Privacy Policy & Data Retention
Last Updated: October 2026
1. What Information We Process
PageSpeedIQ is built as a lightweight, anonymous website performance analyzer. We do not require registration or collect names, email addresses, or payment details. We process:
- Target URLs: The publicly accessible web addresses you submit for Lighthouse speed evaluation.
- Audit Results: Performance scores, Core Web Vitals metrics, diagnostic summaries, and technical optimization recommendations generated by Google PageSpeed Insights.
- Anonymous Session Token: A randomly generated HttpOnly cookie (
psiq_session) used solely to isolate your private audit history from other visitors. - Technical IP Addresses: Temporarily evaluated in memory for server-side rate limiting and anti-abuse defense (e.g., preventing automated quota exhaustion).
2. Data Retention & Automatic Expiration
We enforce strict data minimization and time-bounded retention:
- Report Storage: Reports linked to your anonymous session are automatically expired and deleted after 14 days.
- Target Cache Window: Raw performance query caches expire after 15 minutes to reduce redundant calls to Google PageSpeed while ensuring fresh audits.
- Ephemeral Server Logs: Operational diagnostic logs containing execution metrics strictly omit sensitive keys and are cycled regularly.
3. User Control & Instant History Deletion
You maintain full control over your audit records. You can permanently erase your session history and all associated reports at any moment:
Open the History modal from the navigation bar and click "Clear all". This triggers an immediate, server-side deletion of your session records and stored report data.
4. Third-Party Upstream Services
PageSpeedIQ communicates with Google's public PageSpeed Insights API (v5) to retrieve Lighthouse diagnostics for public websites. When an audit is triggered, the target URL is transmitted to Google according to Google's Privacy Policy and API Terms of Service. Private, internal, or loopback networks are blocked by our server before any external request is made.
5. Questions or Support Inquiries
For security disclosures, abuse reports, or questions regarding this policy, please reach out via our Support & Contact page.