Beta access

Badgerfly Privacy Policy

Effective date: 5 October 2026.

Badgerfly is operated by Geeks and Me LLC, a Mississippi limited liability company ("Badgerfly", "we"). Contact: contact@geeksandme.com.

1. Who this covers

Badgerfly is an SEO platform for agencies and in-house teams. This policy covers people who sign up and use the Badgerfly app (at app.badgerfly.com and, during the beta, staging.badgerfly.com), visitors who join our email list on badgerfly.com, and the people whose email addresses a user adds to the app as report or alert recipients. Our web crawler has its own page: https://badgerfly.com/badgerflybot.

2. What we collect

Your account. Your email address, an optional name, and your password, which we store only as a bcrypt hash (we never see or keep the password itself). Your workspace's name, its plan, and your role in it. During the beta you join with an invite code; we store only a hash of the code and the email it was issued to.

What you put into the app. The projects you create (a site address, a location) and each project's profile: business name and other names, phone numbers, current and previous addresses, website and email domains, category, service areas, services, competitors, social and listing profile links. The keywords, domains, URLs and businesses you research, track or audit, and the settings of each run. Reports you build, their recipients' email addresses, branding (company name, colours, a logo) and pictures you upload into them. Alert settings: the email addresses alerts go to and an optional webhook address.

Google data you connect. If you connect Google Search Console and Google Analytics (section 5), the data described there.

Data we generate for you. Results of the work you ask for: audits of your sites, rank histories, keyword and backlink research, local rank maps, AI visibility measurements, alerts and reports.

Technical data. The app keeps your sign-in tokens in your browser's local storage, with your preferences (theme, last workspace and project, layouts); it sets no cookies and runs no analytics or advertising trackers. To limit abuse, sign-in and signup attempts are counted per IP address and per email in the server's memory only (not stored). Our hosting provider's request logs record each request's address and path. If error reporting is switched on, errors are sent to our error tracker without your name, email, cookies, request headers or query strings.

Our email list. If you ask for beta access or product updates on badgerfly.com, we keep the email address and the answers you give on the form, and we send you a message to confirm the address before adding you.

Not collected. We do not collect payment card numbers (our payment processor does), and we do not buy or sell personal information.

3. Why we use it

  • To run the service you signed up for: do the research, audits, tracking and reports you ask for, and show you the results.
  • To bill you: plans, token balances and top-ups.
  • To contact you about your account: password reset, welcome, alerts you set up, reports you schedule, a run you started finishing, and work that paused because the workspace ran out of tokens.
  • To send beta invitations and product updates to people who asked for them. Every such email has a way to unsubscribe.
  • To keep the service secure and working: abuse limits, error reports, cost and performance records.

We do not use your data, or Google data, for advertising, and we do not sell it.

4. Who processes it for us

We send the minimum needed for each job to these services:

Service What it receives Why
Railway (hosting, United States) everything the app stores runs the app and its database
A dedicated server provider keywords, business names and map coordinates runs local rank maps
DataForSEO keywords, domains, URLs, locations and coordinates, business names; AI visibility questions search, keyword, backlink and business data; AI assistant answers
Anthropic page text, keywords, reviews, and for some features Search Console queries (section 5) the AI features: content research, cannibalization review, content scoring, topic plans, sentiment, AI visibility questions
Voyage AI keywords grouping keywords for the planner
Google Places API a business type and place finding local competitors
Google PageSpeed Insights page addresses performance measurements in site audits
URL safety services (URLhaus) backlink addresses flagging harmful links
Internet Archive (Wayback Machine), rdap.org domain names domain history and registration age
Stripe your email, plan and payment payments and the billing portal
Resend recipient addresses and the message sending email
Sentry error details, without personal data (section 2) finding and fixing errors
Google Fonts your browser's request for the app's fonts typography

5. Google user data

If you connect Google, we request two read-only permissions: webmasters.readonly (Search Console) and analytics.readonly (Google Analytics 4). We cannot change anything in either account. We also ask for the email address of the Google account (openid, email), only to show you which account is connected: a workspace can connect more than one Google account, and each is listed by its email address.

