Privacy Policy
Geony measures the visibility of brands in AI assistants. The measurements themselves are about brands and sources, not people, and we deliberately process as little personal data as possible. This policy describes what we do process, why, and what your rights are.
Who is responsible. Geony, a trademark of Artiq Motion, is the data controller for the data processed via geony.ai and app.geony.ai. Questions about this policy or about your data can be sent to privacy@geony.ai.
What data we process
Account details. You log in with Google, with Microsoft, or with your email address and a password. From that we keep your name, email address and, with a Google or Microsoft login, your profile photo URL. With a social login we never see your password. If you choose email with a password, we only keep an encrypted (hashed) version of it, never the password itself. If you turn on two-step verification, we keep the associated secret so we can check your codes.
Measurement data. The brands, questions and competitors you set up, and the measurement results from them (answers, mentioned or not, cited sources). This is business data, not personal data, but it is yours: every organisation is isolated from every other at the database level.
Check results. With the free AI check we keep the brand you entered, the question and the result, linked to a share link. If you enter your email address to receive the result, we use that address only for that, unless you also tick the newsletter box.
Contact form. Name, email address and whatever else you fill in. We use it solely to reply.
Newsletter. Only if you sign up do we keep your email address with our sending partner. You can unsubscribe from every email; after that your address is no longer used.
Connecting Google Search Console and Analytics
In the app you can voluntarily connect your own Google Search Console and Google Analytics, so that your search figures sit alongside your AI visibility. That connection uses read-only access (the scopes webmasters.readonly and analytics.readonly). We only retrieve the statistics that the reports show (queries, clicks, impressions, positions and visit figures for the property you choose yourself). We change nothing in your Google account and read no other data.
We use this data only to show it in your own dashboard and reports. We do not sell it, do not use it for advertising or profiling, and do not share it with third parties, except where that is strictly necessary to deliver the service or where the law requires us to. You can disconnect the connection in the app at any time; after that we no longer use the access tokens and we delete them.
Geony's use and transfer of data received through Google APIs comply with the Google API Services User Data Policy, including the Limited Use requirements.
Who processes data for us
We use a small number of processors, each for one task:
- Microsoft Azure for hosting the application, the database and the encrypted backups, in the West Europe region (Netherlands).
- Stripe for payments. Your payment details go directly to Stripe; we never see or store card numbers.
- Brevo for transactional email (confirmations, check results, alerts).
- MailerLite for the newsletter.
- Anthropic, OpenAI, Google, xAI and Perplexity as measurement providers: the customer questions you set up are put to their assistants. Exactly which assistants take part is shown in the app; if a provider is added, we update this list. No personal data about you or your customers is sent along with them; the question is the question.
The application and the database run on our own managed servers within the EU. There is no transfer of account data outside the EU, except for what the named processors need for their service; a data processing agreement is in place with each of them. If you process personal data of your own customers or leads through Geony, then we are your processor; for that our data processing agreement.
Data security
We protect sensitive data, such as your account details and the data from a connected Google Search Console or Google Analytics, in several ways. All traffic to geony.ai and app.geony.ai runs encrypted over HTTPS. Every organisation is isolated from every other at the database level with row-level security, so one customer can never reach another customer's data, and the application connects to the database through a role that cannot bypass that isolation.
We only keep passwords as an Argon2id hash, never as readable text. The access tokens for a connected Google account are stored only on our own servers in the EU, are never exposed to the browser, are used only to fetch the read-only data you selected, and are deleted as soon as you disconnect. Access to the production environment is limited to a small number of authorised people over authenticated connections and under confidentiality, and backups are stored encrypted.
How long we keep it
We keep account details and measurement data for as long as your account exists. If you cancel or request deletion, we delete your organisation and the associated data within 30 days; we keep invoices for 7 years because tax law requires it. Messages via the contact form we keep for at most 2 years. Results of the free check we keep for at most 1 year, so that share links do not die unexpectedly.
Your rights
Under the GDPR you have the right to access, rectification, erasure, restriction, portability and objection. Email privacy@geony.ai and we will respond within a month. If you disagree with how we handle your data, you can lodge a complaint with the Dutch Data Protection Authority.
Cookies
The marketing site (geony.ai) uses no tracking or advertising cookies. The app (app.geony.ai) sets only functional cookies to keep your session working.
Version: September 2026.