Privacy Policy
Effective date: March 3, 2026
1. Introduction
Discoverably (“we,” “our,” or “us”) operates the Discoverably platform, a subscription service that tracks brand visibility across AI engines. This Privacy Policy explains how we collect, use, and protect your information when you use our service at discoverably.com.
By using Discoverably, you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
Account Information
When you create an account, we collect your email address and name. This is used to authenticate you and communicate with you about your account.
Billing Information
Payments are processed by Stripe. We never see or store your full card number, CVV, or other sensitive payment details. We store only billing metadata provided by Stripe (e.g. subscription status, last four digits of card, billing interval).
Google Analytics Data
If you choose to connect a Google Analytics account, we store OAuth tokens (encrypted) that allow us to read your Google Analytics 4 property data on your behalf. We access only the data necessary to display traffic metrics in your dashboard. We do not share this data with third parties, and you may revoke access at any time.
Domain and Brand Data
You provide domain names and brand information to configure your tracking. This data is stored in your account and used solely to run AI visibility analyses.
Usage Data
We collect standard server logs and usage information (pages visited, features used, timestamps) to operate and improve the service. This data is not sold or shared with advertisers.
3. How We Use Your Information
- To provide and operate the Discoverably service
- To process payments and manage your subscription
- To run AI visibility analyses on your behalf
- To send account-related communications (receipts, alerts, product updates)
- To improve and develop the service
- To comply with legal obligations
We do not sell your personal data to third parties.
4. Third-Party Services
We use the following third-party processors to operate the service:
- Supabase — database hosting and authentication
- Stripe — payment processing and subscription management
- Google — Analytics API (only if you connect a GA4 account)
- Vercel — application hosting and deployment
- Resend — transactional email delivery
Each processor is bound by their own privacy policy and data processing agreements.
5. Data Retention
We retain your data for as long as your account is active. If you delete your account, we will delete or anonymize your personal data within 30 days, except where we are required to retain it for legal or billing purposes (e.g. Stripe transaction records).
6. Cookies
We use session cookies issued by Supabase to keep you logged in. We do not use tracking cookies, advertising cookies, or any third-party analytics cookies. The only cookies set are strictly necessary for authentication.
7. Your Rights Under GDPR
If you are located in the European Economic Area (EEA) or United Kingdom, you have the following rights regarding your personal data:
- Access — request a copy of the personal data we hold about you
- Rectification — request correction of inaccurate data
- Erasure — request deletion of your data (“right to be forgotten”)
- Portability — receive your data in a structured, machine-readable format
- Restriction — request that we limit processing of your data
- Objection — object to processing based on legitimate interests
To exercise any of these rights, email us at privacy@discoverably.com. We will respond within 30 days. You also have the right to lodge a complaint with your local data protection authority.
Our legal basis for processing your data is: contract performance (to provide the service you subscribed to), legitimate interests (to improve the service and prevent fraud), and consent (for optional features like Google Analytics integration).
8. Your Rights Under CCPA
If you are a California resident, you have the following rights under the California Consumer Privacy Act:
- Right to Know — request disclosure of the categories and specific pieces of personal information we have collected
- Right to Delete — request deletion of your personal information
- Right to Opt-Out of Sale — we do not sell personal information, so this right does not apply
- Right to Non-Discrimination — we will not discriminate against you for exercising your rights
To submit a request, email privacy@discoverably.com.
9. Children
Discoverably is not directed at children under 16. We do not knowingly collect personal information from anyone under 16. If we become aware that we have collected such information, we will delete it promptly.
10. Changes to This Policy
We may update this Privacy Policy from time to time. If we make material changes, we will notify you by email or via a notice in the dashboard at least 14 days before the change takes effect. Continued use of the service after the effective date constitutes acceptance of the updated policy.
11. Contact
If you have questions about this Privacy Policy or your personal data, please contact us at:
Discoverably
privacy@discoverably.com