Privacy
What Netrix collects, how we use it, and the choices you have.
This notice covers the Netrix marketing site, application, audits, reports, and connected services. It explains the information we handle when you ask about Netrix, create or join an account, connect a website or provider, run SEO work, or use a shared report.
Draft — Revised August 27, 2026
Who this notice covers
This notice applies when Netrix decides why and how personal information is used on our marketing site, in account administration, for product operations, and in our own security and support work. In those situations, Netrix acts as the business or controller.
When a customer submits website, client, location, review, or other personal information for Netrix to process on the customer's instructions, the customer generally decides the purpose and Netrix acts as its service provider or processor. The customer's own privacy notice and agreement with Netrix also apply to that processing.
Information you give us
We receive contact details and business information when you request access, ask for support, join an account, or communicate with us. This may include your name, email address, company, website, team size, role, and the contents of your message.
Account owners and administrators may provide membership details, business assignments, brand notes, crawl settings, and provider credentials. Credentials are stored encrypted and are not shown back in full. Please do not send passwords, API keys, pairing codes, or customer data through ordinary contact messages.
Customer content and SEO data
Customers choose which websites, businesses, and locations to add. Depending on the features used, Netrix may process crawled pages and resources, technical findings, suggested and approved values, deployment history, public verification results, Google Business Profile-related records supplied by a connected provider, reviews, local rank grids, metrics, reports, and files.
A website crawl may collect information that is already public as well as information reachable with credentials the customer is authorized to use. Customers are responsible for choosing lawful targets and for giving Netrix only the access and data needed for their work.
Information collected when you use Netrix
We collect technical and activity information needed to deliver and protect the service. This can include IP address, browser and device details, host and requested path, session identifiers, login and membership events, feature usage, job and error records, provider responses, timestamps, and security signals.
The product also records who reviewed or initiated certain work, what target was involved, and what result Netrix observed. That history helps customers understand changes and helps us troubleshoot reliability and security.
Where information comes from
Information can come directly from you or another member of your Netrix account, from public websites that a customer asks us to crawl or verify, and from services a customer connects, such as WordPress, Cloudflare, Anthropic, Local Viking, or Local Brand Manager.
We may also receive routine infrastructure and delivery information from hosting, email, storage, DNS, security, and logging providers that help us operate Netrix.
Why we use information
We use information to provide accounts and requested features; run crawls and local SEO workflows; generate customer-requested drafts; support reviewed changes; create and share reports; authenticate users and connections; maintain change history; respond to requests; monitor reliability; prevent abuse; investigate security issues; meet legal obligations; and improve the service.
We do not use customer content to give ourselves permission to publish site changes. Drafts and supported deployments remain subject to the product's account permissions and human-review controls.
Legal bases for EEA and UK users
Where applicable law requires a legal basis, we process information as needed to provide the service or take requested pre-contract steps; for our legitimate interests in securing, supporting, and improving Netrix; to comply with law; and with consent when consent is the appropriate basis.
A customer that controls personal information submitted to Netrix is responsible for identifying its own lawful basis and giving required notices. You may object to processing based on legitimate interests, although the right is not absolute.
When we disclose information
We disclose information to service providers that help host, secure, store, crawl, email, support, or operate Netrix; to providers a customer chooses to connect; to members of the same customer account according to their permissions; and to professional advisers under confidentiality duties.
We may disclose information when required by law, to protect people or the service, to investigate fraud or security incidents, or as part of a merger, financing, acquisition, reorganization, or sale of assets subject to appropriate protections and notice where required. The current provider categories are described on our subprocessors page.
No sale or behavioral-advertising sharing
Netrix does not sell personal information for money. We also do not share personal information for cross-context behavioral advertising as those terms are used in California privacy law. We do not use customer audit, location, review, or deployment data to build advertising profiles.
If our practices change, we will update this notice and provide any opt-out method required by applicable law before using information in the new way.
Retention and deletion
We keep information for as long as needed to provide the account, maintain security and change history, resolve disputes, enforce agreements, and meet legal obligations. Report links and short-lived tokens have defined expiration periods. Many audit, task, deployment, review, metric, and usage records remain until their owning account data is deleted.
Infrastructure logs, backups, crawl files, and operational records may follow separate schedules. Deletion from Netrix does not automatically remove content or history stored in customer-owned WordPress, Cloudflare, or other connected services. We may retain limited records when law, security, fraud prevention, or an unresolved dispute requires it.
Security
We use administrative, technical, and organizational safeguards designed for the nature of the information we handle. These include account-scoped access, role checks, encryption for configured credentials, transport security, secret filtering, signed connector requests, public-address restrictions for outbound fetching, production-change gates, logging, and system monitoring.
No service can guarantee perfect security. Customers should use unique credentials, protect their accounts, grant only necessary permissions, and contact [email protected] if they believe an account or connection has been compromised.
International processing
Netrix and its providers may process information in the United States and other countries where they operate. Those countries may have privacy laws different from the laws where you live.
When a transfer mechanism is required, Netrix will use the mechanism stated in the applicable customer agreement or data processing addendum, such as approved standard contractual clauses, together with any additional measures reasonably required for the transfer.
Your privacy rights
Depending on where you live and subject to legal exceptions, you may have the right to know or access personal information, correct it, delete it, receive a portable copy, restrict or object to certain processing, withdraw consent, appeal a decision, or complain to a privacy regulator.
To make a request, email [email protected] and state that the message is a privacy request. You do not need to provide a company name or sales information. We may need enough information to verify your identity and authority without collecting unnecessary new data. An authorized agent may submit a request where applicable law permits it. Netrix will not discriminate against you for exercising an applicable privacy right.
Children
Netrix is a business service and is not directed to children. We do not knowingly collect personal information directly from children under 13 through the marketing site or account-registration process. If you believe a child provided information directly to us, contact us so we can review and delete it where appropriate.
Changes and contact
We may update this draft as the product, providers, or legal requirements change. The revision date at the top identifies this draft. After counsel approval, a published notice should identify the date that version took effect and provide any additional notice required for a material change.
Questions and privacy requests can be sent directly to [email protected]. Security issues should be reported to [email protected] using the responsible-disclosure guidance.