Privacy Policy
This Privacy Policy explains how Sennim (“we”, “us”) collects, uses, and shares personal information when you visit sennim.com, create an account, or use our dashboard and related services (the “Service”). We operate from Australia and handle information in line with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs) where they apply.
Information we collect
Account and profile
- Email address, name or display name, and authentication data (such as a password hash or identity from Google sign-in)
- Account settings, workspace and project names, team membership, and role
- Communications you send us (support email, feedback)
Service usage and content
- Research queries you run, saved results, audits, leads, and similar project data
- Discussion messages, schedule boards, and other content you store in a workspace
- Usage and billing events (for example which paid actions ran and credit consumption)
- Technical logs (IP address, browser type, timestamps, error reports) to secure and operate the Service
Billing
- Subscription and payment status. Stripe processes card and wallet payments; we receive billing identifiers and transaction metadata, not your full card number.
Integrations you connect
- If a workspace owner connects Google Search Console, we store OAuth tokens and related connection metadata so we can fetch Search Console reports for the selected property. We access only what is needed for that feature and per the permissions you grant in Google.
Cookies and similar technologies
- Session cookies and local storage to keep you signed in and remember preferences (for example your active project). See Cookies below.
We do not knowingly collect sensitive information (such as health or government ID) as part of the Service. Please do not upload it unless the product explicitly asks for it.
How we use information
We use personal information to:
- Provide, maintain, and improve the Service
- Authenticate users and enforce security
- Bill subscriptions and usage, and prevent fraud
- Send transactional messages (verification codes, billing receipts, security alerts)
- Respond to support requests
- Comply with law and protect our rights and users
We may use aggregated or de-identified data for analytics and product improvement.
Legal bases (where applicable)
Where GDPR or similar laws apply to you, we rely on: contract (to deliver the Service), legitimate interests (security, improvement, fraud prevention), consent (where we ask for it explicitly, such as optional marketing), and legal obligation.
How we share information
We share personal information only as needed:
- Service providers — hosting, database, authentication, email delivery, payment processing, and infrastructure (for example Supabase, Stripe, and our email provider)
- Data partners — fulfilling research and SEO features (for example querying third-party SEO data APIs on your behalf when you run a lookup)
- Google — sign-in and Search Console when you use those features
- Professional advisers — legal, accounting, or insurance where required
- Authorities — when required by law or to protect safety and rights
We do not sell your personal information. We do not use your workspace content to train public third-party AI models.
Service providers may process data in countries other than Australia. We take reasonable steps to ensure overseas recipients handle information in a way that is consistent with this policy and applicable law.
Cookies
We use essential cookies and browser storage for login sessions and core functionality. Without them, the dashboard may not work. We do not use third-party advertising cookies on the Service. You can clear cookies in your browser settings; you will need to sign in again.
Retention
We keep information while your account is active and as needed to provide the Service. If you delete your account or ask us to delete data, we delete or anonymise personal information within a reasonable period, except where we must retain records for law, tax, dispute resolution, or security (for example billing records via Stripe).
Disconnected Google tokens are removed when you disconnect or delete the connection, subject to backup retention cycles.
Security
We use technical and organisational measures appropriate to the data we hold (encryption in transit, access controls, and secure credential storage for integrations). No method of transmission or storage is completely secure; please use a strong password and protect your devices.
Your rights and choices
Depending on where you live, you may have the right to:
- Access or receive a copy of personal information we hold about you
- Correct inaccurate information
- Delete your account and associated personal information (via settings or by contacting us)
- Object to or restrict certain processing
- Complain to a privacy regulator (in Australia, the Office of the Australian Information Commissioner at oaic.gov.au)
To exercise these rights, email contact@sennim.com. We may need to verify your identity. Workspace members should contact their workspace owner for access to team content; owners can manage invitations and roles in the product.
Children
The Service is not directed at children under 18. We do not knowingly collect personal information from children. Contact us if you believe a child has provided us data.
Third-party links
Our site may link to third-party websites or services. Their privacy practices are governed by their own policies.
Changes
We may update this Privacy Policy. We will post the new version here and update the date above. Material changes may be communicated by email or in the product.
Contact
Privacy questions and requests: contact@sennim.com.