1. Data Controller
The controller within the meaning of the General Data Protection Regulation (GDPR) and other national data protection laws and regulations is:
Minoka GbR
Bergstraße 5
45731 Waltrop, Germany
Email: seomurai@minoka.de
2. General Information About Data Processing
2.1 Scope
This privacy policy applies to the “SEOMURAI” browser extension (hereinafter the “extension” or “SEOMURAI”) and informs you about the nature, scope, and purpose of the processing of personal data in connection with the use of this extension.
2.2 Local Data Processing Principle
SEOMURAI was built on the principle of data minimization. The extension primarily operates locally in your browser. The analysis of websites runs entirely on your device. No analysis data is automatically transmitted to our servers.
3. What Data Is Processed?
3.1 What the Extension Stores, and Where
SEOMURAI stores data in two separate areas of your browser. One part stays on your device in every case. The other part is held in the area that Chrome synchronizes across your devices.
For that second part: if you are signed in to Chrome and have synchronization for extensions switched on, Chrome transmits this data to Google and to your other devices. If you are not signed in, or synchronization for extensions is switched off, this part does not leave your device either. The transfer takes place between your browser and Google. We do not receive this data and have no access to it. How Google processes it is governed by Google’s own privacy policy.
Data Chrome synchronizes when synchronization is switched on
| Data type | Description | Storage |
|---|---|---|
| Settings | Your preferences such as language, default view, context menu options | chrome.storage.sync |
| Notes | Notes you create about analyzed web pages | chrome.storage.sync |
| Chat histories | Conversations with the SEOMURAI chatbot | chrome.storage.sync |
| Saved prompts | Your own AI prompts, presets and favorites | chrome.storage.sync |
| Webhook workflows | The addresses you enter, for example to n8n or Zapier. Such addresses frequently carry the access token in the path, which is then synchronized along with them. | chrome.storage.sync |
| Third-party credentials | The keys you enter for OpenAI, Google Gemini, Anthropic and OpenRouter, the address and key of a local model, and your DataForSEO username and password | chrome.storage.sync |
| Saved queries | DataForSEO queries you store, including target domains and keywords | chrome.storage.sync |
| Link lists | Collections of outgoing links you create from analyzed pages | chrome.storage.sync |
| Result of a context-menu analysis | Held briefly after an AI run from the right-click menu, until you open the window. Contains the URL, the page title, the page content inside the prompt, and the model’s answer. | chrome.storage.sync |
| Window position | Position of the extension window on your screen. The position of the floating button stays on your device. | chrome.storage.sync |
Data that stays on your device in every case
| Data type | Description | Storage |
|---|---|---|
| AI assistant history | Results of the AI analysis | chrome.storage.local |
| DataForSEO history | The results of your research queries | chrome.storage.local |
| Keyword lists | Keyword collections you create | chrome.storage.local |
| Bulk analysis | Results of the multi-page analysis | chrome.storage.local |
Important: This data is not transmitted to us and remains under your full control. You can delete this data at any time via the extension’s settings or by uninstalling the extension.
3.2 Analyzed Website Data
While in use, SEOMURAI analyzes the page you are currently visiting. The following data is processed temporarily in memory:
- HTML structure of the page (DOM)
- Meta tags and headings
- Text content and images
- Links (internal and external)
- Schema.org markup
- HTTP headers (for redirect analysis)
This data is:
- Only processed during active analysis
- Not stored permanently (unless you explicitly save notes)
- Not transmitted to our servers
4. Transfer of Data to Third Parties
Data is transferred to third parties only when you actively use and configure certain optional features.
4.1 ExtensionPay / Stripe (Payment Processing)
If you purchase the PRO version of SEOMURAI, your payment data is processed via ExtensionPay (provider: ExtensionPay, USA) and the payment service provider Stripe (Stripe, Inc., USA).
Data processed:
- Email address
- Payment information (credit card data is processed directly by Stripe)
- Purchase date and license status
Legal basis: Art. 6(1)(b) GDPR (performance of a contract)
Privacy policies:
- Stripe: https://stripe.com/privacy
- ExtensionPay: https://extensionpay.com/privacy
Note on data transfers to the USA: ExtensionPay and Stripe process data in the USA. The transfer is based on Standard Contractual Clauses pursuant to Art. 46(2)(c) GDPR.
4.2 AI Services (optional, only when actively used)
If you use SEOMURAI’s AI features and provide your own API keys, data will be transmitted to the corresponding AI providers.
4.2.1 OpenRouter
Provider: OpenRouter (USA)
Data transmitted: Page content you select, prompts
Privacy policy: https://openrouter.ai/privacy
4.2.2 OpenAI
Provider: OpenAI, L.L.C. (USA)
Data transmitted: Page content you select, prompts
Privacy policy: https://openai.com/privacy
4.2.3 Anthropic (Claude)
Provider: Anthropic PBC (USA)
Data transmitted: Page content you select, prompts
Privacy policy: https://www.anthropic.com/privacy
4.2.4 Google Gemini
Provider: Google LLC (USA)
Data transmitted: Page content you select, prompts
Privacy policy: https://policies.google.com/privacy
Legal basis: Art. 6(1)(a) GDPR (consent through active configuration)
Important:
- You decide which data is sent to AI services
- Use requires your own API key with the relevant provider
- No data is transmitted without your active configuration
4.3 Webhook Integrations (optional, only when actively configured)
You can connect SEOMURAI to external services such as n8n, Zapier, or Make via webhooks.
