Privacy Policy
Information about the protection of your data when using Atziry
Last updated: January 2, 2026
Table of Contents
1. Data Controller
The controller responsible for data processing on this platform is:
Sonnenfelsgasse 3/1/19
1010 Vienna, Austria
Email: privacy@vidasus.io
Managing Director: Ferdinand Habsburg-Lothringen
Atziry is a product of Vidasus GmbH and is subject to Austrian and European data protection regulations (GDPR).
2. Data Collection
When using Atziry, we collect the following data:
2.1 Account Data
- Email address (for login and communication)
- Company name and contact details
- Password (stored encrypted)
2.2 Usage Data
- IP address (anonymized after 24 hours)
- Browser type and version
- Access times
- Pages and features accessed
2.3 Analytics Data
- Data from connected Google services (with your consent)
- SEO and content analyses of your websites
- LLM citations and brand mentions (publicly accessible data)
3. Google Services Integration
Atziry offers the ability to connect various Google services:
3.1 Supported Services
- Google Search Console: Search analytics and keyword performance
- Google Analytics: Website traffic and user behavior
- Google Ads: Campaign performance and keyword data
- Google Merchant Center: Product feed and shopping data
- YouTube Analytics: Video performance and viewer analytics
3.2 OAuth Authentication
The connection is made via Google's secure OAuth 2.0 protocol:
- We never receive your Google password
- You explicitly grant access to specific data
- You can revoke access at any time in your Google account
- Access tokens are stored encrypted
3.3 Use of Data
The retrieved data is used exclusively for:
- Displaying analytics dashboards in your Atziry account
- Creating SEO reports and analyses
- AI-powered recommendations and insights
4. Data Processing
4.1 Query Pipeline & Web Analysis
Our Query Pipeline analyzes publicly accessible data from the internet:
- No personal data from third parties is collected
- Analysis is performed on an aggregated, anonymized basis
- Only publicly indexed content is evaluated
4.2 Knowledge Base
When storing in the Knowledge Base:
- Data is anonymized before storage
- Personal information is removed or pseudonymized
- Processing follows the principle of data minimization
4.3 AI Processing
For AI-powered analyses we use:
- Anonymized, aggregated data
- No direct personal data is transmitted to AI models
- Processing takes place on EU servers
5. Data Storage
5.1 Storage Location
5.2 Retention Period
- Account data: Until account deletion + statutory retention periods
- Analytics data: 24 months or until deletion by you
- Logs: 30 days (automatic deletion afterwards)
- OAuth tokens: Until permission is revoked
5.3 Data Deletion
You can request deletion of your data at any time. After account deletion, all personal data will be deleted within 30 days, unless statutory retention obligations exist.
6. Your Rights (GDPR)
You have the following rights regarding your personal data:
- Right of access (Art. 15 GDPR): You can request information about your stored data
- Rectification (Art. 16 GDPR): You can request correction of inaccurate data
- Erasure (Art. 17 GDPR): You can request deletion of your data ("right to be forgotten")
- Restriction (Art. 18 GDPR): You can request restriction of processing
- Data portability (Art. 20 GDPR): You can receive your data in a common format
- Objection (Art. 21 GDPR): You can object to processing of your data
- Complaint: You can file a complaint with the data protection authority
Email: privacy@vidasus.io
7. Cookies
Atziry uses the following cookies:
7.1 Necessary Cookies
- Session cookie: For login and authentication (essential)
- Preferences: Storage of your settings (dark mode, language)
7.2 No Tracking Cookies
We do not use third-party tracking cookies or external analytics tracking.
8. Third Parties
The following third parties are used to provide our services:
- Google (OAuth): Authentication for Google services - Privacy Policy
- Hosting (EU): Servers within the EU with GDPR-compliant data processing
Data processing agreements (DPA) according to Art. 28 GDPR exist with all third-party providers.
9. Data Security
We implement extensive technical and organizational measures:
- Encryption: TLS 1.3 for all data transfers
- Password hashing: PBKDF2-SHA256 with salt
- Access control: Role-based permissions
- Monitoring: Continuous security monitoring
- Backups: Regular, encrypted data backups
- EU hosting: All data remains within the European Union
10. Contact
For questions about data protection, please contact us at:
Data Protection Officer
Sonnenfelsgasse 3/1/19
1010 Vienna, Austria
Email: privacy@vidasus.io
Supervisory Authority
You have the right to file a complaint with the competent supervisory authority:
Austrian Data Protection Authority
Barichgasse 40-42
1030 Vienna
www.dsb.gv.at