Last updated: March 3, 2026
This Privacy Policy describes how Geol.ai ("Geol.ai," "we," "our," or "us") collects, uses, and discloses personal information from individuals ("you" or "your") who visit our website at https://geol.ai and use our Generative Engine Optimization platform (collectively, our "Services"). By using our Services, you acknowledge the practices described in this Privacy Policy. Your use of the Services is also governed by our Terms of Service.
We collect personal information from multiple sources depending on how you interact with our Services. The categories below describe what we collect and why.
Account Information. When you create a Geol.ai account, we collect your name and email address through our authentication provider (Neon Auth). If you sign in with a third-party identity provider (e.g., Google), we receive the name and email associated with that account.
URLs and Content Submitted for Analysis. When you use the Geol.ai platform, you submit URLs for AI visibility analysis. We crawl the publicly accessible web pages at those URLs to extract content such as HTML text, headings, meta tags, and structured data. This crawled content is used solely for analysis and optimization scoring.
Payment Information. If you subscribe to a paid plan, payment details (credit card number, billing address) are collected and processed exclusively by Stripe, our PCI-compliant payment processor. Geol.ai never receives, stores, or has access to your full payment card details.
Company and Project Information. During onboarding, you may provide details about your organization including company size, whether you are an agency, and project details such as domain name, project name, and project description. This information helps us tailor the service to your needs.
Prompt Explorer Queries. When you use the Prompt Explorer tool, you submit text prompts that are executed against multiple AI search engines. We collect the prompts you submit, the AI provider responses received, and associated metadata (timestamp, project identifier, subscription tier, AI providers queried). This data is used to deliver the Prompt Explorer feature and, in aggregated anonymized form, to improve our AI analysis capabilities.
Location Information. We infer your approximate geographic location from your IP address. We do not collect precise GPS-based location data.
Device Information. We automatically collect your IP address, browser type and version, operating system, and device type when you access our Services.
Usage Data. We collect information about how you interact with the Services, including pages viewed, features used, actions taken (such as scans initiated), dates and times of visits, and referral URLs.
We use cookies and similar technologies to maintain your session, remember your preferences, and understand how visitors use the Services. The table below lists the cookies we use.
| Cookie | Provider | Purpose | Duration |
|---|---|---|---|
| __session / __auth | Neon Auth | HTTP-only, encrypted session cookie for user authentication | Session |
| admin_session | Geol.ai | Authentication for administrative dashboard access | Session |
| _ga / _gid | Google Tag Manager | Analytics: page views, traffic sources, and user engagement metrics | Up to 2 years |
| mp_*_mixpanel | Mixpanel | Product analytics: feature usage, funnel analysis, session tracking | 1 year |
Note: Your theme preference (light/dark mode) is stored in your browser's localStorage, not in a cookie, and is never transmitted to our servers.
We do not currently purchase personal information from data brokers or receive personal data about you from third-party CRM integrations. If you authenticate using a third-party identity provider (e.g., Google OAuth), we receive only the name and email you authorized for sign-in.
We use the personal information we collect for the following purposes:
If you are located in the European Economic Area ("EEA") or the United Kingdom ("UK"), we process your personal information only when we have a valid legal basis. Our legal bases include:
We do not sell your personal information. We share information with the following categories of service providers ("subprocessors") solely to operate and deliver the Services:
| Provider | Service | Data Shared | Location |
|---|---|---|---|
| Neon | PostgreSQL database hosting | Account data, project data, scan results | US |
| Neon Auth | Authentication | Email, name, session tokens | US |
| Stripe | Payment processing and metered billing | Billing details, subscription status, metered usage events (credit type, quantity, timestamp) | US |
| Upstash Redis | Caching and rate limiting | Temporary scan data, rate-limit counters | US |
| Cloudflare R2 | Object storage | Generated format files (JSON-LD, llms.txt, etc.) | US |
| OpenAI | AI analysis | Crawled public webpage content only | US |
| Anthropic | AI analysis | Crawled public webpage content only | US |
| Google / Gemini | AI analysis | Crawled public webpage content only | US |
| BrowserBase | Cloud browser for crawling | URLs submitted for crawling, rendered page content | US |
| Resend | Transactional email | Email address, email content | US |
| Google Tag Manager | Analytics orchestration | Page views, anonymized usage data | US |
| Mixpanel | Product analytics | Feature usage events, session data | US |
Important distinction regarding AI providers: OpenAI, Anthropic, and Google/Gemini receive only crawled public webpage content (HTML text, meta tags, headings, structured data) for the purpose of AI visibility analysis. Your personal data -- such as your name, email address, payment information, or account details -- is never sent to these AI providers.
We may also disclose personal information when required by law, in response to valid legal processes (such as a subpoena or court order), to protect the rights and safety of Geol.ai and our users, or in connection with a merger, acquisition, or sale of assets.
The Services may contain links to third-party websites, products, or services that are not owned or controlled by Geol.ai. We are not responsible for the privacy practices of these third parties. We encourage you to review the privacy policies of any third-party sites you visit. This Privacy Policy applies only to information collected through our Services.
We retain your personal information for as long as your account remains active or as needed to provide you with the Services. Specific retention periods include:
When we no longer need personal information for the purposes described in this policy, we securely delete or anonymize it.
We implement industry-standard security measures to protect your personal information, including:
While we strive to protect your personal information, no method of electronic transmission or storage is completely secure. We cannot guarantee absolute security.
Our Services are not directed to individuals under the age of 16. We do not knowingly collect personal information from children under 16. If we become aware that a child under 16 has provided us with personal information, we will take steps to delete that information promptly. If you believe a child has provided us with personal information, please contact us at hello@geol.ai.
Geol.ai is based in the United States. If you access our Services from the EEA, the UK, or other regions with data protection laws that differ from U.S. law, please be aware that your personal information will be transferred to and processed in the United States.
For transfers of personal information from the EEA or the UK to the United States, we rely on European Commission-approved Standard Contractual Clauses (SCCs) as appropriate, or other lawful transfer mechanisms under applicable data protection law.
Your GDPR Rights. If you are located in the EEA or the UK, you have the following rights under the General Data Protection Regulation:
To exercise any of these rights, please contact us at hello@geol.ai. You also have the right to lodge a complaint with your local data protection supervisory authority.
If you are a California resident, the California Consumer Privacy Act ("CCPA") grants you specific rights regarding your personal information.
In the preceding 12 months, we have collected the following categories of personal information: identifiers (name, email, IP address), commercial information (subscription and billing records), internet or electronic network activity (usage data, pages viewed), and professional or employment-related information (company size, agency status).
To submit a CCPA request, please contact us at hello@geol.ai. We will verify your identity before fulfilling any request.
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes, we will notify you by updating the "Last updated" date at the top of this page and, where appropriate, by providing additional notice (such as an in-app notification or email).
Geol.ai is responsible for the processing of your personal information as described in this Privacy Policy. If you have any questions, comments, or concerns about this Privacy Policy or our data practices, please contact us: