Legal & Privacy

Privacy Policy

This Privacy Policy explains how Vertex Digital Forge LLC dba Website Compliance AI collects, uses, discloses, and protects personal information when you use WebsiteComplianceAI.com or request a website audit.

Last updated: September 29, 2026

1. Who We Are

Vertex Digital Forge LLC dba Website Compliance AI (“Website Compliance AI,” “we,” “us,” or “our”) operates WebsiteComplianceAI.com and provides independent website-audit services.

Privacy contact: [email protected]

You may also contact us through the Contact page on WebsiteComplianceAI.com.

If you use the service on behalf of a company or organization, you are responsible for ensuring that you have authority to provide information relating to that organization and any individuals whose personal information you submit.

2. Information We Collect

Information you provide directly

  • full business name;
  • email address;
  • website URL or domain;
  • website type;
  • advertising or merchant platform information selected in the form;
  • other business or website information you voluntarily provide;
  • communications sent to us;
  • files, screenshots, notices, exports, or other materials you voluntarily upload if an upload feature is offered.
Please do not submit passwords, payment-card data, government identification numbers, authentication codes, or other highly sensitive information unless we specifically request it through a secure process.

Website and audit information

To perform an audit, we may collect and analyze publicly accessible information on or in connection with the website you submit, including:

  • pages and URLs;
  • publicly displayed business and legal-entity information;
  • public contact information;
  • policies, terms, disclosures, claims, reviews, and visible website content;
  • technical responses, redirects, headers, robots directives, sitemaps, structured data, and related configuration;
  • publicly accessible information from relevant third-party or public sources where included in the audit scope.

Some public website content may contain personal information about business owners, staff, reviewers, or other individuals.

Information collected automatically

  • IP address;
  • browser and device type;
  • operating system;
  • referring and exit pages;
  • date and time of access;
  • pages viewed;
  • request and error logs;
  • cookie or similar technology identifiers, where used.

3. How We Use Information

We may use personal information to:

  • receive and process website-audit requests;
  • verify the website or domain submitted for review;
  • perform automated and AI-assisted website analysis;
  • create, quality-check, and deliver audit reports;
  • send the report link to the email address supplied in the form;
  • communicate about an audit request or support issue;
  • identify technical, content, trust, policy, and consistency signals within the requested audit scope;
  • maintain service security, reliability, and integrity;
  • detect misuse, fraud, abuse, or interference with our systems;
  • troubleshoot and improve the service;
  • maintain appropriate business and compliance records;
  • comply with legal obligations and lawful requests;
  • establish, exercise, or defend legal claims.

Audit results are informational. We do not use an audit report to make a legal or similarly significant decision about you.

4. AI-Assisted Processing

Website Compliance AI uses automated tools and multiple specialized AI agents to assist with website discovery, evidence collection, cross-checking, analysis, and report preparation.

Relevant portions of information you submit and publicly accessible website information may be processed by AI, cloud-computing, hosting, analytics, security, or other technology service providers that help us operate the service.

Automated outputs may be incomplete or inaccurate. We design the audit process to distinguish verified observations from items that could not be confirmed, but an audit does not guarantee compliance, account approval, reinstatement, or any particular decision by a third-party platform.

5. Legal Bases for Processing

Where the GDPR, UK GDPR, or similar laws require us to identify a lawful basis, we generally rely on:

Contract or steps at your request

We process information needed to provide the audit or related service you requested.

Legitimate interests

We may process information for legitimate interests including service operation and improvement, security, fraud prevention, responding to inquiries, maintaining business records, and protecting legal rights.

Consent

Where required, we rely on consent for optional cookies, certain marketing communications, or other processing for which consent is legally required. You may withdraw consent at any time, subject to applicable law.

Legal obligation

We may process information when necessary to comply with laws, regulations, court orders, or lawful government requests.

6. How We Share Information

We may disclose personal information to:

Service providers

Providers supporting hosting, cloud infrastructure, email delivery, AI and machine-learning infrastructure, website monitoring, security, analytics, storage, support, and report generation.

Professional advisers

Lawyers, accountants, auditors, insurers, consultants, or other advisers where reasonably necessary.

Legal and safety recipients

Authorities or other parties where reasonably necessary to comply with law, respond to lawful requests, investigate abuse, protect rights, or protect the security of users and systems.

Business transfers

Information may be transferred in connection with a merger, acquisition, financing, restructuring, sale of assets, bankruptcy, or similar transaction, subject to applicable law.

7. Sale, Sharing, and Targeted Advertising

We do not sell personal information for money.

We do not use information submitted through the free audit form for cross-context behavioral advertising.

If future use of cookies, analytics, advertising technology, or other services constitutes a legally defined “sale,” “sharing,” or targeted advertising activity under an applicable U.S. state law, we will provide the required notice and opt-out mechanism and honor legally required browser-based opt-out signals where applicable.

8. Cookies and Similar Technologies

We may use cookies or similar technologies to operate essential website features, maintain security, remember preferences, understand performance and usage, and diagnose technical problems.

Where required by applicable law, non-essential cookies will not be used until required consent is obtained.

If we introduce analytics, advertising, or other non-essential cookie categories, we may provide a cookie banner or preference center describing those technologies and available choices.

