Privacy policy

Last updated 9 September 2026. NesDesign LLC, a Wyoming limited liability company, operates Seean at app.seean.io.

This policy covers two different groups: people who visit a website that uses Seean, and our own customers. The two are treated very differently, so they are described separately.

Visitors to sites that use Seean

Seean measures activity using random browser identifiers. These are pseudonymous identifiers, not a guarantee that the data is anonymous.

The tracker sends the page path, hostname, the referrer URL made available by the browser, timezone, visitor and session identifiers, campaign tags and Web Vitals measurements. The collector reduces the referrer to a hostname before storing analytics records. Browser, operating system and device categories are derived from the request’s user agent; its language region may be used as a country fallback. The current tracker does not send screen dimensions. Custom events and their properties are sent when configured. Order data comes from a separate checkout integration.

The tracker does not set cookies. It stores a random visitor ID in localStorage and session information in sessionStorage, and sends these identifiers with events. The visitor ID has no automatic expiry in the tracker and may persist across visits until browser storage is cleared. These identifiers can link activity from the same browser and may be associated with order data supplied by the website owner.

Analytics records do not include a visitor IP field, and country estimates do not use IP geolocation. Country may come from a reported value, timezone or browser language and can be inaccurate. Network and hosting services may process IP addresses when handling requests; this policy does not claim that IP addresses never reach our infrastructure.

The tracker stops analytics collection for Do Not Track, Global Privacy Control, or a browser opt-out set with localStorage.seean_ignore = "true". Website owners must configure when the tracker loads to implement applicable consent and opt-out requirements. Using browser storage rather than cookies does not by itself establish an exemption from those requirements.

We do not sell data, we do not build advertising profiles, and we do not share analytics data between customers.

Customers

When you create an account we process your email address, your chosen sign-in method (password, Google or GitHub), the domains of the websites you add, your plan and usage counters, and the analytics data described above for those websites. If you contact us, we keep that correspondence.

Billing is handled by Polar as merchant of record. Polar processes your billing details and issues invoices; we receive only the subscription status, plan and invoice metadata needed to run your account. We never see or store card numbers.

How we use it

We use this information to provide the dashboard and reports, to filter recognised bot user agents and common automation clients, to send service email such as verification codes, trial and billing notices and the reports you have enabled, to enforce plan limits, to keep the service secure and to detect abuse, and to comply with our legal and accounting obligations. Matching bot traffic and configured path or hostname exclusions are discarded before analytics storage and usage accounting. Existing historical bot-labelled records are kept. We do not use your analytics data to train models, and we do not use it for our own marketing.

For customers in the European Economic Area and the United Kingdom, we rely on performance of a contract to provide the service and to send service email, on our legitimate interests to keep the service secure and to prevent abuse, and on legal obligation for accounting records. For analytics data of your visitors, you are the controller and decide the legal basis; we act only on your instructions as processor.

Sharing and sub-processors

We share data only with the infrastructure and payment providers we need to run the service. They are listed with their purpose in our data processing agreement. We also disclose information where the law requires it, or where it is necessary to protect the service, our customers or their visitors, and we will tell you about a legally binding request unless we are prohibited from doing so.

We do not sell personal information and we do not share it for cross-context behavioural advertising, as those terms are used in United States state privacy laws.

Storage and retention

Event, Web Vitals and order records are subject to a rolling three-year retention window; scheduled cleanup removes older records. You can request earlier deletion from the dashboard. This window does not describe the lifetime of identifiers in a visitor’s browser. Account records are kept while the account is open. After an account is closed we delete or irreversibly anonymise the data within thirty days, except invoices and accounting records, which we keep for as long as tax law requires. Encrypted recovery backups follow a separate 30-day retention schedule. They are restricted to service recovery; deletion requests must be reapplied before restored data returns to service.

International transfers

We are a United States company and use infrastructure providers that may process data internationally. The applicable transfer terms are set out in our data processing agreement. Contact hello@seean.io for current processing locations and any specific data-residency requirements.

Your rights

Depending on where you live you may have the right to access, correct, delete or receive a copy of your personal data, to object to or restrict processing, and to complain to a supervisory authority. Residents of California and other United States states with privacy laws have equivalent rights, including the right not to be discriminated against for exercising them.

You can export or delete your own data from settings at any time. For anything else, write to hello@seean.io and we will answer within thirty days. If Seean processes data about you because you visited a website that uses it, that website’s owner is the controller and you should contact them; we will support them in answering you.

Children

Seean is not intended for children, and the service may not be installed on sites that primarily target children under 13.

Changes

We will update this policy as the service changes, and we will change the date at the top. For changes that materially affect customers we will give notice by email or in the dashboard before they take effect.

Contact

NesDesign LLC · Wyoming, United States · hello@seean.io