TrustLine Tradelines

Privacy Policy

What we collect, why, and what we deliberately do not do. This page is written from the code, not at it — it describes the data the platform actually stores and nothing more.

Last updated September 24, 2026

1. What we collect, and why

  • Account details — name, email, password (stored only as a hash), and optionally phone. Needed to run your account and to file you with an issuer under your legal name.
  • Placement details — date-of-birth (masked), last four of SSN, and mailing address, where an issuer requires them to file an authorized user or ship a card. We store the minimum the filing needs.
  • Bank account details you link for transfers, and payment receipts you upload. Receipts are checked by content, stored in the database, and visible to you and to administrators.
  • Card credentials issued on your seat, held encrypted (AES-256-GCM) and released only by deliberate administrative action. Card verification codes are not retained by default.
  • Activity records — an audit log of every consequential action (approvals, releases, transfers, shipments), with who did it and when. You and the administrator read the same history.
  • Emails we send you, kept in an outbox with their delivery status, so “was I told?” always has an answer.

2. What we deliberately do not do

  • No analytics trackers, advertising pixels or fingerprinting. The platform sets one cookie: your session.
  • We do not count clicks on marketing links, because nothing on the platform records them — campaign results are counted only as recorded signups and payments.
  • We do not pull your credit report or your credit score, and we never display an invented one.
  • We do not sell or rent personal information to anyone.

3. Who else touches data

A small set of processors, each with one job: our hosting and database providers store the platform’s data; our email transport (e.g. Resend or Postmark) delivers the messages in the outbox; bank logos are loaded as images through Google’s public favicon service, which sees the requesting browser like any image host does. Administrators of the platform see member records as needed to review and action requests, and their actions are audited.

4. Marketing email

Members can turn lifecycle notifications off in their profile; marketing to members respects that setting without exception. Non-members we write to are on a list our administrators curate by hand: every address carries a recorded source, which is printed in the footer of every email sent to it, together with a one-click unsubscribe that requires no login and is honoured before any future send.

5. Retention and deletion

Records that document money movement, credit filings and administrative decisions are retained while your account exists and as required for legal and dispute purposes. Unsubscribe records are kept on purpose — deleting one would forget that you said no. To request deletion of your account and associated personal data, contact support; we will delete what we are not legally required to keep and tell you what was kept and why.

6. Security

Passwords are hashed, sessions are token-based, card credentials are encrypted at rest, uploads are validated by content, and privileged actions require an administrator account and are logged. No system is perfect; if we learn of a breach affecting your data we will tell you what we know, promptly.

7. Your choices and contact

You can see most of what we hold about you from your own dashboard — that is the design. For anything else — access, correction, deletion — use the support channels on the platform. Changes to this policy move the date above and are announced to members by email. The Terms of Service govern the relationship this policy describes.