Privacy notice
Last updated October 2, 2026
ClickiClick is operated by ClickiClick, LLC. 2912 University Ave, Longmont, CO 80503 Contact support@clickiclick.com or use our contact page.
Information used to run your account
We store your email address, password hash, display name, timezone, account status, page drafts, published content, revision history, processed images, link destinations and saved QR designs. We also keep operational records needed for security, billing and delivery of the service. We do not store your plain-text password.
Native inquiries
When you submit a form, the business receives your provided name, email, message and any requested optional fields. The workspace owner and explicitly authorized staff can access these records. Email notifications link to the private inbox. A Business workspace may send inquiry data to its verified external webhook receiver; that receiver has its own data practices. Do not submit sensitive personal information.
What becomes public
Published pages and linked images are public to anyone with the address while coverage is active. Searchable pages can be indexed and have content in social previews. Link-only pages ask search engines not to index them and use generic social previews. They are not password protected. Choose carefully before publishing addresses, personal details or photos.
Payments and service providers
Stripe hosts checkout and payment management. Card details go directly to Stripe; ClickiClick receives payment identifiers and status, amounts, billing periods and receipt links. Hostinger provides hosting. Transactional email may use the configured email delivery provider. Provider records and logs have their own retention and policies.
Cookies and visit counts
We use an account session cookie and security controls to keep you signed in and protect requests. The launch service does not use advertising pixels or behavioral advertising. Analytics retain activity for 7 days on Free, 90 days on Plus or 12 months on Business, subject to the plan at capture and current access. Counts distinguish route entries, page views, button actions and accepted inquiries. They do not identify unique people, and a QR-tagged visit is not proof of a camera scan.
Application analytics do not store raw IP addresses. Short-lived attribution tokens expire after 30 minutes. Deduplication hashes expire after 48 hours. Limited, rotating abuse identifiers are retained for 24 hours; minimized application request and security logs are kept for seven days. Hosting and payment providers may separately process request or payment information to operate and protect their services.
Retention and removal
Free pages and managed links remain available within their allowances. Excess premium page archives have a 90-day recovery window. Native inquiries are retained for 24 months from receipt, including after cancellation. Previously accepted inquiry deliveries may finish retries for up to 72 hours; webhook payloads are then removed after their short operational retention period. Workspace owners can export inquiries and explicitly delete their workspace.
Explicit deletion removes public access immediately and queues deletion of content and unreferenced media. Backups are intended to age out within 30 days. Minimal route reservations persist to prevent reassignment. Financial and abuse evidence may be retained for necessary operational or legal purposes under the finalized retention schedule. Previously public copies outside ClickiClick cannot be recalled.
Authorized administrators can inspect account and billing status, handle support requests, and record the reason and outcome of support actions. Internal support notes are removed when the associated account is deleted. Minimal payment and action identifiers remain when needed for reconciliation or other necessary recordkeeping. The console does not provide administrators a password or access to private inquiry message bodies.
Your account and requests
Use Account to update your profile, change password or verified email, export your content or request account deletion. Billing cancellation and content deletion are distinct actions. For other privacy or access requests, use Contact.