Privacy

This notice describes what FirstCustomer stores today. It is not a complete GDPR/CCPA policy. Add a counsel-reviewed notice before collecting data at scale.

We store company names, product URLs, work emails, campaign terms, referrer X handles and emails, click timestamps, user-agent strings, conversion references, Stripe customer/account identifiers, and payout records needed to run the board, attribution, and settlement.

Founder and referrer dashboards are accessed through private high-entropy links. Anyone with a link can act as that user. Do not share those URLs.

We do not sell personal data. Do not submit government IDs, health information, or other sensitive personal data in campaign fields.

To request deletion of an account or campaign record, email hello@firstcustomer.xyz. Production should add a retention schedule, processor list, and jurisdiction-specific rights before large-scale use.