ZZorqen
HomePrivacyTerms
Legal & data protection

Privacy Policy

This Privacy Policy explains what Zorqen collects, why it is needed, how connected-service data is used, and the controls available to you.

Effective: August 17, 2026Last updated: August 17, 2026Applies to zorqen.co and the Zorqen web application

1. Who this policy applies to

Zorqen is an AI website and SEO automation platform that helps users connect domains and hosting, build and manage WordPress websites, generate content, run SEO workflows, and connect supported search-engine services. This policy applies when you visit zorqen.co, create an account, use a Zorqen workspace, connect third-party services, or otherwise interact with the platform.

2. Information we collect

Account and authentication data

When you create an account, Zorqen stores your name, email address, account role, account creation time, and a securely derived password hash. Zorqen does not store your account password in readable form.

To keep you signed in and protect the service, Zorqen also processes session information such as a session token hash, login and expiry times, IP address, and browser or user-agent information. The application uses a first-party session cookie for authentication.

Website and workspace data

We process information you submit or generate through Zorqen, including domains, website topics, country and language choices, business or site type, keywords, content plans, generated pages and articles, publishing schedules, SEO and audit results, WordPress status, automation events, and settings associated with your websites.

Connected-service credentials

If you connect supported services, Zorqen may store API tokens, OAuth access and refresh tokens, or WordPress administrator credentials needed to perform the actions you request. Sensitive connection values are encrypted at rest using application-level authenticated encryption before they are persisted.

Billing and transaction information

Zorqen may process billing mode, selected plan, amount, payment method, transaction reference or ID, payment status, wallet ledger entries, subscription dates, trial dates, and website-license dates. Where the platform uses manual payment confirmation, Zorqen does not need to collect or store your bank-card number through the application.

3. Google API data and OAuth permissions

When you choose to connect Google, Zorqen requests only the permissions needed for its Google Search Console and website-verification features:

  • Google Search Console: to add or access Search Console properties, submit sitemaps, and inspect the indexing status of URLs associated with websites you manage through Zorqen.
  • Google Site Verification: to request verification tokens and verify ownership of domains that you ask Zorqen to connect.
Zorqen does not request end-user Google Drive access.

The Google OAuth flow used by customers does not request the drive.readonly scope or access to personal Drive files. A separate server-side service account may be used for a platform-managed theme library; that service account is not connected to your Google account and does not grant Zorqen access to your personal Drive.

Google OAuth access and refresh tokens are stored in encrypted form and used only to provide the Google features you choose to use. You can remove this access from Workspace → Connections → Disconnect Google. Zorqen will attempt to revoke the Google grant and remove the local Google connection record.

Zorqen's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

4. How we use information

We use information only as reasonably necessary to operate and improve Zorqen and the user-facing features you request. This includes:

  • creating and securing your account and workspace;
  • connecting domains, hosting accounts, WordPress sites, search-engine services, and supported AI providers;
  • building, editing, publishing, auditing, and monitoring websites you control;
  • generating site strategy, design instructions, content, SEO metadata, and publishing plans;
  • submitting sitemaps, performing ownership verification, checking URL indexing status, and synchronizing search workflows when you request them;
  • processing trials, licenses, wallet balances, subscriptions, payment confirmations, and related records;
  • detecting abuse, troubleshooting failures, protecting accounts, and maintaining service reliability;
  • responding to support, legal, security, or compliance requests.

5. When data is shared

Zorqen does not sell your personal information or Google user data. Information is transmitted to third parties only when needed to provide a feature you choose, to maintain the service, to protect users, or when required by law.

Depending on the features you use, service providers or destinations may include Google APIs, Bing Webmaster services, Hostinger, the WordPress website or hosting provider you connect, configured AI providers such as DeepSeek, search or research providers used by Zorqen, and infrastructure providers used to host the application or database.

When Zorqen sends a prompt or website material to an AI or research provider, only information reasonably needed for that task should be sent. Your use of a third-party account or provider is also subject to that provider's own terms and privacy practices.

6. Cookies and session security

Zorqen uses a first-party authentication cookie to maintain your signed-in session. Session records may include limited security metadata such as your IP address and user-agent string. The current application does not require third-party advertising cookies to provide its core workspace functionality.

7. Data retention

We keep information for as long as reasonably needed to provide the service, maintain security, resolve disputes, comply with legal obligations, and preserve legitimate operational records. Retention varies by data type.

  • Google connection tokens are kept until you disconnect Google, the grant expires or is revoked, or the connection is otherwise removed.
  • Authentication sessions are time-limited; the current application issues sessions with an expiry period of up to 30 days unless ended sooner.
  • Website records and generated content may remain in your workspace until the related site or account data is deleted, subject to backup, security, fraud-prevention, or legal retention needs.
  • Billing and transaction records may be retained where reasonably necessary for accounting, fraud prevention, dispute handling, and legal compliance.

8. Your controls and data deletion

You can manage many categories of data directly in Zorqen. You may disconnect Google, Bing, Hostinger, or other supported connections from the Connections area when that control is available, and you may delete websites from your workspace using the website delete action.

To request access to, correction of, export of, or deletion of account-level personal data that is not available through a self-service control, contact us at noumanarshad143@gmail.com. We may need to verify that the request comes from the account owner before acting on it. Certain information may be retained where legally required or reasonably necessary for security, fraud prevention, payment disputes, or enforcement of our agreements.

9. Security

Zorqen uses security measures designed to reduce unauthorized access and misuse. Account passwords are stored as derived password hashes rather than plaintext passwords. Sensitive provider credentials and OAuth tokens are encrypted at rest by the application. Session tokens are stored in hashed form in persistent session records. No internet service can guarantee absolute security, so users should also protect their connected accounts, API keys, WordPress credentials, and devices.

10. International processing

Zorqen and its service providers may process information in more than one country. Where applicable law requires safeguards for international transfers, we will use legally recognized mechanisms or other appropriate protections.

11. Children's privacy

Zorqen is intended for people who can lawfully enter into an agreement for an online business or website service. It is not directed to children under 13, and we do not knowingly seek to collect personal information from children under 13.

12. Changes to this policy

We may update this Privacy Policy when the product, integrations, law, or security practices change. The updated version will be posted on this page with a revised “Last updated” date. If a change materially affects how sensitive data is used, we will provide additional notice where reasonably required.

13. Contact

For privacy, data-access, deletion, or security questions about Zorqen, contact noumanarshad143@gmail.com. Website: zorqen.co.

© 2026 Zorqen. All rights reserved.
HomePrivacy PolicyTerms & Conditions