Privacy Policy
Last updated: 16 September 2026
Batchreport provides automated SEO reporting for agencies. This policy explains what data we handle, why, and what your rights are. It covers both agencies who hold an account with us and the website data those agencies bring into the service.
Data we collect
| What | Why |
|---|---|
| Your name, email address, and website | To create and identify your account |
| A hashed password, or your Google account identifier if you sign in with Google | To authenticate you. Passwords are stored only as bcrypt hashes and are never recoverable. |
| Client and site records you enter | To generate the reports you configure |
| API credentials you supply for Ahrefs or Semrush | To fetch data on your behalf. Encrypted at rest and never displayed back to you. |
| Search Console, Analytics, Ahrefs and Semrush metrics for the sites you add | To compile reports and show trends over time |
| Copies of crawled pages and the differences between them (Advanced plan) | To show what changed on a site between reports |
| Billing identifiers from Stripe | To manage your subscription. We never see or store card details. |
| Job and error logs | To operate the service and show you why a report failed |
Google user data
If you sign in with Google, we receive your email address, name, and Google account identifier. We use these only to create and identify your account. We do not sell this data, use it for advertising, or share it beyond the sub-processors listed below.
Search Console and Analytics data is read through a service account that each site owner grants access to. That access is read-only, and we never modify anything in a connected property. Site owners can revoke it at any time from within Google, which immediately stops us retrieving further data.
Sub-processors
We use these third parties to run the service:
- DigitalOcean — hosting and database storage
- Google — sign-in, Search Console and Analytics data
- Stripe — subscription billing and payment processing
- Ahrefs and Semrush — SEO data, accessed with credentials you provide
We do not sell personal data, and we do not share it for advertising.
Retention
Account and report data is kept while your account is active. If you close your account, we delete your clients, sites, reports and stored credentials. Backups and operational logs may retain copies for a short period afterwards before being overwritten.
You can delete individual clients, sites and reports at any time from the dashboard, which removes the associated data immediately.
Your rights
Depending on where you live, you may have the right to access, correct, export or delete your personal data, and to object to or restrict how we process it. Email support@batchreport.com and we will respond within the period required by applicable law.
If you are an agency using Batchreport to process data about your own clients, you are the data controller for that data and we act as your processor. Contact us if you need a data processing agreement.
Security
All traffic is encrypted in transit with TLS. Third-party API credentials are encrypted at rest. Passwords are hashed with bcrypt. Access to production systems is limited to the operator. No system is perfectly secure, and we do not claim otherwise.
Changes
If we change this policy materially we will update the date above and notify account holders by email.