snuup

Privacy Policy

Last updated: 9 September 2026

This page explains what snuup (“we”, “us”) collects when you check a website or use your account at snuup.ai, what we do with it, and the choices you have.

Who we are

snuup is operated by Menturi OÜ, an Estonian private limited company (registry code 17205350). For privacy questions, email hello@snuup.ai.

What we collect

  • The website address you enter. We also read that website’s public homepage to work out the brand name and what it sells. We never ask for passwords and we never see anything that is not already public.
  • Your email address. You provide it when you request a check, buy a report, or ask for a sign-in link. We use it to deliver reports, receipts, and account emails, including sign-in links and confirmation when you change your email address.
  • Your account. We store your verified email address, the websites and reports linked to your account, your saved progress on fixes, and sign-in records to manage access to your dashboard.
  • Messages you send us. If you use the contact form or email us, we get your name, your email address, and the message. We use them only to reply.
  • Payment info. Our payment processor, Stripe, handles your card details. We store the transaction reference and the email tied to the purchase, not card numbers.
  • Usage data. Standard server logs (IP address, user agent, requested URL, timestamp) for security and debugging.

Optional report survey

If you choose to complete our optional report survey, we store your role, company size, why you checked your website, and any optional text you provide with the report to understand our audience and improve the product. Survey answers are not included in public reports or sent to AI providers. We retain them with the report; contact us to request deletion.

What we send to the AI companies

To run the check, we send questions about the website you entered to OpenAI (ChatGPT), Anthropic (Claude), Google (Gemini), and Perplexity. Those questions contain the website address, the brand name, and a short description of what it sells, all taken from the public homepage. They never contain your email, your payment details, or anything else about you. These providers process the questions under their own API terms.

How we use it

  • To run the check and generate your report.
  • To email your report links and process payments.
  • To sign you in, manage your account, and save your progress on fixes.
  • To respond to support requests you send us.
  • To keep the service secure and to debug issues.

How we share it

We do not sell your data and we do not share it with advertisers. We share data with the following categories of processors only as needed to run the product:

  • AI providers (OpenAI, Anthropic, Google, Perplexity): answer the questions we ask about the website, as described above.
  • Stripe: for payments, including the monthly plan’s billing. Stripe’s privacy policy applies to your card data.
  • Cloud hosting providers: run the application and store the data at rest, with data hosted in the EU where possible.
  • Email delivery providers: send report links, receipts, sign-in links, and other account emails.

We may also share data if required by law, or to enforce our Terms.

Sign-in cookies

When you sign in, we set a cookie called snuup_session to keep you signed in for up to 90 days. Signing out removes it from that browser. When you request a sign-in link, a separate cookie called snuup_signin_email remembers the address you entered for up to one hour so you can request another link if needed. These cookies support sign-in and account access.

Report links

Anyone with a free report link can open it. If someone checks the same website within 24 hours, they get the same free results. Completed paid report links take you to your dashboard, which requires sign-in. Anyone with a report link can still access its report data without signing in, so share report links carefully. Emailed sign-in links also give access to your account, so keep them private. Public reports do not show your email or payment details.

Retention

  • Your account: we keep it while you use the Service. To request deletion, email hello@snuup.ai. We may ask you to verify ownership first. Records we must keep by law, such as billing records, remain for the periods below.
  • Reports: we keep them so your link keeps working and so your next run can be compared to your last. Email us and we will delete yours within 30 days.
  • Billing and transaction records: 7 years, as required by Estonian accounting and tax law.
  • Server and security logs: from 30 days up to 12 months, depending on the source.

Your rights

Under the EU GDPR (and equivalents like the UK GDPR and the California CCPA), you have rights to access, correct, delete, and port the personal data we hold about you, and to object to certain uses. To exercise any of these rights, email hello@snuup.ai. You also have the right to lodge a complaint with your local data protection authority. In Estonia, that is the Andmekaitse Inspektsioon (AKI).

Security

We use standard industry practices to protect your data in transit (TLS) and at rest. No system is perfectly secure; if we ever become aware of a breach affecting your data, we will notify you in line with applicable law.

Children

snuup is not directed to anyone under 16, and we do not knowingly collect data from children.

Changes

If we make material changes to this policy, we will update the “Last updated” date at the top and, where appropriate, notify you by email.

Contact

Questions about this policy? Email hello@snuup.ai.