Privacy Policy
Last updated: July 23, 2026
RankPilot (“RankPilot”, “we”, “us”) is a Shopify SEO management product operated by RankBrain Solutions. This policy explains what data we collect, how we use it, and the choices you have. By using RankPilot you agree to the practices described here.
Information we collect
- Account information — your name, email address, and a securely hashed password, used to create and secure your account.
- Shopify store data — with your explicit authorization via Shopify OAuth, we access your store’s products, collections, pages, blog posts, articles, images and their metadata, URL redirects, and store profile (store name, domain, plan, currency, timezone). We keep a synced copy to analyze SEO and apply the changes you approve.
- What we do NOT access — we do not request or process your customers’ personal data, orders, or payment information. RankPilot only works with catalog and content data.
- Technical data — basic logs (timestamps, error diagnostics) used to operate and secure the service.
How we use your data
- Provide SEO audits, health scoring, and prioritized recommendations.
- Generate optimized content (meta titles, descriptions, image alt text) when you request it.
- Sync approved changes back to your Shopify store on your instruction.
- Operate, secure, debug, and improve the service.
AI processing
AI-generated content is produced using Anthropic’s Claude API. We send only the relevant resource fields (e.g. a product’s title, type, and description) needed to generate the requested copy. Per Anthropic’s API terms, data submitted through the API is not used to train its models.
Storage & security
- Your Shopify access token is encrypted at rest (AES-256-GCM) and never exposed to the browser.
- All traffic is served over TLS/HTTPS.
- Infrastructure is hosted on Railway (application & database) and Vercel (web frontend).
Subprocessors
We share data only with the providers required to run RankPilot: Shopify (your store platform), Anthropic (AI generation), Railway (application & database hosting), and Vercel (web hosting).
Data retention & deletion
When you uninstall RankPilot or request deletion, we remove your store’s synced data. We honor Shopify’s mandatory compliance webhooks (shop/redact, customers/redact, customers/data_request). You may request access to, correction of, or deletion of your data at any time by emailing support@rankbrainsolutions.com.
Your rights
Depending on your location (including under GDPR and CCPA), you may have the right to access, correct, export, or delete your personal data. Contact us to exercise these rights.
Cookies & tracking
We store an authentication token in your browser to keep you signed in. We do not use third-party advertising or cross-site tracking cookies.
Changes to this policy
We may update this policy from time to time. Material changes will be reflected by the “Last updated” date above.
Contact
Questions about privacy? Email support@rankbrainsolutions.com.