Privacy Policy

# What we collect, and why

Last updated September 2026 · [hello@readinessindex.io](mailto:hello@readinessindex.io)

The short version

- A free scan needs no name, email or account.
- We keep the URL, your IP and the time, to run the scan and stop abuse.
- We never sell personal information. Ever.
- Email us and we'll tell you what we have, or delete it.

This is the privacy policy for **readinessindex.io**, the AI Readiness Index scanning tool built and run by Ten 7 Interactive, LLC ("TEN7," "we," "us"). It covers this scanning service specifically — not [ten7.com](https://ten7.com), our main agency site, which has its own policy.

We built this tool to be free to use without an account, so most of what follows describes the minimum we collect to run a scan and show you the result — plus the smaller amount we collect if you ask for more: a full report, or an account to save your scans to.

## Running a Primary Indicators scan

When you type a URL into the box on the home page, we record that URL, the IP address and browser the request came from, and the time it happened. We use this to run the scan, to show you the result, and to keep the free tool from being abused — for example, capping how many scans one IP address or one domain can run per hour. We do not require a name, an email address, or an account for a Primary Indicators scan.

## Asking for the full report

The full report crawls more of your site and covers every test in the Index. To send it to you, we ask for your name, company, and email address, and optionally a page on your site you'd like us to weight more heavily. We use this to run the scan, email you the report, and — since you've told us you're interested — to follow up with you once about what we found. We don't add you to a mailing list, and we don't sell or rent this information to anyone.

## Signing in

Signing in is optional, and its only purpose is letting you save a scan and come back to it later at [/dashboard](https://readinessindex.io/dashboard). There's no password to create and no third-party account required: you give us your email address, we send a unique six-digit code to it, and typing that code back in signs you in. We use [WorkOS](https://workos.com) to generate and check that code and to pass us your email address and a stable account identifier. A signed-in session is kept in one cookie on your own browser; signing out clears it.

## Cookies and analytics

We use one cookie to keep you signed in, if you've signed in. We also run Google Tag Manager and Google Analytics to understand which pages get used and where scans come from — this can set its own cookies, governed by [Google's own privacy policy](https://policies.google.com/privacy). Nothing here is used to build an advertising profile of you, and we don't run any ad-retargeting scripts.

## Who else sees this information

We don't sell personal information, to anyone, ever. A short list of services we rely on to run this tool, each of which only sees what it needs to do its job:

| Service | What it sees |
| --- | --- |
| WorkOS | Sends the sign-in code and confirms it. |
| SendGrid | Delivers the mail we send you: a report you asked for, a notice that a scan finished, an invitation to an organization, and — if you are watching a site — the weekly summary and an alert when a score falls. Named because it is the only service that carries our mail. |
| Slack | A short notification in our internal team channel when a scan finishes or someone asks for a report, so a real person notices. TEN7's own internal tool, not a public or third-party audience. |
| Fly.io | Hosts the application and the data it stores. |

We may also disclose information if the law requires it, or to protect the security of this tool or the people using it.

## How long we keep it

We keep scan history and contact details for as long as they're useful to the purpose you gave them for — running the scan, answering your question, or keeping a saved account's history intact. If you'd like something deleted sooner, email us and we will.

## What can you do about it

Email [hello@readinessindex.io](mailto:hello@readinessindex.io) to ask what we have on file about you, to correct it, or to have it deleted. There's no separate account to disconnect anywhere else — signing in only ever creates the email code, nothing tied to a third-party account.

You can stop the mail that repeats. The weekly summary and the score-drop alert carry an unsubscribe link, and if you have an account they are a single switch on [your profile](https://readinessindex.io/profile). The rest — a report you asked for, a notice that your scan finished, an invitation somebody sent you — is not marketing and carries no such link, because switching it off would mean asking for something and never being told it arrived.

## Children

This tool isn't directed at children, and we don't knowingly collect information from anyone under 13.

## Changes to this policy

If this changes in a way that matters, we'll update the date at the top of this page. We won't quietly narrow your rights or widen what we collect without saying so here.

## The methodology is a separate matter

None of the above applies to the AI Readiness Index methodology itself — the scoring model and the tests are published openly; see [licensing](https://readinessindex.io/license). This policy is about the data the running service collects, not about the rubric it's built on.
