← StellarcData Processing Agreement

Legal

Privacy Policy

Last updated 2026-08-04 · Beta version

Stellarc ("we", "us") builds a persistent knowledge graph — a "brain" — for your brand, so the AI assistants you already use can answer questions about your SEO and marketing with grounded, source-linked facts instead of guesses. This policy explains what data we collect to do that, how it's stored, and the rights you have over it.

We are currently in a founder-led beta: every customer gets their own isolated workspace ("org"), and your data is never shared with, or trained into, any other customer's workspace.

1. What we collect

Account & access data

  • Your email address and name (from Google sign-in or email verification).
  • Organization membership and role.

Brand data (your "brain")

  • Data you connect: Google Search Console, Google Analytics 4, DataForSEO (rankings, competitors), Plausible.
  • Content crawled from your site and competitor sites you specify, for audit and analysis.
  • Corrections and context you or your team provide directly (e.g. brand voice notes, factual corrections).

What we do not collect

  • We do not sell your data, and we do not use your brand data to train models for other customers.
  • We do not run background/scheduled syncs during beta — data refreshes only when you or your admin trigger them.

2. How we use it

Your brand data is used exclusively to answer questions inside your own AI sessions (via the Model Context Protocol) and to power the admin/audit tools you use directly. Every analytical answer either cites a real source in your data or says "no data" — this is a product design commitment, not just a policy statement.

3. Where it's stored

Application data is hosted in the EU (Neon, PostgreSQL, EU region). Application code runs on Vercel's infrastructure. See the subprocessor table in our Data Processing Agreement for the full list and their roles.

4. Your rights (GDPR)

As a data subject or as the customer controlling your organization's data, you can request:

  • Access — a complete export of your brain's data (all connected facts, sources, and derived analysis) as a structured JSON file.
  • Erasure — permanent, complete deletion of a brain or your entire organization. Deletion is mechanical and verified: every table referencing your data is checked and cleared, not just the top-level record.
  • Correction — submit a correction directly in your AI session, or contact us.
  • Portability — the same export above, in a standard machine-readable format.

During beta these requests are handled directly by the founder, same day. Email your Stellarc contact, or reply to any invite/notification email.

5. Retention

We retain your data for as long as your organization is an active customer. On deletion request, or account closure, data is permanently removed — not archived — within our standard SLA for beta customers (same business day for the account record, full backup rotation within 30 days).

6. Cookies

We use only strictly necessary session cookies for authentication (sign-in state). We do not use third-party advertising or tracking cookies.

Questions or requests?

Contact us at contact@stellarc.ai.