TDX7 | synapseradar.com/ | Last updated: August 2026

Who we are

SynapSee is a WordPress plugin built and maintained by TDX7. This policy covers the plugin itself and the synapseradar.com/ website. If you have questions, email us at support@teddyx7.shop.

The short version

SynapSee runs entirely inside your own WordPress admin area. There’s no public-facing widget, no chat box, no script sitting on your live pages watching your visitors. The only person whose data touches this plugin is you — the site owner running an analysis — and the only place that data goes is to the AI provider you chose and gave a key to. We don’t see it, and we don’t want to.

If you’re used to reading privacy policies written for tools that collect visitor data, this one will look different, because SynapSee doesn’t collect any.

What actually happens when you run an analysis

Understanding what SynapSee sends where makes this policy easier to trust, so here’s the plain version.

When you click “Run Analysis,” a few things get bundled up and sent to the AI provider you’ve configured (Anthropic, OpenAI, or Google Gemini, whichever you picked):

  • URLs and titles pulled from your own sitemap
  • URLs and titles pulled from competitor sitemaps you’ve added, or a competitor’s bare domain if you’ve opted that row into AI Scout mode
  • Short headline-and-excerpt snippets from any Market Momentum Sources you’ve configured
  • The editorial focus note you wrote to keep recommendations on-topic

That’s the whole list. There’s no visitor data in that bundle because SynapSee never talks to your visitors — it talks to your sitemap and to your AI provider, full stop.

Your API key

You bring your own key from Anthropic, OpenAI, or Google, and it never leaves your server in plain text. It’s encrypted at rest using libsodium, with the encryption key itself derived from your WordPress installation’s own AUTH_KEY and SECURE_AUTH_KEY salts — meaning even someone with raw database access can’t read it without also having your wp-config.php. Once saved, the admin screen shows only a masked last-four-characters hint; the full value is never redisplayed, logged, or sent anywhere except the provider it belongs to.

AI Scout mode

Most competitors get analyzed by crawling their public sitemap, which is free and requires nothing from us. If a competitor’s sitemap is missing or broken, you can opt that one row into AI Scout instead, which hands your AI provider’s own web search tool the competitor’s domain and lets it browse directly. This is opt-in per competitor, it costs extra on your provider’s bill (a metered search call, on top of normal token usage), and TDX7 never sees or stores what comes back — the results go straight from the provider into your analysis run and nowhere near us.

Market news content

If you turn on Market Momentum Sources, whether by topic search or a specific feed URL, we only ever pull a headline and a short excerpt per item — never a full article. The model is explicitly instructed to paraphrase rather than quote that excerpt, since it’s someone else’s copyrighted reporting, not ours to reproduce.

What we protect against on the technical side

A few things worth knowing if you care about the mechanics:

Sitemap and feed fetches go through WordPress’s wp_safe_remote_get(), which blocks requests to private and internal IP ranges — this closes off a class of attack where a malicious sitemap URL tries to make your server call something on your own internal network. XML parsing has external entity loading disabled throughout, closing off a separate, older class of XML-based attack. None of this changes what data moves through the plugin; it’s about making sure that movement can’t be hijacked.

What we store, and for how long

Your settings — sitemap URL, editorial focus, competitor list, market source configuration, and encrypted API key — live in your own WordPress database for as long as the plugin is active. Past analysis reports accumulate the same way, and you control them directly: archive one to get it out of your current view, or delete it permanently, from the Reports page. Deleted really does mean deleted; there’s no separate backup copy sitting on our end, because we never had a copy to begin with.

Nothing SynapSee produces gets published automatically. Every AI-drafted opportunity lands in WordPress as a draft with an editor’s note flagging what needs a human fact-check before it goes anywhere near your live site.

Billing data

If you’re on the paid plan, billing and subscription management runs through Freemius, which operates under its own privacy policy. We don’t handle or store your payment card details directly.

Third-party AI providers

Whichever provider you connect — OpenAI, Anthropic, or Google Gemini — processes the data described above under that provider’s own privacy policy, not ours. Worth a quick read if you haven’t:

  • OpenAI: openai.com/policies/privacy-policy
  • Anthropic: anthropic.com/privacy
  • Google Gemini: policies.google.com/privacy

We don’t control how these providers retain or use the data once it reaches them.

Cookies

SynapSee doesn’t set any cookies of its own. Your admin session relies entirely on WordPress’s built-in login cookies, the same ones every wp-admin screen already uses.

Children’s privacy

SynapSee is a WordPress administration tool, not directed at children, and we don’t knowingly collect data from anyone under 13.

Changes to this policy

If this policy changes, we’ll update the date at the top of the page. Continuing to use the plugin after an update means you’ve accepted the revised version.

Contact

support@teddyx7.shop