Privacy Policy

Last updated: April 23, 2026

BizScore ("we," "us," or "our") operates the website bizscore.io (the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website and use our services.

Please read this Privacy Policy carefully. By using the Service, you agree to the collection and use of information in accordance with this policy. If you do not agree with the terms of this Privacy Policy, please do not access the Service.

1. Information We Collect

Information You Provide to Us

We collect information you voluntarily provide when you use our Service, including:

Account Information. When you create an account, we collect your email address. We use passwordless authentication (magic link), so we do not collect or store passwords.

Payment Information. When you subscribe to a paid plan, your payment is processed by Stripe, Inc. We do not store your credit card number, expiration date, or CVV on our servers. Stripe handles all payment processing in accordance with PCI DSS standards. We receive and store your Stripe customer ID, subscription status, and plan tier.

Audit Data. When you submit a website URL for an audit, we collect the URL and the results of the audit (scores, issues, recommendations). If you are logged in, this data is associated with your account.

Communications. When you contact us via email at hello@bizscore.io, we collect your email address and the content of your message.

Information Collected Automatically

When you access our Service, we may automatically collect certain information, including:

Log Data. Your browser type, operating system, access times, pages viewed, IP address, and the page you visited before navigating to our Service.

Device Information. Information about the device you use to access our Service, including hardware model, operating system version, and unique device identifiers.

Cookies and Similar Technologies. We use essential cookies to maintain your authentication session. We do not use advertising cookies or third-party tracking cookies. Our authentication system (powered by Supabase) sets session cookies necessary for the Service to function.

2. How We Use Your Information

We use the information we collect to:

  • Provide, maintain, and improve the Service
  • Process your transactions and manage your subscription
  • Send you authentication emails (magic links) to sign in
  • Send you audit reports and notifications you have opted into
  • Respond to your comments, questions, and support requests
  • Monitor and analyze usage trends to improve user experience
  • Detect, prevent, and address technical issues and security threats
  • Comply with legal obligations

We do not sell your personal information to third parties. We do not use your information for advertising purposes. We do not share your audit data with other users unless you explicitly choose to share a report.

3. How We Share Your Information

We may share your information only in the following circumstances:

Service Providers. We share information with third-party service providers that perform services on our behalf, including:

  • Supabase (authentication and database hosting)
  • Stripe (payment processing)
  • Vercel (website hosting)
  • Resend (transactional email delivery)
  • Anthropic (AI analysis for audit reports)

Each service provider is contractually obligated to use your information only as necessary to provide their services to us and in accordance with applicable data protection laws.

Legal Requirements. We may disclose your information if required to do so by law or in response to valid requests by public authorities (e.g., a court or government agency).

Business Transfers. If we are involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you before your information becomes subject to a different privacy policy.

With Your Consent. We may share your information with third parties when you give us explicit consent to do so.

4. Data Retention

We retain your personal information for as long as your account is active or as needed to provide you the Service. Specifically:

  • Account data is retained until you delete your account.
  • Audit data is retained for 12 months from the date of the audit, after which it is automatically deleted.
  • Payment records are retained as required by applicable tax and accounting laws (typically 7 years).
  • Communication records are retained for 2 years.

You may request deletion of your account and associated data at any time by contacting us at hello@bizscore.io.

5. Data Security

We implement appropriate technical and organizational security measures to protect your personal information, including:

  • Encryption of data in transit using TLS/SSL
  • Encryption of sensitive data at rest
  • Row-level security policies on our database
  • Secure authentication via magic links (no passwords stored)
  • Regular security reviews of our infrastructure

However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your information, we cannot guarantee its absolute security.

6. Your Rights and Choices

Depending on your location, you may have the following rights regarding your personal information:

Access. You may request a copy of the personal information we hold about you.

Correction. You may request that we correct inaccurate or incomplete personal information.

Deletion. You may request that we delete your personal information, subject to certain exceptions.

Data Portability. You may request a copy of your data in a structured, machine-readable format.

Opt-Out of Communications. You may opt out of receiving notification emails through your account settings. You cannot opt out of transactional emails necessary for the Service to function (e.g., authentication emails).

To exercise any of these rights, contact us at hello@bizscore.io. We will respond to your request within 30 days.

7. California Privacy Rights (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):

  • The right to know what personal information we collect, use, and disclose
  • The right to request deletion of your personal information
  • The right to opt out of the sale of your personal information (we do not sell personal information)
  • The right to non-discrimination for exercising your CCPA rights

To exercise your CCPA rights, contact us at hello@bizscore.io or submit a request through our contact form.

8. International Data Transfers

Our Service is hosted in the United States. If you access the Service from outside the United States, your information may be transferred to, stored, and processed in the United States. By using the Service, you consent to the transfer of your information to the United States.

9. Children's Privacy

The Service is not directed to individuals under the age of 16. We do not knowingly collect personal information from children under 16. If we become aware that we have collected personal information from a child under 16, we will take steps to delete that information.

10. Third-Party Links

Our Service may contain links to third-party websites or services. We are not responsible for the privacy practices of these third parties. We encourage you to read the privacy policies of any third-party sites you visit.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Last updated" date. Your continued use of the Service after any changes constitutes your acceptance of the updated Privacy Policy.

12. Contact Us

If you have questions about this Privacy Policy or our data practices, contact us at:

BizScore Email: hello@bizscore.io Website: https://bizscore.io