Privacy Policy
Effective date: May 2026
Overview
AudFlo is operated by Matthew (the founder). This policy describes what information AudFlo collects when you use audflo.com, how that information is used, how long it is retained, and your rights regarding your data. If you have questions, contact contact@audflo.com.
What information is collected
Website URL audits
When you submit a URL for auditing, AudFlo stores the URL, the timestamp of the audit, the full audit results including per-layer scores, and a computed overall score. This data is stored to generate your shareable report URL and, for Pro users, to populate your score history and comparison views.
Account information
If you create an account, AudFlo stores your email address, the date your account was created, and your account tier. AudFlo does not store passwords in plain text. Passwords are hashed using industry-standard bcrypt before storage.
Payment information
AudFlo uses a third-party payment processor (Stripe) to handle subscription payments. AudFlo does not store your credit card number, CVV, or full payment details. AudFlo stores only the subscription status, tier, billing period, and payment processor customer ID needed to manage your subscription.
Cookies and analytics
AudFlo uses minimal cookies: a session cookie to maintain your logged-in state and a preference cookie to remember your tier settings. AudFlo may use privacy-respecting analytics to understand aggregate usage patterns. Individual user behavior is not tracked across sessions or sold to third parties.
How your data is used
AudFlo uses collected data exclusively to provide the audit service. Audit results are used to generate your report and populate your score history. Your email address is used to manage your account, send receipts, and respond to support enquiries. AudFlo does not sell, rent, or share your personal data with third parties for marketing purposes.
Audit data is not used to train any machine learning model, including AudFlo's own systems. Your audit results are your data.
Data retention
Audit results are retained indefinitely to preserve your shareable report URLs. If you delete your account, your account information is deleted. Your audit results are anonymized rather than deleted so that shareable URLs continue to work.
If you want your audit data deleted entirely, including your shareable report URLs, email contact@audflo.com with a deletion request and your account email. Deletion is completed within 30 days.
Third-party services
AudFlo uses the following third-party services to operate. Each has its own privacy policy:
- +Supabase: database and authentication infrastructure
- +Stripe: payment processing for Pro subscriptions
- +Netlify: hosting and CDN infrastructure
- +Google Fonts: web font delivery (Inter and JetBrains Mono)
AudFlo does not use advertising networks, data brokers, or behavioral tracking tools.
Your rights
You have the right to access the data AudFlo holds about you, to request a copy of your audit history, to correct inaccurate account information, to delete your account and associated data, and to withdraw consent for data processing where consent is the legal basis.
To exercise any of these rights, email contact@audflo.com. All requests are responded to within 30 days.
Security
AudFlo uses industry-standard security practices: HTTPS for all connections, encrypted storage for sensitive data, and access controls that limit who can view user data to the minimum necessary to operate the service. No security system is perfect. If you discover a security issue, please report it responsibly to contact@audflo.com.
Changes to this policy
If this policy changes materially, AudFlo will notify registered users by email and update the effective date at the top of this page. Continued use of AudFlo after a policy change constitutes acceptance of the updated terms.
Contact
Privacy questions, data requests, and deletion requests: contact@audflo.com.