Privacy
LinkForge organizes links and records click events. The service is operated by LinkForge.
What the application records
We store account email, links and their destinations, campaign tags, and subscription identifiers. Click events contain a link identifier, time, inferred device category, and referrer hostname when available. Application analytics do not store raw IP addresses, full user agents, or referrer paths and query strings.
Purpose and retention
These records support redirects, account access, billing, and click analytics. Detailed clicks are retained for 90 days. Lifetime counters remain while a link exists. Deleting a link removes its analytics and disables its redirect; its slug stays reserved. Account deletion cancels billing and removes associated application records through a retryable process.
Reports, conversions, and preferences
Owners can share aggregate campaign reports through secret links with an expiration date. Anyone with that link can view the report until it expires or is revoked. Reports never include raw click rows, account email, or billing details. Weekly summaries are opt-in and sent to the recipients chosen by the owner; a disable link is included.
When an owner enables conversion goals, a signed click reference can be added to the destination URL. The optional destination-site helper removes that reference from the visible URL and stores the latest reference locally for up to 30 days. The website owner must install it consistently with their consent requirements. Goal events store a click reference, goal, time, deduplication key, source, and optional amount and currency. They do not require names, email addresses, or customer profiles. Conversion records are retained for 90 days. Browser events are reported events, not proof of a purchase.
Theme preference is stored in a one-year cookie and browser storage. Domain settings store the hostname and DNS verification record. Expired report metadata and digest delivery history are removed after 90 days; CSV review records expire after 30 minutes and are removed by maintenance after one additional day. Hosting access logs may contain request paths, including report tokens, and follow the hosting provider’s retention policy.
Service providers and security
Hosting, authentication/database, email, and payment providers process information necessary to operate their services. Stripe handles payment details; LinkForge does not store card numbers. Providers may retain security logs or billing records under their own policies. Short-lived keyed IP hashes are used for rate limiting. Authentication uses essential session cookies.
Contact
For access, correction, deletion, or privacy questions, contact koriellisa@gmail.com.