Client PortalGet started

Privacy Policy

Last updated: August 29, 2026

Who we are

SEMRS operates SEMRS OS, an internal production system used to deliver social media marketing, SEO, SEM, content, and analytics services to SEMRS's own clients. This policy covers the data SEMRS OS collects and how it's used — for both SEMRS staff/CEO operating the system and clients using the Client Portal or connecting a Google account to it.

What we collect, and why

  • Client account and order information — business name, contact name, email, phone, and the details of the marketing services ordered. Used to deliver the ordered work and communicate with the client about their order.
  • Lead data — for clients who order Lead Generation, a lead's name, phone number, and/or email, submitted voluntarily through that client's own capture form, click-to-chat button, or ad platform lead form. This is the one deliberate exception to our general no-personal-data-collection rule for research — collecting it is the entire point of the service. It is only ever used to qualify and notify that lead's own client, never resold, never reused across clients, and never used for SEMRS's own marketing.
  • Google account data, only if you connect one — if a client or SEMRS staff member uses this app's "Sign in with Google"/"Connect" option, we request access only to the specific Google properties shown on that consent screen (for example: Google Business Profile, Search Console, Google Analytics, AdSense, Google Ads, Tag Manager, YouTube, or Merchant Center) — never your Google password, and never more of your Google account than the exact scopes listed on that screen. This access is used only to read or publish the specific data needed for the marketing service you ordered (e.g. reading your site's search performance, publishing an approved post to your Business Profile). You can revoke this access at any time at myaccount.google.com/permissions, which takes effect immediately.

How your data is protected

Any credential or access token this app stores (a connected Google refresh token, a platform access token) is encrypted at rest (AES-256-GCM) and is never displayed again once entered. Every client's data — briefs, leads, drafts, connections — is scoped strictly to that client's own account; one client's dashboard user can never see another client's data.

Who we share data with

We don't sell your data. Google account data is used only through Google's own APIs, only for the scopes you granted, only to perform the marketing service you ordered — it is never shared with any other third party. Lead data is shared only with the specific client who captured that lead, never across clients, never with anyone else.

How long we keep data

We keep a client's brief, drafts, approval records, and message log for as long as the engagement is active, plus 12 months after final delivery, then archive or delete on request. The same default applies to lead records, including leads that never convert.

Your choices

You can revoke any connected Google account's access at any time, either from this app's own dashboard (a Disconnect button sits next to every connection) or directly at myaccount.google.com/permissions. To request a copy of your data, ask that it be deleted, or ask any other question about this policy, contact us at the address below.

Contact

Email: admin@semrs.com
Mailing address: Karachi, Pakistan