OpusRank Privacy Policy

Last updated: 4 August 2026

Opus Technologies operates the OpusRank WordPress plugin and this website. This policy explains what data the plugin and our service handle.

The plugin works locally by default

OpusRank's core features — SEO analysis, AI readiness checks, internal link mapping, topic clustering, sitemaps, redirects and the 404 monitor — run entirely on your own web server. Results are stored in your own WordPress database. No account is required and nothing is transmitted to us.

You can use OpusRank indefinitely without connecting anything.

Connected features are opt-in

Two features require a connection to our service, and both are off until you enable them.

Search Console connection. When you connect Google Search Console:

  • You authorise our application at Google's own consent screen, granting read-only access to your Search Console data.
  • Google returns an authorisation code to our server, which exchanges it for a refresh token. This exchange requires a confidential credential that cannot safely be distributed inside a plugin, which is the only reason our server is involved.
  • The refresh token is held on our server for a maximum of ten minutes and is deleted the moment your site retrieves it. Your site stores it encrypted.
  • Approximately once an hour, your site sends that token to our server to obtain a short-lived access token. We do not retain the token or log its value.
  • Your Search Console data is never sent to us. Your site requests it directly from Google and stores it in your own database. We never see your queries, impressions, clicks or positions.

AI features. When you use an AI feature, your site sends us only the data that specific feature needs — for example a page's title, an extract of its content, and the search queries it already receives. The screen tells you what will be sent before it is sent. We pass it to a language model provider, return the result, and retain the request and response for 90 days so that identical requests are not charged twice and so we can investigate a disputed suggestion.

Content that is password-protected, unpublished, marked noindex, or explicitly excluded is never eligible to be sent.

What we store

DataPurposeRetention
Site address and licence keyVerify your licence, meter usageLife of your account
Site access tokenAuthenticate your site's requestsUntil you disconnect
Google refresh tokenPass back to your site during connectionMaximum 10 minutes
AI requests and responsesAvoid duplicate charges, investigate disputes90 days
Monthly AI call countsEnforce plan quotasLife of your account

We do not use cookies for tracking, do not run analytics on your site's data, and do not sell or share any of it.

The plugin's own logging

The 404 monitor records addresses visitors requested that do not exist, so broken links can be repaired. It stores the requested path, the origin of the referring website (not the full address, so any search terms it contained are discarded) and the browser identification string. These records stay on your server, are kept for 30 days by default, and can be shortened or disabled in the plugin's settings.

Disconnecting and deletion

Disconnecting Search Console from the plugin revokes our application's access at Google and deletes the stored token from your site. To delete your account data from our service, contact us via our contact page; we will remove it within 30 days, including from backups on their normal rotation.

Enabling "remove all data on uninstall" before deleting the plugin removes every table, setting and stored value from your WordPress database.

Third parties

  • Google — Search Console API, when you connect it. Google's privacy policy applies.
  • Freemius — licensing and payment.
  • Anthropic and OpenAI — language model providers for AI features, accessed via our infrastructure provider.
  • Base44 — hosts this website and service.

Contact

Opus Technologies — reach us through the contact page at opustech.net/contact.