Last updated August 15, 2026
Privacy
MessageFold stores the information needed to create, sign, deliver, and manage a group card. We do not sell personal information or use private card messages to train generative AI models.
Information we collect
Organizers provide their email, the recipient’s name, event timing, and optionally the recipient’s email. An organizer may also provide another person’s email and a short personal note when asking them to sign. Signers provide a display name, message, optional image, and optionally an email for a delivery confirmation. Contact-form users provide their name, email, support topic, and message. We also collect basic security information such as IP-derived rate-limit keys. On public pages, Google Analytics may use an anonymous browser identifier to record pageviews, referral source, campaign tags, and limited product events.
How we use it
- To render and deliver the card by email or a finished card link.
- To send organizer access, delivery, sign-request, reminder, and requested confirmation emails.
- To respond to support, privacy, payment, and safety requests.
- To process one-time payments and prevent abuse.
- To understand whether public pages lead to card creation and purchase, and improve the product.
Analytics boundaries
The Google Analytics browser tag is not loaded on private card, organizer, admin, authentication, or API routes. Limited server-side conversion events may be joined to the anonymous identifier created on a public page. Analytics events do not include names, email addresses, card messages, uploaded media, card identifiers, private card URLs, organizer links, historical invitation tokens, sign-request tokens, or URL query strings. Google Analytics event and user data is configured for 14-month retention.
Sharing and processors
MessageFold uses infrastructure and service providers including Vercel, Supabase, Resend, Stripe, and Google Analytics. Each receives only the information needed to provide its part of the service. Card pages are private by unguessable link and carry noindex directives, but anyone with the link may view them.
Retention and choices
A sign-request recipient can stop daily reminders from any request email, and the organizer can stop them from the card dashboard. You can block or delete analytics storage using your browser settings. You may request access or deletion through the contact form. Transaction and abuse-prevention records may be retained where law or security requires it. Historical invitation records created before the bulk email feature was retired may remain for card integrity and audit history.
Contact
Send privacy questions or requests through the contact form.