Plugin Privacy Policy

Effective date: October 1, 2026

1. What this covers

This policy covers the ASRM assistant plugin: the MCP connector at https://asrm.ai/mcpthat lets AI assistants such as ChatGPT and Claude check a website's AI readiness, read ASRM's AI visibility guides, and link ASRM's free scan. The main ASRM privacy policy covers the ASRM website and service. This page is about the plugin itself.

2. What the plugin does

When you ask your assistant whether AI engines can read a website, how AI visibility works, or how visible a brand is, the assistant may call the plugin. The readiness check fetches the public homepage, robots.txt, sitemap.xml and llms.txt of the website you name, from ASRM's servers, and returns what it found. The guide tools return text that is already published on asrm.ai. The scan-link tool returns a link to ASRM's free scan.

3. What the plugin never returns

The plugin never returns any ASRM customer's account or tracking data, never runs ASRM's engine scan or paid tracking, and never returns personal data held by ASRM. The readiness check reads only public web pages.

4. What we record

The plugin has no sign-in and no user accounts. When your assistant calls it, we record the name of the tool called, with a timestamp.

We do not record your question, the website you asked about, the words the assistant sent to the plugin, or the answers it received. A one-way, salted hash of the calling network address is kept only in server memory to apply the hourly limit, and is cleared once that hour has passed; it is never written to a database. We do not set cookies or build profiles. The assistant you use (for example OpenAI or Anthropic) handles your conversation under its own privacy policy.

Usage records are used to keep the plugin available (hourly and daily limits) and to understand which tools are used in aggregate. They are not sold, shared with advertisers, or used to identify you.

5. Where it runs, and who else sees it

The plugin runs on Vercel (hosting) and stores usage records in a Supabase database, both processing data under contract with us. Vercel also keeps its standard short-lived request logs for security and operations. No other party receives usage records. The website you ask the readiness check about will see an ordinary request from ASRM's servers, identified as ASRM-ReadinessCheck.

6. Retention

Plugin usage records are deleted automatically 12 months after they are written. The in-memory rate-limit hash is cleared within about an hour and never stored.

7. Your choices

There is no account to manage and nothing in a usage record identifies you. To ask whether we hold records from your assistant's requests, or to have them deleted early, email michael@greytv.com with the approximate time, and we will delete matching records within 30 days. You can stop all collection at any time by removing the plugin from your assistant.

8. Children

The plugin is not directed at children under 13 and collects no information from them.

9. Changes and contact

We will update this page when the plugin's behavior changes. Questions: michael@greytv.com. See also the plugin terms.