FairSiteHQ← Back to fairsitehq.com
Legal · AI-assisted first draft

Privacy Policy

Status: First draft — not attorney-reviewedLast updated: [date — not yet published]Applies to: fairsitehq.com and the FairSiteHQ app
!

This is a first working draft, written to give the team something concrete to react to — it is not a finished policy and has not been reviewed by an attorney. Two sections (data from scanned sites, and data retention) are intentionally left blank because they depend on product and business decisions that haven't been made yet. Do not publish or rely on this page as FairSiteHQ's actual privacy commitments until it's been through real legal review.

On this page
1. Overview2. Information we collect3. Data from scanned sites4. How we use information5. How we share information6. Data retention7. Your rights & choices8. Cookies & tracking9. Security10. Children's privacy11. International users12. Changes to this policy13. Contact us
01

Overview

A short plain-language summary of what FairSiteHQ collects, why, and the choices available — meant to be readable on its own before anyone reads the full policy below.

FairSiteHQ ("FairSiteHQ," "we," "us") provides an automated web accessibility scanning and monitoring service. This policy explains what information we collect when you create a FairSiteHQ account and use the service, why we collect it, who we share it with, and the choices you have.

In short: we collect what's needed to run your account and your scans — your email address, the site URLs you ask us to scan, and basic usage data — and we use it to operate and improve FairSiteHQ. We do not sell personal information.

Placeholder — this section should be rewritten as a tighter summary once every section below is finalized, rather than kept as-is.
02

Information we collect

Covers account and contact details (name, email), billing information handled by our payment processor, the site URLs a customer submits for scanning, and basic technical/usage data from using the dashboard.

We collect information in a few categories:

  • Account information — the email address you sign up with, and any name or company details you choose to add to your profile.
  • Site information — the URLs of the sites you add to FairSiteHQ for scanning.
  • Scan configuration and history — your scan schedule, and a record of when scans ran.
  • Usage data — basic technical information about how you use the dashboard (for example, general device and browser information), collected to keep the service reliable and secure.
  • Billing information — once paid plans are live, payment details will be collected and processed directly by our payment processor; FairSiteHQ itself will not store full card numbers.
  • Communications — messages you send us, such as support requests or the early-access signup form.
Placeholder — this list should be checked field-by-field against the actual Supabase schema before publishing, not just against what the product is intended to do.
03

Data from scanned sites

Specific to how FairSiteHQ works: when a customer points FairSiteHQ at a site, the scanner crawls and stores structural page content and accessibility findings for that site. This section needs to say plainly what's captured, how long it's kept, and that it's visible only to the account that requested the scan — not bundled into any cross-customer dataset without separate, explicit consent.

Placeholder — needs input from the dev side on exactly what the crawler persists (raw HTML? screenshots? just axe-core findings?) before this can be written accurately.
04

How we use information

Running scans and generating reports, sending scan alerts and account notifications, maintaining and securing the account, and improving the product.

We use the information we collect to:

  • Create and maintain your account, and authenticate you when you sign in;
  • Run the scans you request, on the schedule you set, and generate your reports and dashboards;
  • Send you scan results, alerts, and service-related notices (for example, a failed scan or a plan change);
  • Respond to support requests;
  • Monitor, maintain, and secure the service, and fix bugs;
  • Improve FairSiteHQ — for example, understanding which features get used so we can prioritize what to build next.

We do not use your information for advertising, and we do not build advertising profiles from it.

05

How we share information

Should name the actual subprocessors involved in running the service (hosting, database, email delivery, payments) and state plainly that personal information is not sold.

