Privacy Policy
Last updated: September 18, 2026
This Privacy Policy explains how Integrallis Software, LLC ("RankCLI," "we," "us") collects, uses, and protects information when you use the RankCLI website, dashboard, command-line tool, GitHub App, and MCP server (collectively, the "Service").
Using RankCLI without an account
You can run rankcli audit and the free, local MCP server (npx @rankcli/mcp-server) without creating an account. In this mode, RankCLI fetches and analyzes whatever URL you point it at, entirely on your own machine - the audit results are not sent to our servers. If you configure your own AI provider key for local use, that key stays on your machine and is used only to call that provider directly.
Information we collect
Once you create an account (email/password, Google, or GitHub sign-in), we collect:
- Account information: your email address, and if you sign in with Google or GitHub, the basic profile information those providers share with us.
- Site and audit data: the URLs you ask RankCLI to audit, the resulting scores and issues, and (if you connect a repository) the repository name and the pull requests RankCLI opens.
- Billing information: if you subscribe to a paid plan, payment is processed by Stripe. We never see or store your full card number - Stripe shares with us only what's needed to manage your subscription (plan, status, and renewal date).
- Your own AI provider keys (optional): if you choose to connect your own OpenAI, Anthropic, or other AI provider key for cloud-based auto-fix PRs, it is encrypted (AES-256-GCM) before storage and is only decrypted server-side, in memory, to make the specific API call you requested.
- Usage data: basic request logs (timestamps, IP address, user agent) used for rate limiting, abuse prevention, and debugging.
How we use this information
- To run audits, generate reports, and open auto-fix pull requests
- To operate your account, subscription, and billing
- To send transactional email (audit results, weekly reports if you opt in, account notices)
- To detect abuse and enforce our rate limits and fair-use terms
- To improve the accuracy and coverage of our SEO checks
We do not sell your personal information, and we do not use your audit data to train AI models.
Third parties we rely on
Running the Service means some data necessarily passes through infrastructure providers we use:
- Supabase - database, authentication, and serverless functions
- Cloudflare - content delivery, DNS, and Web Analytics (cookieless page-view counts; no cookies or cross-site identifiers)
- Fly.io - runs the audit engine that crawls and analyzes URLs
- Stripe - payment processing for paid subscriptions
- Resend - transactional email delivery
- GitHub - OAuth sign-in and the RankCLI GitHub App, if you connect a repository
Each of these providers processes data only as needed to provide their part of the Service, under their own privacy and security practices.
GitHub App permissions
If you install the RankCLI GitHub App, it requests read access to repository contents (to detect your framework and generate accurate fixes) and write access to pull requests and branches (to open auto-fix PRs). It does not access repositories you haven't explicitly installed it on, and you can revoke access at any time from your GitHub account settings.
Cookies
The dashboard uses essential cookies/local storage to keep you signed in. We do not use third-party advertising or cross-site tracking cookies. We count page views with Cloudflare Web Analytics, which sets no cookies and doesn't track you across sites.
Data retention and deletion
We retain account and audit data for as long as your account is active. You can delete your account at any time from Account settings, which removes your projects, audit history, and any connected AI provider keys. Some records may be retained briefly afterward where required for billing records or fraud prevention.
Children's privacy
The Service is not directed at children under 16, and we do not knowingly collect personal information from them.
Changes to this policy
We may update this policy as the Service evolves. Material changes will be reflected by updating the date at the top of this page.
Contact
Questions about this policy or your data can be sent to [email protected].