portable format.
  • Withdraw consent for data processing at any time.
  • Disconnect third-party accounts (Google, Microsoft, social media) from our platform.
  • Unsubscribe from marketing communications using the unsubscribe link in any email.

To exercise these rights, contact us at the email address below.

10. Cookies

We use essential cookies for:

  • Session Management: To keep you logged in and maintain your preferences.
  • Security: CSRF protection tokens.

We do not use advertising or analytics cookies from third parties. You can disable cookies in your browser settings, but this may affect platform functionality.

11. Children's Privacy

Our services are not directed to individuals under 16 years of age. We do not knowingly collect personal information from children. If you believe we have inadvertently collected such information, please contact us immediately.

12. Changes to This Policy

We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last updated" date. Continued use of our services after changes constitutes acceptance of the revised policy.

13. Contact Us

If you have questions about this Privacy Policy or wish to exercise your data rights, contact us at:

NetDNA - SEO System

Email: privacy@netdna.ca

Website: https://seo.netdna.ca