Last updated: June 23, 2026

Privacy Policy

This policy covers aiscan.site and the AIScan — AI Readiness Checker Chrome extension.

TL;DR

  • We only collect what we need to run a scan: the URL you ask us to scan.
  • No third-party trackers, no ad networks, no selling of data.
  • Your API key (if you create one) is stored locally in your browser via chrome.storage.local and sent only to aiscan.site.
  • Sign-in is optional. Anonymous scans work and are not tied to an account.

What the Chrome extension collects

When you click the AIScan toolbar icon on a webpage, the extension sends the URL of the active tab to the AIScan API at https://aiscan.site/api/public/scan. That URL is what we scan. We do not read the page contents, your cookies, your browsing history, your form inputs, or any data from other tabs.

The extension requests the activeTab permission so it can read the URL of the tab you explicitly invoked it on, and the storage permission so it can remember your settings (including your optional API key) across sessions. Both are stored locally in your browser via chrome.storage.local.

What aiscan.site stores

  • Scan results. For every scan we run, we store the URL, score, grade, and the individual check results. These power the public "Recent scans" feed and your personal scan history if you're signed in.
  • Account data (only if you sign in). Email address and the authentication tokens issued by our auth provider. We use this to associate scans with your account and to gate per-account features (e.g. API keys).
  • API keys. If you generate an API key, we store a hash plus metadata (label, created date, last-used timestamp). We never store the full key after first display.
  • Operational logs. Standard request logs (IP address, timestamp, status code) for rate-limiting and abuse prevention. Retained for 30 days.

What we don't do

  • We don't sell, rent, or share your data with third parties for marketing.
  • We don't run third-party advertising or behavioural-tracking scripts.
  • The Chrome extension does not inject content scripts into pages and does not read page contents.
  • We don't use the URL you scan for anything other than running the scan and showing it back to you (and, where applicable, listing it on the public scans feed).

Public scans

By default, scans are publicly listed at aiscan.site/scans. The URL, score, and check results are visible to anyone with the link. If you do not want a URL to be publicly listed, do not scan it.

Data retention & deletion

Scan results are retained indefinitely unless you ask for deletion. Account data is retained while your account is active. To delete your account, your scan history, or specific scans, email asif2bd@gmail.com from your account's email address.

Subprocessors

AIScan is hosted on Lovable Cloud (which uses Cloudflare for edge compute and Supabase for database and authentication). These providers process data strictly to deliver the service.

Children's privacy

AIScan is not directed at children under 13 and we do not knowingly collect data from children.

Changes to this policy

We'll update the "Last updated" date at the top of this page when this policy changes. Material changes will also be announced in the changelog.

Contact

Privacy questions, deletion requests, or anything else: asif2bd@gmail.com.