Effective: July 2026 · EYETAIL, LLC
When you create an account: email address and password hash. When you create or view a payment link: IP address, country, city, device/browser, and timestamp. We do not collect or store card numbers, bank account details, or full payment credentials — those are handled by Stripe and PayPal.
To operate the service (authenticate you, generate links, route payments). To send transactional emails (welcome, password reset). To detect fraud and abuse. We do not sell your data.
One session cookie (HttpOnly, SameSite=Lax) is set to keep you logged in. No third-party tracking cookies.
Every link view and payment event is logged with IP address and approximate location (country, city). This data is used for fraud detection and security audits. EU users: this constitutes personal data under GDPR — see Section 8.
Stripe and PayPal process payments under their own privacy policies. We receive only a payment confirmation — not card details. MailerLite may receive your email address when you sign up.
Audit log entries are retained indefinitely for security purposes. Account data is retained until you request deletion (email info@flyer.cash). Payment link data is retained for 12 months after a link is disabled.
Passwords are hashed with scrypt. Audit logs are hash-chained for tamper evidence. All traffic is encrypted via HTTPS.
You have the right to access, correct, or delete your personal data. Contact info@flyer.cash to exercise these rights. Legal basis for processing: contract performance and legitimate interests (fraud prevention).
EYETAIL, LLC · info@flyer.cash