Privacy Policy

Last updated: July 24, 2026

This page is maintained by the Rankly team to explain how Rankly ("we", "our") handles data when you use rankly.app and the Rankly Shopify app.

1. Information we collect

When you sign up for Rankly we collect:

  • Account information: email address, name, and authentication identifiers.
  • Website information you add: domain, sitemap, brand voice notes, target keywords.
  • Publishing credentials you connect: Shopify OAuth tokens, WordPress application passwords, Webflow / Ghost API tokens. Stored server-side, encrypted at rest, never exposed to the browser.
  • Content Rankly generates for you: articles, images, meta tags, backlinks.
  • Basic usage analytics: which pages you visit inside the app, feature usage, error logs.

2. Shopify data

When you install the Rankly app on a Shopify store we request the minimum scopes needed to publish blog articles: write_content and read_content. We use these strictly to create, read, and update posts on your store's blog. We do not access customer data, orders, products, or payment information.

3. How we use your information

  • Generate SEO articles, keywords, and images tailored to your site.
  • Publish content to the platforms you connect.
  • Send transactional email (account, billing, publish notifications).
  • Improve Rankly through aggregated, non-identifying analytics.

We do not sell your data. We do not use your site content to train third-party foundation models.

4. AI processing

Rankly uses AI providers to generate content. Prompts include your website context and target keyword but never include credentials, customer data, or Shopify order data. Providers process prompts under contractual data-processing terms.

5. Storage & security

  • Data is stored on managed cloud infrastructure with row-level security so each account only sees its own data.
  • Traffic is served over HTTPS/TLS.
  • Publishing credentials and API tokens are stored encrypted and only decrypted server-side during a publish.

6. Data retention

We keep account and content data for as long as your account is active. When you delete your account or uninstall the Shopify app, we delete your credentials and personal data within 30 days. Articles already published to your site remain yours.

7. Your rights

You can access, export, correct, or delete your data at any time from your dashboard, or by emailing support@trysoro.com. We comply with GDPR and CCPA requests within 30 days.

8. Shopify compliance webhooks

When a merchant uninstalls the Rankly Shopify app, Shopify sends us customers/data_request, customers/redact, and shop/redact webhooks. We process these to delete or return the associated shop data within the required 30-day window.

9. Cookies

We use only essential cookies for authentication and session management. No third-party advertising or tracking cookies.

10. Changes

We may update this policy. Material changes will be announced by email or in-app at least 14 days before they take effect.

11. Contact

Questions? Email support@trysoro.com.