Legal

Privacy Policy

Effective Date: August 10, 2026

Introduction

  • This Privacy Policy describes how Scriptackle ("we," "us," or "our") collects, uses, and protects your personal information when you use our platform and services.
  • We will not use or share your information with anyone except as described in this Privacy Policy. By using the Service, you agree to the collection and use of information in accordance with this policy.

Information We Collect

  • Account Information: When you create an account, we collect your name, email address, and password hash.
  • Payment Information: Subscription billing is processed through PayU. We do not store full credit card numbers on our servers.
  • Project Data: Keywords, articles, content briefs, and configuration settings you create within the platform.
  • Integration Credentials: WordPress application passwords and API keys you connect are encrypted at rest using Fernet symmetric encryption.

Information Collected Automatically

  • Log Data: We collect information that your browser sends when you visit our website, including your IP address, browser type and version, pages visited, time and date of visit, time spent on pages, and other statistics.
  • Usage Data: We collect information about how you use the Service, including features used, agent run history, and interaction patterns.
  • Cookies: We use cookies to maintain your session and authentication state. Cookies are small data files stored on your device. You can instruct your browser to refuse all cookies, but some features of the Service may not function properly without them.

How We Use Your Information

  • Providing and maintaining the Scriptackle platform, including article generation, SEO analysis, and publishing features.
  • Processing your requests through our AI agents, including keyword research, content creation, fact verification, and technical audits.
  • Sending service-related communications, including pipeline status updates, billing notifications, and security alerts.
  • Improving our services by analyzing aggregated usage patterns and platform performance.
  • Complying with legal obligations and enforcing our terms of service.

AI Processing & Content Generation

  • Your keywords, briefs, and project context are sent to third-party LLM providers (OpenRouter, Groq, OpenAI) for content generation and analysis.
  • We do not use your content to train AI models. Your data is processed ephemerally for your requests only.
  • Generated content, SEO scores, and analysis results are stored in your account and are accessible only to you and your authorized team members.
  • Any data accessed through third-party integrations (e.g., WordPress, Google APIs) is used solely for providing services to you and is not retained for AI/ML training purposes.

Data Sharing & Disclosure

  • We do not sell your personal information to third parties.
  • We may share data with trusted service providers who assist in operating the platform (hosting, payment processing, analytics), under strict data processing agreements.
  • We may disclose information if required by law, subpoena, or to protect the rights and safety of Scriptackle and its users.
  • In the event of a merger or acquisition, user data may be transferred with notice and consent as required by applicable law.

Data Retention

  • We retain your account information for as long as your account is active and a reasonable period thereafter in case you decide to re-activate the Service.
  • You can delete your account at any time, which will remove your personal information and project data from our active systems.
  • Backup copies may be retained for up to 30 days after deletion for disaster recovery purposes.
  • Aggregated, anonymized data may be retained indefinitely for analytical purposes.

Data Security

  • All data is encrypted in transit using TLS 1.2+.
  • Sensitive credentials (WordPress passwords, API keys) are encrypted at rest using Fernet symmetric encryption.
  • Passwords are hashed using bcrypt before storage.
  • Database access is restricted to authorized services and personnel with no public internet exposure.
  • We implement industry best practices for application security, including secure coding standards and regular dependency updates.
  • In the event of a data breach, affected users will be notified promptly in accordance with applicable law.

Your Rights

  • Access: You have the right to request a copy of the personal data we hold about you.
  • Rectification: You can update or correct inaccurate information through your account settings or by contacting us.
  • Erasure: You can request deletion of your personal data and account at any time.
  • Portability: You can export your project data and content in standard formats.
  • Objection: You can object to processing of your data for specific purposes.
  • To exercise these rights, contact us at the email address below.

Do Not Track

  • We do not currently respond to "Do Not Track" (DNT) browser signals. We do not use third-party advertising cookies or cross-site tracking.

Third-Party Services

  • Our Service may contain links to third-party websites or services that are not operated by us. We have no control over and assume no responsibility for the content, privacy policies, or practices of any third-party sites or services.
  • We encourage you to review the privacy policy of every site or service you visit.

For EU Users (GDPR)

  • If you are located in the European Economic Area (EEA), you have additional rights under the General Data Protection Regulation (GDPR).
  • Legal Basis for Processing: We process your personal data based on: (a) performance of a contract (providing the Service to you), (b) your consent, (c) our legitimate interests (improving the Service, preventing fraud), and (d) compliance with legal obligations.
  • Data Transfers: Your data may be transferred to and processed in countries outside the EEA. We ensure appropriate safeguards are in place for such transfers.
  • Right to Complain: You have the right to lodge a complaint with your local data protection authority if you believe your rights under GDPR have been infringed.

Children's Privacy

  • The Service is not intended for users under the age of 16. We do not knowingly collect personal information from children. If we become aware that a child has provided us with personal data, we will take steps to delete it promptly.

Changes to This Policy

  • We may update this Privacy Policy from time to time. Material changes will be communicated via email or in-platform notification at least 30 days before they take effect.
  • Your continued use of the Service after the effective date of any changes constitutes acceptance of the updated policy.

How to Contact Us

If you have any questions about this Privacy Policy, please contact us:

Krishna M. Pathak

scriptackle@gmail.com

Your data, your content.

Full transparency and control over your projects, content, and account data.

Get Started