EN TR
Legal

Privacy Policy

Last updated: 28 September 2026 · glimana.com

glimana is an SEO analytics tool. For the sites you add to it, it collects data from Google Search Console, Google Analytics 4, and its own crawler. This page explains what that data is, why we process it, and how long we keep it. If you live in Türkiye, also read the KVKK notice.

Data controller: Glimana (glimana.com). Contact: support@glimana.com.

1. What we collect about your account

When you create an account and use the panel, we store:

We do not take payments, so we collect no card or billing details.

2. Google data we access

Connecting a Google account is optional; if you never connect one, none of this section applies to you. When you do connect, we ask Google for these permissions — all of them read-only:

What we read from Search Console

Performance data for your own properties only: daily clicks, impressions and average position, broken down by query, page, country, device, search type (web, Discover, Google News, image, video) and search appearance. On first connection we backfill as far as Search Console itself allows (up to 16 months); after that we refresh daily, re-reading the last 5 days. Search Console never gives us individual users or visitor identifiers — Google aggregates it before we see it.

What we read from Analytics 4

Aggregated daily metrics: sessions, engaged sessions, users, conversions, revenue and average engagement time, at page and site level, split by traffic channel (organic search, direct, referral, social, other). On first connection we backfill up to 400 days, then refresh the last 3 days daily. We do not read visitor-level identifiers, cookie IDs, user IDs, or event-level records.

PageSpeed Insights and Chrome UX Report

We send URLs of your own site to Google's PageSpeed Insights and CrUX APIs to get performance measurements. These calls carry no personal data and no OAuth token; they use a server-side API key.

How tokens are stored

The Google access token and refresh token are stored encrypted in our database (Laravel encrypted casts, AES encryption with the application key). Tokens are never displayed in the interface, never written to logs, and never sent anywhere except Google's own endpoints.

What we never do

glimana's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

How to revoke access

3. Our own crawler

glimana crawls the sites you add to your account. The crawler identifies itself as GlimanaBot/1.0, obeys robots.txt, makes 4 requests per second by default, downloads at most 5 MB per page, and gives up if a page does not answer within 15 seconds. It crawls only sites added to your account.

For each page we store: URL, HTTP status, content type, indexability, canonical URL, redirects, click depth, internal and external link counts, word count, title, meta description, H1, page language, schema types, hreflang, Open Graph tags, robots directives, a similarity hash (simhash), response timings, and a gzipped copy of the HTML.

The crawler fills in no forms, signs in nowhere, and enters no protected area. If your pages publish personal data (an author name, a contact detail), that text ends up in the stored HTML copy — that copy is deleted after 45 days.

4. Technical logs and cookies

Server logs record the requested URL, time, browser type and IP address, for security and debugging. The full list of cookies and their lifetimes is on the Cookies page. There are no advertising or analytics cookies on the marketing site or in the panel, and we use no third-party trackers.

5. How long we keep it

DataRetention
Search Console — daily query × page breakdown16 months
Search Console — page, query, site and appearance series36 months
Analytics 4 — daily page and site series36 months
PageSpeed runs12 months
Crawled page snapshots and stored HTML copies45 days
Account and workspace recordswhile the account exists

When you delete your account the record is first deactivated, then permanently removed. HTML copies written to disk by the crawler are removed by a weekly cleanup job according to the window above.

6. Who else sees it

We do not sell data. Only these parties are involved in running the service:

If anything else ever becomes necessary (a lawful request, for example) we will tell you first, unless the law forbids it.

7. Security

8. Your rights

You can ask what we hold, correct it, delete it, export it, or object to processing. Email support@glimana.com and we will answer within 30 days at the latest. For data subjects in Türkiye, rights under Article 11 of Law No. 6698 and the application procedure are on the KVKK page.

9. Children

glimana is not designed for anyone under 18, and we do not knowingly collect data from them.

10. Changes

If we update this text we change the date at the top of the page. If what we collect or why we collect it changes, we email the address on your account.

11. Contact

support@glimana.com