Legal
Privacy Policy
Last updated: 2026-08-06
1. What we collect
Running a free scan or buying a Fix Report can involve us collecting:
- The domain or URL you submit — scanned to generate your readiness score and report.
- Email address — collected to deliver your report and, if you create an account, to sign you in.
- Payment metadata — Stripe shares limited data with us (amount, currency, and a payment/customer reference) so we can confirm a purchase and issue refunds; we do not receive or store your full card number or card details.
- Technical data — standard request metadata (IP address, user agent) used for abuse prevention and error diagnostics.
2. How we use it
We use this data to run the scan, generate and deliver your report, process payment, prevent abuse of the free-scan flow, respond to support requests, and diagnose errors. We do not use your data to train AI models, and we do not sell your personal data to anyone.
3. Who processes it (subprocessors)
We rely on the following processors to run the Service, each bound to their own data-handling terms:
- Clerk — Authentication — account sign-in and session management.
- Stripe — Payment processing for the one-time Fix Report purchase. We never receive or store your full card number.
- Vercel — Application hosting, edge network, and deployment.
- Neon — Primary Postgres database (audits, reports, account records).
- Resend — Transactional email — free-scan links and paid-report delivery notifications.
- Vercel AI Gateway — Routes the scanned page content and audit findings to AI models to draft the AI-enhanced sections of a Fix Report.
- Upstash — Rate limiting and abuse prevention for the free-scan flow.
- Inngest — Background-job orchestration — runs the scan and report-generation pipelines; scan and report event metadata (such as audit references) passes through it.
- Sentry — Error monitoring, when enabled, so we can diagnose crashes.
- Axiom — Log management, when enabled — operational and error logs we use to diagnose issues, which can include your email, submitted domain, and hashed request metadata.
4. Cookies
We use the minimum cookies necessary to keep you signed in (set by Clerk). Abuse prevention on the free scan relies on server-side request metadata, not cookies. We do not use third-party advertising or tracking cookies.
5. Data retention
See our Data Retention policy for how long reports, share links, and account records are kept.
6. Your choices
You can request a copy of the data associated with your account, or ask us to close (soft-delete) your account, at any time by emailing support@answerpatch.com. We do not permanently ("hard") delete account records — closing an account deactivates it rather than erasing the row, primarily so payment and support history stays auditable.
If you are in the EU, UK, or California, you also have the right to access, correct, or delete your personal data and to object to or restrict certain processing. We do not sell your personal data or use it for cross-context behavioral advertising. To exercise any of these rights, email support@answerpatch.com; we may need to verify your identity before acting on the request.
7. Children
The Service is not directed to, and we do not knowingly collect data from, anyone under 16.
8. Changes
We may update this policy as the product or our processors change. Material changes will update the "Last updated" date above.
9. Contact
Questions about this policy? Email support@answerpatch.com.