Mantasaur, operated by Mert Deniz ("we", "us", or "our"), operates the website mantasaur.com (the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.
1. Information We Collect
1.1 Information You Provide
- Account Information: When you create an account using Google OAuth or email/password, we collect your name, email address, and profile picture (if available).
- URLs You Submit: Web page URLs you submit for analysis through our Service.
- Payment Information: If you purchase a subscription, payment is processed by Paddle. We do not store your credit card number or banking details.
1.2 Information Collected Automatically
- Usage Data: Pages visited, features used, timestamps, and actions taken within the Service.
- Device Information: Browser type, operating system, device type, and screen resolution.
- IP Address: Collected for rate limiting, security, and fraud prevention purposes.
- Location Data: When you sign in, we automatically collect your approximate location (country, city, and region) derived from your IP address. This information is used for analytics and to improve our Service.
- Cookies: We use essential cookies to maintain your session and authentication state. See Section 6 for details.
- Analytics Data: If you consent to analytics cookies, we collect behavioral data through Google Analytics, including page views, click interactions, scroll depth, navigation paths, and session duration. This data is used solely to understand how visitors interact with the Service and to improve user experience. No analytics data is collected unless you explicitly accept analytics cookies via our cookie consent banner.
1.3 Information from Third-Party Services
When you sign in with Google, we receive your basic profile information (name, email, profile picture) as authorized by you through Google's OAuth consent screen. We only request the minimum scopes necessary for authentication.
If you accept analytics cookies, Google Analytics collects anonymized usage data (page visits, click events, session duration) on our behalf. This data is processed by Google in accordance with Google's Privacy Policy. You may opt out at any time by rejecting analytics cookies through the cookie consent banner or by clearing your browser cookies.
2. How We Use Your Information
We use the collected information to:
- Provide, operate, and maintain the Service
- Authenticate your identity and manage your account
- Analyze the web pages you submit and generate AI readability reports
- Process payments and manage subscriptions
- Send transactional emails (account confirmations, password resets, billing receipts)
- Monitor and enforce usage limits and rate limiting
- Detect, prevent, and address fraud, abuse, and security issues
- Improve and optimize the Service
3. How We Share Your Information
We do not sell, rent, or trade your personal information. We may share data with:
- Service Providers: We use third-party services to operate our platform:
- Supabase — Authentication and database hosting
- Anthropic (Claude AI) — AI-powered content analysis (we send page content for analysis; no personal data is included)
- Paddle — Payment processing and subscription management
- Vercel — Application hosting
- Upstash — Rate limiting
- Google — Google Tag Manager and Google Analytics for website usage analytics (only activated upon user consent)
- Legal Requirements: If required by law, regulation, legal process, or governmental request.
- Protection of Rights: To protect the rights, property, or safety of Mantasaur, our users, or others.
4. Data Retention
- Account Data: Retained for as long as your account is active. You may request deletion at any time.
- Analysis Data: Analysis results are retained for the duration specified in your subscription plan and automatically expire thereafter.
- Payment Records: Retained as required by applicable tax and financial regulations.
5. Data Security
We implement industry-standard security measures to protect your data, including:
- Encrypted data transmission (HTTPS/TLS)
- Secure authentication via Supabase Auth with Row Level Security (RLS)
- Environment-isolated API keys and secrets
- Rate limiting to prevent abuse
No method of transmission over the Internet is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.
6. Cookies
We use the following types of cookies:
- Essential Cookies: Required for authentication and session management. These cannot be disabled and are always active.
- Analytics Cookies: Used by Google Analytics (via Google Tag Manager) to collect anonymized usage data such as page views, click interactions, and navigation patterns. These cookies are only activated when you explicitly click "Accept All" on our cookie consent banner. If you choose "Essential Only," no analytics cookies are set and no behavioral data is transmitted to Google.
You can change your cookie preference at any time by clearing your browser cookies and revisiting the site, which will re-display the consent banner. We do not use advertising cookies and do not participate in third-party ad networks.
7. Your Rights
Depending on your jurisdiction, you may have the following rights:
- Access: Request a copy of the personal data we hold about you.
- Correction: Request correction of inaccurate data.
- Deletion: Request deletion of your account and associated data.
- Data Portability: Request your data in a machine-readable format.
- Withdraw Consent: Revoke Google OAuth access at any time through your Google Account settings.
To exercise any of these rights, contact us at privacy@mantasaur.com.
8. Children's Privacy
Our Service is not intended for children under the age of 16. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.
9. International Data Transfers
Your data may be processed and stored in countries outside your country of residence, including the United States, where our service providers operate. By using the Service, you consent to such transfers. We ensure appropriate safeguards are in place with our service providers.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on this page with a revised "Last updated" date. Your continued use of the Service after changes constitutes acceptance of the updated policy.
11. Contact Us
If you have questions or concerns about this Privacy Policy, please contact us at:
- Operator: Mert Deniz
- Email: info@mantasaur.com
- Website: https://mantasaur.com
