Privacy policy
Last updated August 10, 2026. This policy explains how LynxProfile collects and uses account, page, analytics, lead, and billing information.
Information we process
We process account identifiers, content you publish, form submissions sent to your page, coarse traffic and campaign information, integration configuration, delivery status, and plan status. Pro billing is web-managed on lynxprofile.com and is not initiated from the installed iOS app. Stripe processes payment details when a customer manages billing on the web; LynxProfile stores subscription and billing status, not full card details.
Native app features
In the installed app, LynxProfile may access the camera for QR scanning, Contacts only when you choose to save or import a contact, NFC only when you choose to read or write a supported tag, and photos or microphone only for media or lead notes you choose. Wallet passes and native share actions are created only after you request them.
Page analytics
Page views, link clicks, routed destinations, and successful form submissions are counted with a pseudonymous visitor identifier: a salted SHA-256 hash of the requesting IP address and browser user agent. The IP address and full browser string are never written to our database. We retain normalized source and referrer host, validated campaign fields, coarse device/browser/operating-system families, and coarse country/region when available. We do not retain full referrer URLs or query strings, and Do Not Track or Global Privacy Control requests omit persistent visitor and session dimensions. Raw analytics events are deleted after 13 months. We do not use advertising cookies or third-party trackers.
Form submissions sent to a page
When a visitor submits a form on someone’s page, that information belongs to the page owner: they decide what to ask for and what to do with the answers, and LynxProfile stores and delivers it on their behalf. Visitors who want a submission corrected or removed should contact the page owner, and may also write to privacy@cre84ever.com.
Service providers
LynxProfile runs on Supabase (database, authentication, file storage), Vercel (hosting, content delivery, and customer-domain setup), Resend (transactional and notification email), and—only when connected by a page owner—Google, Mailchimp, or Klaviyo for lead delivery. Stripe will process billing after paid checkout is activated. Each processes information only for the functions requested from it.
How information is used
Information is used to operate, secure, improve, and support the service; deliver requested notifications; prevent abuse; and meet legal obligations.
Your choices
You can export your leads and request deletion of your account from Settings. A deletion request is carried out 14 days after it is made, and you can cancel it from Settings at any point in those 14 days; after that the account, its pages, its leads and its analytics are removed. Requests may also be sent to privacy@cre84ever.com.
Retention and security
We retain information only as needed to provide the service, resolve disputes, prevent abuse, and comply with law. Encryption, access controls, logging, and deletion procedures protect stored information.
Children’s privacy
LynxProfile is not directed to children under 13, and we do not knowingly collect information from them. If you believe a child has created an account or that a page contains a child’s information, contact privacy@cre84ever.com and we will remove it.
International transfers
Our service providers may process information in the United States and other countries. We rely on their own safeguards and contractual protections for information transferred across borders.
Contact
Questions: privacy@cre84ever.com.