Last updated 2026-09-25

Privacy

ClientRadar stores what the product needs to work and nothing it does not. This page says what that is, where it goes, and how to get it deleted.

1. The free scan

A scan stores the business name, city, region, country, category and website you enter, the questions asked, the engines' answers and when the scan ran.

Your IP address is never stored. To enforce the limit of three scans a day we store a hash of it made with a salt that changes every day and is derived from a server secret. The hash cannot be turned back into the address, and after the day ends it no longer matches anything. So that the city leaderboards can tell different visitors apart, we also store a second hash of it, keyed with the same server secret and changing every week; it cannot be turned back into the address either, and after the week ends it no longer matches anything.

If you give an email address we send one email with the results about a day later, and nothing after that unless you create an account. If you tick "let search engines index my scan" the page is listed; otherwise it is reachable only by its link.

2. Accounts

An account is an email address and, if you sign in with Google, the name and address Google shares. We keep the sign-in sessions needed to keep you logged in. There are no passwords to store.

For each business you add we store the profile you enter (name, other names, website, address, phone, hours, category, competitors), your prompts, every engine answer with its citations and model, the analysis of each answer, scores, the fix list and the reports you publish. A logo you upload for reports is stored in our object storage.

3. The engines we call

ChatGPT, Gemini and Perplexity answer through their official APIs; Google AI Mode and AI Overviews are Google results recorded through DataForSEO’s SERP API. We do not automate the ChatGPT, Gemini or Perplexity apps. Each engine (and DataForSEO) receives the prompt text and your city, region and country. It never receives your business name, your email or anything about your account.

  • ChatGPT
  • Google AI Mode
  • Google AI Overview
  • Gemini
  • Perplexity

When a fix needs it we fetch your own website (the domain on the profile) to check robots rules, structured data and pages. We honour robots.txt and fetch nothing else.

4. Shared answers

When two customers ask the same question for the same location in the same week, the engine is asked once and both see that answer. The shared text is the engine's public answer; nothing about either customer is attached to it. The same answers feed the public "what AI recommends" pages, which list the businesses engines named and never the people who asked.

5. Services that process data for us

  • OpenAI: ChatGPT answers (Responses API with web search)
  • Google: Gemini answers with Google Search grounding; Google sign-in when you choose it
  • DataForSEO: Google AI Mode and AI Overview results for a location
  • Perplexity: Perplexity answers
  • Anthropic: Claude, which reads each answer to decide who was named, and writes the fix list
  • Cloudflare Turnstile: the bot check on the scan form and sign-up
  • Resend: sending sign-in links and the emails you opt into
  • Lemon Squeezy: payments; we never see your card number
  • Sentry: error reports from our servers and your browser when something breaks: the error, where in the code it happened and the page address. Before a report is sent we remove cookies, request bodies, credential and client-address headers, email addresses, API keys and tokens, and the tokens in report and scan links; we attach no IP address and at most an internal user id. There is no performance tracing or session replay

Our own database, queue and file storage run on a server we rent from Hetzner. We do not sell or share data for advertising.

6. Cookies

One session cookie keeps you signed in, and Turnstile sets what it needs to tell people from bots on the scan form and sign-up. Opening someone's referral link stores their referral code in a cookie (cr_ref) for up to 30 days so the sign-up can be credited to them; it is cleared when you sign up. There are no advertising or analytics cookies.

7. Deleting and exporting

Download a JSON copy of your data any time from Settings → Data → Export JSON.

Delete your account from Settings → Data. A job hard-deletes, within 24 hours, your businesses, prompts, answers, analyses, scores, fix lists, reports, API keys, uploaded logos and report PDFs, every member's account and sign-in sessions, and the free scans the account was started from. Paid subscriptions are cancelled with the payment provider first. What stays afterwards:

  • The audit trail of the workspace without its content: which action happened, the ids involved and when. Business names, prompts, competitor names and workspace names are removed from it.
  • If you signed up through someone's referral link, the referral record (with the daily-salted hash of the sign-up address used to check self-referrals) and the commission rows for your paid invoices (invoice id, amounts, dates) stay in the referrer's ledger. Your own referral code and its ledger are deleted.
  • The record of each billing event our payment provider sent about your subscription (event name, ids, timestamps and a hash of the message, not its content), deleted 90 days after it arrived.
  • The invoices and payment records Lemon Squeezy keeps as the seller of record, under its own policy.
  • Answers another customer's run copied from the shared cache (section 4). They hold the engine's public answer and nothing about you.

A free scan and its answers are deleted 90 days after the scan ran, and its link stops working then. To have one removed sooner, write to hello@clientradar.app with the scan link and it is deleted by hand, answers included.

Run history (answers, analyses, scores and site checks) is kept as long as your plan says: 6 months on Starter, 12 on Pro and 24 on Agency; older runs are deleted. When a plan ends, or you move to one that keeps less, nothing is deleted for 30 days; after that the history is trimmed to the new plan, and a workspace without a plan keeps 30 days.

8. Contact and changes

Write to hello@clientradar.app; a reply to any email ClientRadar sends you reaches the same inbox. The date at the top says when this page last changed; a change that reduces your rights is announced by email first. The terms of service cover everything else.

Privacy · ClientRadar