Privacy Policy
Effective July 14, 2026
About this policy
SearchConsole.ai ("SearchConsole.ai," "we," "us," or "our") provides a service that lets you connect your Google Search Console account to compatible Model Context Protocol (MCP) clients, including ChatGPT, Claude Code, and Cursor. This policy explains what information we collect, how we use and share it, and the choices available to you.
Information we collect
Google account information
When you connect with Google, we receive your Google account identifier, email address, and, if Google provides them, your name and profile image. We also receive OAuth access and refresh tokens and a record of the permissions you granted.
Google Search Console data
At your request, the service accesses data available to your Google account through the Google Search Console API. Depending on the tool you use, this can include:
- Verified properties, property URLs, and permission levels.
- Search performance data such as clicks, impressions, click-through rate, position, dates, queries, pages, countries, and devices.
- URL inspection and indexing information.
- Submitted sitemap information, including processing status, errors, warnings, and content counts.
MCP requests and technical information
We process tool names, parameters, and results needed to complete your MCP request. We may also process technical and security information such as IP address, timestamps, browser or client type, request metadata, and error logs. We do not receive your full conversation with an MCP client unless content from that conversation is included in a tool request sent to SearchConsole.ai.
Referral and cookie information
When you first visit SearchConsole.ai, we may store the referring URL or an explicit referral value in an encrypted, persistent browser cookie. If you create an account, that first referral value is saved with your account so we can understand how people discover the service. We do not replace it on later visits or sign-ins.
Support and feedback
When you submit authenticated feedback through the website or an MCP client, we store your message, your account email address, the website or MCP client used to submit it, and the submission time so we can review and respond to your issue or feedback.
How we use information
We use information only as needed to:
- Authenticate you and maintain your Google Search Console connection.
- Perform the Search Console operations you request and return results to your selected MCP client.
- Protect the service, prevent abuse, troubleshoot errors, and maintain reliability.
- Respond to support, privacy, and security requests.
- Comply with applicable legal obligations.
Google API data and Limited Use
SearchConsole.ai's use and transfer of information received from Google APIs complies with the Google API Services User Data Policy, including its Limited Use requirements.
We use Google user data only to provide or improve the user-facing features described in this policy. We do not sell Google user data, use it for advertising, transfer it to data brokers, use it to determine creditworthiness or for lending, build unrelated user profiles or databases, or use it to train generalized artificial intelligence or machine-learning models.
People may access Google user data only when you consent to that access, when needed for security or abuse investigation, when required by law, or when necessary to operate the service and subject to appropriate confidentiality obligations.
How we share information
We do not sell your personal information or Google Search Console data. We may share information in these limited circumstances:
- With your selected MCP client. When you invoke a tool, the requested results are returned to the client you connected, such as ChatGPT, Claude Code, or Cursor. That provider processes the returned information under its own privacy terms. If you use ChatGPT, OpenAI processes that information under its privacy policy.
- With service providers. Hosting, database, monitoring, and security providers may process information only to operate and protect SearchConsole.ai on our behalf.
- For legal and safety reasons. We may disclose information when reasonably necessary to comply with law, enforce our terms, or protect users, the public, or the service.
- In a business transaction. Information may be transferred as part of a merger, acquisition, financing, reorganization, or sale of assets, subject to this policy or notice of any material change.
Storage, security, and retention
Google OAuth credentials are encrypted before they are stored. MCP and OAuth secrets are stored using one-way hashes where they do not need to be recovered. We use HTTPS, access controls, and operational safeguards designed to protect information. No method of storage or transmission is completely secure.
Search Console results are normally processed on demand and returned to your MCP client rather than kept as a separate analytics archive. We retain account and connection records, encrypted Google tokens, authorization records, and limited operational logs for as long as needed to provide and secure the service, resolve disputes, or meet legal obligations. Retention periods can vary based on the type of record and operational need.
Your choices and deletion requests
You can revoke SearchConsole.ai's Google access at any time from your Google Account connections. Revoking access prevents future Google API requests but does not itself delete records already held by SearchConsole.ai.
To request access to, correction of, or deletion of your SearchConsole.ai account and associated data, email [email protected] from the address connected to the service. We will verify and process the request, subject to records we must retain for security or legal reasons. Depending on where you live, you may have additional privacy rights, including the right to object to or restrict certain processing and to complain to a data-protection authority.
International processing and children
SearchConsole.ai and its service providers may process information in countries other than the one where you live. Those countries may have different data-protection laws.
The service is not directed to children under 13, or a higher minimum age where required by local law. We do not knowingly collect personal information from children.
Changes and contact
We may update this policy as the service or legal requirements change. We will post the revised policy here and update the effective date. If a change materially affects how we use Google user data, we will provide additional notice or consent where required.
Questions or privacy requests can be sent to [email protected].