Data transmitted: Page content and analysis data you configure
Recipient: The webhook endpoint you configure
Legal basis: Art. 6(1)(a) GDPR (consent through active configuration)
Important: You are responsible for ensuring that data processing by the webhook recipient complies with data protection law.
4.4 Browser Mode for AI (optional)
In Browser Mode, SEOMURAI opens external AI chat services (Claude.ai, ChatGPT, Perplexity) in a new tab with a pre-filled prompt.
Data transmitted: URL of the analyzed page, your prompt
Not transmitted: Page content (the AI services fetch the URL themselves)
Legal basis: Art. 6(1)(a) GDPR (consent through active use)
5. Data That Is NOT Collected
SEOMURAI does not collect any of the following:
- Browsing behavior or browser history
- Personal information without your active input
- Data from websites you do not actively analyze
- Analytics or tracking data about your use of the extension
- Advertising-related data
- Location data
- Cookies (the extension does not set its own cookies)
6. Legal Bases for Processing
The processing of personal data is based on the following legal bases:
| Purpose of processing | Legal basis |
|---|---|
| Storage in the browser (settings, notes) | Art. 6(1)(b) GDPR (performance of a contract) |
| Payment processing (PRO version) | Art. 6(1)(b) GDPR (performance of a contract) |
| AI features with API keys | Art. 6(1)(a) GDPR (consent) |
| Webhook integrations | Art. 6(1)(a) GDPR (consent) |
7. Storage Duration
7.1 Data Stored in the Browser
Data stored in the browser (settings, notes, history) remains until you:
- Manually delete the data via the settings
- Uninstall the extension
- Clear your browser data
7.2 Payment Data
Payment data is stored by ExtensionPay/Stripe in accordance with their privacy policies and statutory retention periods.
7.3 AI Requests
Requests to AI services are processed and stored in accordance with the privacy policy of the relevant provider. We have no influence over this storage.
8. Your Rights as a Data Subject
Under the GDPR, you have the following rights:
8.1 Right of Access (Art. 15 GDPR)
You have the right to obtain information about the personal data we process about you.
8.2 Right to Rectification (Art. 16 GDPR)
You have the right to request the correction of inaccurate data.
8.3 Right to Erasure (Art. 17 GDPR)
You have the right to request the erasure of your data, provided that no statutory retention obligations apply.
How to delete your local data:
- Open SEOMURAI
- Go to Settings
- Use the relevant deletion functions
- Alternatively: Uninstall the extension
8.4 Right to Restriction of Processing (Art. 18 GDPR)
You have the right to request the restriction of processing.
8.5 Right to Data Portability (Art. 20 GDPR)
You have the right to receive your data in a structured, commonly used format.
SEOMURAI provides export functions for:
- Notes (JSON export)
- AI prompts (JSON export)
- Presets (JSON export)
- Analysis results (CSV export)
8.6 Right to Object (Art. 21 GDPR)
You have the right to object to the processing for reasons arising from your particular situation.
8.7 Right to Withdraw Consent (Art. 7(3) GDPR)
You can withdraw a granted consent at any time. To withdraw consent:
- Remove the API keys from the settings
- Delete the webhook configuration
- Uninstall the extension
8.8 Right to Lodge a Complaint with a Supervisory Authority (Art. 77 GDPR)
You have the right to lodge a complaint with a data protection supervisory authority.
Competent supervisory authority:
State Commissioner for Data Protection and Freedom of Information of North Rhine-Westphalia
Kavalleriestr. 2-4
40213 Düsseldorf, Germany
9. Data Security
We use technical and organizational measures to protect your data:
- Processing on your device: The analysis itself runs on your device. Which results are stored, and where, is set out in section 3.1.
- Encrypted transmission: Transfers to the third parties named in section 4 take place via HTTPS. A webhook address you enter yourself, or a locally operated model, uses the protocol you enter there.
- No central data storage: We do not operate any servers that store your usage data
- Where credentials are stored: Credentials are held in
chrome.storage.sync. With Chrome synchronization switched on they are synchronized along with it, see section 3.1.
10. Browser Extension Permissions
SEOMURAI requires the following browser permissions:
| Permission | Purpose |
|---|---|
activeTab | Access to the current page for analysis |
storage | Storage of your settings and data (see section 3.1) |
scripting | Execution of analysis scripts on the page |
contextMenus | Provision of right-click options |
declarativeNetRequest | Tracker blocker function (optional) |
notifications | Notices, for example when a run has finished |
webRequest | Observation of requests for the analysis |
downloads | Saving output as a file |
<all_urls> | Access to all websites. The extension analyzes the page you currently have open and therefore has to be able to work on any page. In addition, http://localhost/* and http://127.0.0.1/* are used for a locally operated model. |
These permissions are used exclusively for the functions described above.
11. Minors
SEOMURAI is not directed at persons under the age of 16. We do not knowingly collect data from minors.
12. Changes to This Privacy Policy
We reserve the right to amend this privacy policy as needed to reflect changes in legal requirements or in the extension’s functionality.
Current version: September 2026
We will inform you of significant changes via the extension or our website.
13. Contact
For questions about data protection, you can reach us at:
Email: seomurai@minoka.de
Postal address:
Sercan Kahraman
Bergstraße 5
45731 Waltrop, Germany