What we read. From Search Console: your list of sites, their sitemaps, and search performance (clicks, impressions, position) by date, query and page. From Google Analytics: your accounts and properties, and sessions, users and key events by date, channel, source, medium and landing page.

How we use it. Only to provide the features you use in Badgerfly: position tracking, keyword cannibalization review, content research, AI traffic reports, domain overview, AI visibility question ideas, and the reports and alerts built on them.

AI features. Some features send Search Console data to our AI provider (Anthropic) to produce the result you asked for: the cannibalization review sends the competing pages with their queries, positions, clicks and impressions; content research sends the queries each page already ranks for. Google Analytics data is not sent to any AI service. We do not use Google data to develop, improve or train generalized AI or machine learning models, and our AI provider's terms state that data sent through its API is not used to train its models.

Storage and protection. The access tokens are encrypted in our database. The data we read is stored in our database under your workspace and project, and is shown only to members of your workspace.

Sharing. We do not sell Google data, use it for advertising, or let people read it, except: with your permission, for security, to comply with law, or as part of the service providers above processing it for us. Badgerfly's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Disconnecting. You can disconnect a Google account in the app at any time, and you can also remove Badgerfly's access from your Google Account permissions page. When you disconnect in the app, we cancel our access at Google and delete the stored access tokens, so we can no longer read your data. (If the same Google account is still connected elsewhere in Badgerfly, for example for Analytics as well as Search Console, the access at Google ends when the last of those connections is disconnected.) Disconnecting does not delete the data already imported: your charts and reports keep their history.

Deleting imported Google data. You can delete the Search Console and Analytics data we imported, for one project or for your whole workspace, from the Google connections panel on the Dashboard. To protect against mistakes, the deletion is carried out 7 days after you ask, and you can undo it until then. It removes the clicks, impressions, searches and visits we imported from Google; it does not remove the positions Badgerfly checked itself or reports already produced. Deleting a project also deletes the Google data imported for it.

6. How long we keep it

We keep your account and the data you put in for as long as your account exists. Some data is pruned sooner:

  • Site audits: the full link and resource lists are kept for a project's 3 most recent audits; summaries and findings are kept.
  • Report PDFs: 120 days (the report record 400 days). Alerts you have read: 90 days.
  • AI visibility answers: the answer text after 90 days, the record after 3 years. Backlink snapshots: the link lists after 120 days, the record after 3 years.
  • Shared research caches (search results, domain metrics and similar data about public websites, not tied to you): 30 to 180 days by type.
  • Background job records: 30 days. Cost and performance records: 400 days.
  • Kept until you delete them: rank histories, imported Search Console and Analytics data, project profiles, uploaded report pictures.
  • Our email list: until you unsubscribe or ask us to remove you.

7. Your choices and rights

You can see and change your projects, profiles, reports and settings in the app, change your password, disconnect Google, delete imported Google data, and stop alerts or reports. To delete your account or workspace, or to get a copy of your data, write to contact@geeksandme.com and we will do it for you. Depending on where you live you may have rights to access, correct, delete, restrict or object to our use of your data, and to complain to a data protection authority. Write to the same address to use them.

8. Security

Passwords are hashed with bcrypt; Google tokens are encrypted; connections use TLS; access inside a workspace follows its roles; staff access to production is limited to the company's founders. No system is perfectly secure; we will tell you about a breach that affects your data as the law requires.

9. Children

Badgerfly is a business tool. It is not for anyone under 18.

10. International transfers

Badgerfly is run from the United States, and our providers may process data in the United States and elsewhere.

11. People in your reports and alerts

If you add someone's email as a report or alert recipient, you confirm you are allowed to send them those emails. They can ask you, or us, to stop.

12. Changes

We will post changes here and, for significant ones, tell account owners by email before they take effect.

13. Contact

Geeks and Me LLC, Mississippi, United States. contact@geeksandme.com.