This page explains exactly how the Tsoden automated website audit works, why it is lawful, and how any business can opt out. It is published by Denha Nexus s.r.o. ("Tsoden", "we", "us") and forms part of our Terms of Service. It complements our Privacy Policy and Anti-Spam & Outreach Policy.
1. What our audit does
Our audit fetches a business's publicly accessible homepage — the same page any member of the public can open in a normal web browser — renders it, and checks publicly observable signals relevant to converting visitors and to search/AI visibility (SEO/AEO). It then produces a 0–100 "revenue-readiness" score and a list of suggested fixes. It is an automated estimate; see our Disclaimer.
2. We analyze only publicly available pages
We access only content that is already published and freely available to the public without authentication. Specifically, we:
do not log in to any account, portal, or members' area;
do not enter, guess, or use any password, token, or credential;
do not bypass, defeat, or circumvent any technical access control (such as paywalls, logins, IP allow-lists, CAPTCHAs, or other gating);
do not access private, confidential, internal, or password-protected data; and
do not exploit any vulnerability or attempt unauthorized access to any system.
Because we access only what is openly published to the public and never circumvent an access control, our audit does not involve "unauthorized access" or "exceeding authorized access". This is designed to stay clearly within laws such as the U.S. Computer Fraud and Abuse Act (CFAA), the UK Computer Misuse Act 1990, Slovak and EU equivalents, and analogous rules elsewhere. Reading a public web page with an automated tool is functionally equivalent to a person viewing it in a browser.
3. We keep load minimal and behave politely
We typically request only the single public homepage (and the minimal sub-resources that page needs to render), not your whole site.
We use modest, rate-limited requests intended to place no meaningful load on your server — comparable to an ordinary visit.
We identify our automated requests where appropriate and do not attempt to disguise them as something they are not.
We respect robots signals where applicable: if a page or site indicates via robots.txt or equivalent that automated access is not wanted, you can rely on that as an opt-out, and you can also opt out directly (see section 6).
We do not perform vulnerability scanning, penetration testing, brute-forcing, or any intrusive probing.
4. We don't store private data
We process the public page content to generate the score and recommendations. We do not collect or store private or non-public data, and we do not collect special-category personal data. What we retain is described in our Privacy Policy (for example, the URL, the generated score/report, and basic technical metadata). We do not sell data.
5. Why this is lawful
Access: We only read publicly available pages and never circumvent access controls, so our activity is not unauthorized access under computer-misuse laws.
Copyright: We analyze pages to generate factual observations and recommendations and produce our own commentary; we do not republish your site or copy protected content beyond what is necessary for analysis. Automated reading for analysis is, in our assessment, a permitted and customary use of public web content.
Data protection: To the extent the public business data we handle is personal data, we process it under the lawful bases set out in our Privacy Policy (principally legitimate interests), with full data-subject rights including objection.
No misrepresentation: We do not impersonate you, your customers, or anyone else, and we make no deceptive use of your site.
Where a specific website's published terms of use purport to prohibit automated access, we will honour a request to stop auditing that site (see below); the existence of such terms does not, by itself, make our reading of a freely public page unlawful, but we respect the owner's wishes on request.
6. How to opt out of being audited or contacted
Any business can opt out at any time — no reason needed:
Stop emails / outreach: use the one-click unsubscribe link in any email, or reply "stop". We honour it immediately and add you to our suppression list.
Request not to be audited and to be removed: email support@tsoden.ai with the domain you want excluded. We will stop auditing it, delete the associated audit data we hold (subject to keeping the minimum needed to honour your request), and not contact you again.
Robots signals: indicate in robots.txt that automated access is not wanted.
7. How to request removal of data
To exercise data-protection rights (access, erasure, objection, restriction, portability), see the "Your rights" section of our Privacy Policy or email support@tsoden.ai. We respond within the timeframes required by law.
8. Contact
Denha Nexus s.r.o., Pekná cesta 2459/19, 831 52 Bratislava, Slovak Republic — support@tsoden.ai.
This document is provided for transparency. It is general information, not legal advice to you, and should be reviewed by qualified local counsel before being relied upon.