Privacy Policy
Last updated: March 16, 2026
1. Introduction
This Privacy Policy explains how we ("we", "us", "our") collect, use, and protect your personal data when you use our platform and services (collectively, the "Service").
We process personal data in accordance with Regulation (EU) 2016/679 (General Data Protection Regulation, "GDPR") and applicable data protection laws.
2. Data Controller
The data controller responsible for your personal data is the operator of this Service. You can reach us at: info@blackboxanalyzer.com
3. What Data We Collect
3.1 Account Data
- Name, email address
- Password (stored as a cryptographic hash, never in plain text)
- Workspace name and preferences
3.2 Usage Data
- Keywords and domains you submit for analysis
- Analysis results and reports generated by the Service
- Feature usage and interaction data
3.3 Technical Data
- IP address
- Browser type and version
- Device information
- Session data and cookies
3.4 Payment Data
- Billing information is processed by our third-party payment processor (Stripe)
- We do not store your credit card numbers on our servers
4. Why We Process Your Data
| Purpose | Legal Basis (GDPR) |
|---|---|
| Providing and maintaining the Service | Contract performance (Art. 6(1)(b)) |
| Account creation and management | Contract performance (Art. 6(1)(b)) |
| Processing payments | Contract performance (Art. 6(1)(b)) |
| Customer support | Legitimate interest (Art. 6(1)(f)) |
| Service improvement and analytics | Legitimate interest (Art. 6(1)(f)) |
| Security and fraud prevention | Legitimate interest (Art. 6(1)(f)) |
| Marketing communications | Consent (Art. 6(1)(a)) |
| Legal obligations | Legal obligation (Art. 6(1)(c)) |
5. Data Retention
| Data Category | Retention Period |
|---|---|
| Account data | Until account deletion + 30 days |
| Analysis results and reports | Duration of active subscription |
| Security logs | 30 days |
| Billing records | As required by applicable tax law |
| Marketing consent | Until withdrawn |
6. Third-Party Services
We may share data with the following categories of third-party processors who act on our instructions:
- Payment processor – for handling payments securely
- Data providers – for SEO and AI data retrieval (keywords and domains only, no personal data)
- Analytics tools – anonymized website usage analytics
- Error monitoring – application error tracking
- Infrastructure providers – hosting and server infrastructure
Where data is transferred outside the EU/EEA, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses or adequacy decisions.
7. Cookies
7.1 Essential Cookies
Required for the Service to function (session management, security tokens, authentication). These cannot be disabled.
7.2 Analytics Cookies
Used to understand how visitors interact with our website. These are only set with your consent and data is anonymized.
You can manage cookie preferences through the cookie consent banner or your browser settings.
8. Your Rights
Under applicable data protection law, you have the right to:
- Access – Request a copy of the personal data we hold about you
- Rectification – Request correction of inaccurate data
- Erasure – Request deletion of your data
- Portability – Request your data in a machine-readable format
- Restriction – Request that we limit processing of your data
- Objection – Object to processing based on legitimate interest
- Withdraw consent – Where processing is based on consent, you may withdraw it at any time
To exercise any of these rights, contact us at info@blackboxanalyzer.com. We will respond within 30 days.
9. Data Security
We implement appropriate technical and organizational measures to protect your data, including:
- Encryption of data in transit (TLS/HTTPS)
- Cryptographic password hashing
- Cross-site request forgery (CSRF) protection
- Rate limiting on authentication endpoints
- Security logging and monitoring
- Multi-tenant data isolation (each workspace's data is separated)
10. Supervisory Authority
If you believe your data protection rights have been violated, you have the right to lodge a complaint with the relevant supervisory authority in your jurisdiction. For users in the Czech Republic, this is the Office for Personal Data Protection (www.uoou.cz).
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify registered users of material changes via email. The latest version is always available on this page.
12. Contact
For any questions about this Privacy Policy or your personal data, contact us at: info@blackboxanalyzer.com
See also: Terms and Conditions | Data Processing Agreement