Privacy Policy

Last updated: February 15, 2026

At Searlo, we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our search API services.

1. Information We Collect

Account Information

When you create an account, we collect your email address, name, and payment information (processed securely by Paddle). We do not store credit card numbers. Creating or maintaining multiple accounts to bypass limits, abuse credits, or evade restrictions violates our user policy and may result in account suspension or permanent ban.

Usage Data

We collect API usage data including search queries, request timestamps, response times, and error logs to improve our services and provide analytics.

Technical Information

We collect IP addresses, browser type, device information, and cookies for security and service optimization. IP addresses are pseudonymized before being stored with search history.

2. How We Use Your Information

  • Provide, maintain, and improve our services
  • Process transactions and send related information
  • Send technical notices, updates, and support messages
  • Respond to your comments, questions, and requests
  • Monitor and analyze trends, usage, and activities
  • Detect, investigate, and prevent fraudulent activities

3. Data Retention

We retain account data for as long as your account is active or as needed to provide services. Search query history is retained for a maximum of 90 days and then automatically purged by a daily job. You can delete individual search-history entries or clear your full history at any time. Search result sets are cached transiently only (a few hours) and are not retained long-term. You can request deletion of your data at any time.

4. Data Sharing & Sub-processors

We do not sell your personal information. We share data only with the following sub-processors required to operate the service:

VendorPurposeDataRegion
PaddlePayment processingBilling info (no card numbers stored by us)United Kingdom / EU
Contabo GmbHServer hosting (app, database, cache)All service dataEU (France)
CloudflareCDN, DDoS protection, DNSRequest metadata, IP addressesEU PoPs / Global
PostHogProduct analyticsAnonymized usage eventsEU (Frankfurt)

We may also share data with legal authorities when required by law.

5. Security

We implement industry-standard security measures including encryption (TLS 1.3), secure data centers, access controls, and regular security audits.

6. Your Rights

You have the right to:

  • Access your personal data
  • Correct inaccurate data
  • Request deletion of your data
  • Export your data in a portable format
  • Opt out of marketing communications

7. GDPR Compliance

For EU residents, we comply with GDPR requirements. Our legal basis for processing includes contract performance, legitimate interests, and consent where applicable.

8. Data Residency

All service data is stored exclusively in the European Union. Our server is hosted by Contabo GmbH in Lauterbourg, France. No data is transferred to or stored in regions outside the EU, except as required for payment processing (Paddle, UK/EU) and CDN edge caching (Cloudflare, transient only).

Engineering and operational support is provided by the sole founder, based in Bangladesh. All access to production systems is authenticated, MFA-protected, and fully audit-logged. No production data is stored locally outside cloud infrastructure.

9. Contact Us

For privacy-related questions or requests, contact us at:

[email protected]

For security incidents or vendor security questionnaires:

[email protected]