Last Updated: September 18, 2026 Effective Immediately

1. Overview and Core Philosophy

AuthorityWriter ("we", "us", or "our") operates an autonomous search engine optimization and publishing engine. We design our platform with a foundational principle: your content strategy, competitive research, domain analytics, and search intelligence belong exclusively to you.

We do not use your proprietary articles, customer data, domain metrics, or site topologies to train public machine learning models.

2. Google Search Console & Google API Services

AuthorityWriter utilizes Google OAuth 2.0 to connect to your verified Google Search Console account. Our use and transfer of information received from Google APIs adheres strictly to the Google API Services User Data Policy, including the Limited Use requirements.

Specifically, regarding Google Search Console data:
  • Limited Scope: We only request the webmasters and indexing scopes necessary to trigger Googlebot URL crawls and inspect indexation status for articles published through our engine.
  • Zero Training: Data retrieved from Google APIs is never pooled, shared, or utilized to train general AI models.
  • Encrypted Tokens: Google OAuth refresh and access tokens are encrypted at rest using AES-256-GCM authenticated encryption.

3. Information We Collect

We collect only the data necessary to provide our autonomous research, writing, and indexing services:

  • Account Information: Name, email address, password hash (via Argon2id / bcrypt), and active billing plan status.
  • Connected Website Metadata: Domain name, site URL, XML sitemap address, calculated Domain Rating (DR), and publishing schedules.
  • CMS Integration Credentials: WordPress Application Passwords, Shopify API tokens, Webflow collection IDs, and webhook signing secrets. All credentials are encrypted at rest with hardware-backed AES-256 keys.

4. Payment Processing & Billing Data

All financial transactions are processed by certified PCI-DSS Level 1 payment partners (Stripe and Polar). AuthorityWriter does not capture, process, or store raw credit card numbers or banking credentials on our infrastructure.

5. Data Retention, Portability & Deletion

You maintain complete ownership of your data. At any time, you can:

  • Export: Download all generated articles in Markdown or clean HTML directly from the editor or dashboard.
  • Disconnect: Revoke Google Search Console tokens or CMS integration access with a single click.
  • Delete: Request complete account and data eradication by contacting our Data Protection team.

6. Contact Our Privacy Team

If you have questions regarding this Privacy Policy or our compliance procedures, reach out directly to our security officer at [email protected].

Security Commitments
  • Google Search Console API Verified
  • Zero Training Retention Policy
  • AES-256-GCM Encrypted Credentials
  • PCI-DSS Compliant Payments
Have questions?

Our compliance and engineering teams are here to help.

Contact Support