We do not sell personal information. We share information only in these situations:

  • Service providers — companies that help us run FairSiteHQ, under contract and only for that purpose. Today this includes Supabase, which provides our authentication, hosting, and database infrastructure. As we add features such as billing or dedicated email delivery, this section will name those vendors specifically.
  • Legal reasons — if required by law, subpoena, or other legal process, or to protect the rights, property, or safety of FairSiteHQ, our users, or others.
  • Business transfers — if FairSiteHQ is involved in a merger, acquisition, or sale of assets, information may transfer as part of that transaction, subject to this policy (or a successor policy we notify you about).
  • With your direction — any other sharing you specifically ask for or agree to.
Placeholder — full, named vendor list to be finalized once the production stack (billing processor, email provider, etc.) is locked in; this draft names only what's already confirmed (Supabase).
06

Data retention

How long account data and historical scan results are kept, and what happens to them when an account is closed or a subscription lapses.

Placeholder — retention windows not yet decided; needs a decision before this section can be written.
07

Your rights & choices

Access, correction, export, and deletion requests, and how a customer or site visitor can exercise them.

Regardless of where you're located, you can:

  • Access and review the personal information tied to your account, from your dashboard or by asking us;
  • Correct inaccurate account information yourself, or by asking us;
  • Export your scan history and reports;
  • Delete your account, which removes your account information and scan history subject to the retention practices described above;
  • Opt out of non-essential email — service and security notices will still be sent.

To exercise any of these, contact us using the details in "Contact us" below.

Placeholder — needs attorney input on which regional frameworks actually apply (e.g. EU/UK GDPR, U.S. state laws like the CCPA/CPRA) given where customers and their site visitors are based. Those frameworks can add formal rights — a regulator complaint process, specific response-time deadlines — beyond the general version drafted above, and this section shouldn't be treated as final until that review happens.
08

Cookies & tracking

What cookies or similar technologies the marketing site and app use, and any analytics in place.

FairSiteHQ currently uses only the cookies necessary to keep you signed in and your session secure, set by our authentication provider, Supabase. We do not currently use third-party advertising or analytics cookies on the marketing site or in the app.

If that changes — for example, if we add product analytics — we'll update this section to describe what's added and the choices available to you.

09

Security

A general statement of the safeguards in place — encryption in transit, access controls — without overpromising a guarantee no system can make.

We use industry-standard safeguards to protect your information, including encryption of data in transit, access controls limiting who inside FairSiteHQ can see customer data, and row-level security on our database so one customer's account and scan data isn't visible to another's.

No method of storage or transmission is completely secure, and we can't guarantee absolute security. If we become aware of a breach affecting your information, we'll notify you as required by applicable law.

Placeholder — keep this list matched to actual practices as the stack evolves; nothing here should describe a safeguard we haven't actually implemented.
10

Children's privacy

A standard statement that FairSiteHQ is a B2B product not directed at or knowingly used by children.

FairSiteHQ is a business tool intended for use by companies and professionals, not by children. We do not knowingly collect personal information from children under 13, and if we learn that we have, we'll delete it.

Placeholder — confirm the exact age threshold with counsel; some jurisdictions use 16 rather than 13, and the right number depends on where our customers and their users are based.
11

International users

Where data is stored and processed, and how information is handled if it crosses borders.

FairSiteHQ is operated from the United States, and the information we collect is currently processed and stored in the U.S. via our infrastructure provider, Supabase. If you use FairSiteHQ from outside the U.S., your information will be transferred to and processed in the United States, which may have different data protection laws than your home country.

If we later add hosting in additional regions, we'll update this section to reflect that.

Placeholder — this assumes U.S.-only hosting stays true; revisit if the final hosting region(s) change, and confirm cross-border transfer language with counsel if customers are based in the EU/UK.
12

Changes to this policy

How updates to this policy will be communicated and when they take effect.

We may update this policy as FairSiteHQ changes. If we make material changes, we'll update the "last updated" date at the top of this page and, for significant changes, notify active customers directly — for example, by email. We encourage you to review this page periodically.

13

Contact us

How to reach FairSiteHQ with a privacy question or a rights request.

Questions about this policy, or a request related to your information, can be sent to privacy@fairsitehq.com.

Placeholder — confirm this mailbox is live and monitored before publishing.
FairSiteHQ
  • Home
  • Terms of Service
© 2026 FairSiteHQSKELETON — placeholder legal structure, not attorney-reviewed