9. Email Communications

When you request a free audit, we use the email address you provide to confirm or administer the request, send the audit report link, and communicate about matters directly related to the requested service.

Transactional audit communications are part of providing the requested service.

We will not treat an audit request as consent to receive unrelated marketing communications where separate consent is required by law. Optional marketing emails, if offered, will include an unsubscribe method as required by applicable law.

10. Data Retention

We retain personal information only as long as reasonably necessary for the purposes described in this Policy.

  • Audit request information and generated reports: up to 12 months after report delivery.
  • Support and business communications: up to 24 months after the last substantive interaction.
  • Website security and technical logs: generally up to 90 days, unless longer retention is needed for security, fraud, or abuse investigations.
  • Legal, tax, accounting, and dispute records: as required or permitted by applicable law.

We may delete or anonymize information earlier when it is no longer needed. Information subject to a legal hold, dispute, investigation, or regulatory requirement may be retained longer.

11. International Data Transfers

Website Compliance AI is operated from the United States. Our service providers may process information in the United States and other countries whose data-protection laws may differ from those where you live.

Where required by applicable law, we use recognized transfer mechanisms or other appropriate safeguards for international transfers of personal information.

12. Data Security

We use reasonable administrative, technical, and organizational measures designed to protect personal information against unauthorized access, loss, misuse, alteration, or disclosure.

No website, transmission method, or storage system can be guaranteed completely secure. Avoid sending highly sensitive information through ordinary website forms or email unless specifically requested through an appropriate secure process.

13. Your Privacy Rights

Depending on where you live and applicable law, you may have rights to:

  • access personal information;
  • correct inaccurate information;
  • request deletion;
  • restrict or object to certain processing;
  • receive certain information in a portable format;
  • withdraw consent where processing is based on consent;
  • opt out of certain sale, sharing, or targeted advertising where applicable;
  • appeal certain privacy decisions where applicable;
  • complain to a competent privacy or data-protection authority.

Rights may be subject to legal exceptions.

To submit a request, email [email protected] or use our Contact page. We may need to verify your identity or authority before completing a request.

You may use an authorized agent where applicable. We will not discriminate against you for exercising privacy rights protected by applicable law.

14. EEA and UK Privacy Information

If the GDPR or UK GDPR applies, you may have rights including access, rectification, erasure, restriction, portability, objection, and withdrawal of consent where consent is the lawful basis.

You may lodge a complaint with the data-protection authority responsible for your location. UK users may contact the UK Information Commissioner’s Office. EEA users may contact their local supervisory authority.

If applicable law requires us to appoint an EEA or UK representative, the relevant representative details will be made available in this Policy or an appropriate local privacy notice.

15. California and Other U.S. State Privacy Rights

Certain U.S. state privacy laws provide eligible residents with additional rights when their legal thresholds and conditions are met.

Subject to applicable law, eligible residents may have rights to know or confirm processing, access, correct, delete, obtain a portable copy, opt out of qualifying sales/sharing/targeted advertising/profiling, limit certain sensitive-information uses, or appeal a denial.

Categories of personal information

  • Identifiers and contact information: name, email, IP address, and business contact details.
  • Internet or electronic activity: website usage and technical logs.
  • Commercial or business information: audit requests and related business details.
  • Professional or employment-related information: if publicly displayed on a submitted business website or voluntarily provided.
  • Inferences or derived information: audit findings generated from submitted and publicly accessible information.

Sources

Information may come directly from you, automatically from our website, from the public website submitted for audit, from public sources within the audit scope, and from service providers supporting our operations.

Disclosure

We may disclose these categories to service providers and other recipients described in this Policy for business and operational purposes. We do not sell personal information for money.

If our practices change in a way that requires a “Do Not Sell or Share My Personal Information” or “Your Privacy Choices” mechanism, we will provide the legally required mechanism.

16. Sensitive Personal Information

Our normal website-audit process is not designed to require sensitive personal information. Please do not submit account passwords, authentication codes, full payment-card numbers, government identification numbers, medical records, biometric data, or other highly sensitive personal information unless specifically requested through an appropriate secure process.

If sensitive information is submitted unintentionally, we may delete or restrict access to it where practical.

17. Publicly Available and Third-Party Information

A website audit may involve examining information already publicly accessible on the website you submit or in relevant public sources.

Public availability does not necessarily place information outside every privacy law. We limit use of public information to legitimate audit, verification, security, compliance, support, and related service purposes.

Third-party websites and platforms have their own privacy practices. We are not responsible for their privacy policies or data-handling practices.

18. Third-Party Links

Our website or reports may link to third-party websites, regulators, public records, tools, or platforms. A link does not mean that we control or endorse the third party’s privacy practices. Review those services’ privacy policies before providing personal information.

19. Children’s Privacy

Website Compliance AI is intended for business users and is not directed to children under 18. We do not knowingly collect personal information directly from children through the audit-request process.

If you believe a child has provided personal information to us, contact us so we can review and, where appropriate, delete it.

20. Changes to This Privacy Policy

We may update this Policy to reflect changes in our services, technology, vendors, data practices, or legal requirements. We will update the “Last updated” date when changes are made and provide additional notice of material changes where required by law.

21. Contact Us

Vertex Digital Forge LLC dba Website Compliance AI
Email: [email protected]
Website: WebsiteComplianceAI.com

You may also use the Contact page on our website.