Alerotek SEO AdminSign in with GooglePrivacy Policy
Last updated: 17 August 2026
Introduction
Alerotek (“we”, “us”) operates Alerotek SEO Admin (“the application”), an internal administration platform used to monitor Alerotek’s website search performance. The application is used by authorized Alerotek administrators to view Google Search Console data, search performance, indexing status, and related SEO information for the Alerotek website.
Information we collect
To operate the application, we process the following information:
- Google account identity information — the name, email address, and profile picture Google provides when you authorize the application. This is used to authenticate you and to verify that you are an authorized administrator.
- OAuth authorization information — the authorization tokens Google issues so the application can access Search Console data on your behalf.
- Google Search Console data — properties, search analytics, queries, pages, countries, devices, sitemaps, and URL inspection results retrieved from Google after you authorize access.
- Application session information — a session record that keeps you signed in while you use the application.
- Audit and security logs — records of login, logout, and rejected-access events used to keep the application secure.
- Technical information — request and error logs required to operate and troubleshoot the service.
Google API and Search Console data
The application uses Google OAuth. You authorize the application through Google’s consent screen, and the application then accesses Google Search Console data according to the scopes currently configured — a read-only Search Console scope, plus the basic identity information needed to sign you in.
Search Console data is used for SEO monitoring and analysis of the Alerotek website. We do not use Google data for unrelated purposes, and we do not sell Google user data.
The application does not access Gmail, Google Drive, Google Calendar, or any other Google product.
OAuth tokens
OAuth credentials and tokens are handled securely by the application’s server. They are stored encrypted at rest, are never displayed publicly, are never placed in URLs, and are never exposed to other users.
Data storage
Application data — including encrypted OAuth credentials, session records, and audit logs — is stored in a hosted database (Supabase) and served through the application’s hosting provider (Vercel). Credentials are encrypted before storage, and the keys used for encryption are held server-side only.
Data retention
Information is retained only as long as needed for the operation, security, auditing, and legitimate business purposes of the application. A specific retention period is not currently configured; you may request deletion of application data at any time (see “Your rights” below).
Data sharing
We share data only with the services required to operate the application:
- Google — for OAuth authorization and Search Console API access.
- Supabase — as the hosted database provider.
- Vercel — as the hosting provider.
We do not share data with advertising networks or unrelated third parties, and we do not sell data.
Your rights
As an authorized user you can:
- Revoke Google authorization — in your Google account settings, remove Alerotek SEO Admin from the list of apps with account access.
- Request deletion of application data — contact us using the details below and we will delete your application data.
Security
We apply reasonable security controls, including HTTPS in transit, encryption of credentials at rest, HTTP-only session cookies, least-privilege OAuth scopes, and server-side-only handling of secrets. No system is completely secure, and we cannot guarantee absolute security.
Changes to this policy
We may update this policy when the application changes. Changes are posted on this page, and the “Last updated” date above reflects the most recent revision.
Contact
For privacy or data questions, contact: info@alerotek.co.ke