flyer.cash

Privacy Policy

Effective: July 2026 · EYETAIL, LLC

1. What we collect

When you create an account: email address and password hash. When you create or view a payment link: IP address, country, city, device/browser, and timestamp. We do not collect or store card numbers, bank account details, or full payment credentials — those are handled by Stripe and PayPal.

2. How we use it

To operate the service (authenticate you, generate links, route payments). To send transactional emails (welcome, password reset). To detect fraud and abuse. We do not sell your data.

3. Cookies

One session cookie (HttpOnly, SameSite=Lax) is set to keep you logged in. No third-party tracking cookies.

4. IP and location logging

Every link view and payment event is logged with IP address and approximate location (country, city). This data is used for fraud detection and security audits. EU users: this constitutes personal data under GDPR — see Section 8.

5. Third-party processors

Stripe and PayPal process payments under their own privacy policies. We receive only a payment confirmation — not card details. MailerLite may receive your email address when you sign up.

6. Data retention

Audit log entries are retained indefinitely for security purposes. Account data is retained until you request deletion (email info@flyer.cash). Payment link data is retained for 12 months after a link is disabled.

7. Security

Passwords are hashed with scrypt. Audit logs are hash-chained for tamper evidence. All traffic is encrypted via HTTPS.

8. GDPR / EU residents

You have the right to access, correct, or delete your personal data. Contact info@flyer.cash to exercise these rights. Legal basis for processing: contract performance and legitimate interests (fraud prevention).

9. Contact

EYETAIL, LLC · info@flyer.cash