Privacy policy
Privacy Policy
Effective August 16, 2026
This policy explains how FolioLanding handles information when consultancies publish a site and manage project inquiries, and when prospects or invited clients interact with a practice.
Who operates FolioLanding
In this policy, “FolioLanding,” “we,” “us,” and “our” refer to the FolioLanding service. This policy applies to foliolanding.com, FolioLanding-hosted practice sites, authenticated dashboards, and related inquiry, client-space, payment, billing, domain, and Managed Ads features. Contact us at hello@foliolanding.com.
Information we collect
We collect information in the following categories:
- Account information, including name, email address, one-time-code challenge and browser-bound session records, roles, and limited security signals used to prevent abuse.
- Practice and public-site information, including consultancy name, service area, services, process, availability, portfolio media and metadata, style settings, rights confirmations, and image descriptions.
- Project inquiry information, including a prospect’s name, contact details, location, project type, optional organization type, description, timing, budget range, optional decision-makers, and notes.
- Opportunity and client-space information, including pipeline state, invited members, selected media, messages, review requests, decisions, and retained activity.
- Payment and subscription information, including Stripe customer, connected-account, Checkout, subscription, payment, refund, and receipt identifiers and status. Stripe-hosted surfaces handle card and bank details; FolioLanding does not receive full card numbers.
- Domain, future Managed Ads consent, support, operational audit, attribution, and technical delivery records needed to operate and secure the service.
- Support messages, reviewed proposals, confirmations, and bounded change evidence when a practice uses Support.
- Bounded first-touch attribution, including a coarse channel, safe landing path, referrer origin, campaign fields, and reviewed click identifiers when supplied. This is not a complete browsing or session history.
Information we do not need
An initial project inquiry does not need an exact street address, access or security instructions, floor plans, internal budgets, financial-account credentials, or private offer files. Consultancies and prospects should provide only the information needed for the next fit decision. FolioLanding does not need full payment-card numbers and does not use sensitive project details to build advertising audiences.
How we use information
- Provide, secure, troubleshoot, and improve FolioLanding.
- Answer Support questions and prepare only the website changes a practice explicitly reviews and confirms.
- Authenticate practice users and operate their public sites and private dashboards.
- Save a project inquiry, deliver it to the selected practice, and support authorized follow-up and opportunity tracking.
- Operate invited client spaces, bounded review decisions, connected payments, receipts, subscriptions, and domains.
- If Managed Ads launches and a practice chooses to participate, record its deliberate approvals without activating or changing a campaign beyond that authority.
- Comply with law, enforce our terms, and prevent abuse.
When information is disclosed
Inquiry information is available to the selected practice. Client-space information is available only to authorized practice users and invited members of that space. Consultancies are independent businesses responsible for their own use of that information and for their professional and client relationships.
We use service providers needed to operate the product. Cloudflare provides hosting, storage, security, abuse prevention, and email delivery. Stripe provides connected client payments and separate FolioLanding subscription billing. Approved advertising providers receive only bounded conversion facts when a practice has configured and authorized that use. Providers process information under their own terms and policies.
When configured, OpenAI processes the practice's Support question, selected reviewed Help content, and bounded public-site fields needed for the answer or proposal. FolioLanding disables provider response storage. Do not include credentials or private client details in Support.
We may disclose information when reasonably necessary to comply with law, protect people or the service, investigate abuse, or complete a corporate transaction. FolioLanding does not sell inquiry information or operate a data brokerage or shared-lead marketplace.
Cookies and abuse prevention
FolioLanding uses essential cookies to bind a one-time-code request to the requesting browser, maintain a signed-in session, and authorize invited client-space access. Signed first-touch cookies last for up to 30 days so a provider signup or project inquiry can retain the first known acquisition source. Blocking essential cookies may prevent those features from working.
Public inquiry forms may use Cloudflare Turnstile for abuse prevention. Turnstile may process network, device, browser, interaction, and IP-address information under Cloudflare’s policies. Ordinary FolioLanding pages do not load advertising-provider tags unless a separately reviewed measurement boundary is active.
Retention and choices
Inquiry and related opportunity details are retained while the practice uses them for the project relationship and afterward when reasonably needed for support, disputes, or legal obligations. One-time-code challenges and invitations are time-limited. Account, payment, consent, review-decision, and audit records may remain after an account closes when reasonably needed for security, accounting, dispute resolution, or legal compliance. Detailed attribution fields are removed after 90 days; coarse channel, safe landing path, and inquiry or account relationships may remain for aggregate outcome reporting.
Depending on where you live, you may request access, correction, export, or deletion of personal information. Email requests to hello@foliolanding.com. We may verify your identity and relationship to the relevant practice or client space before completing a request.
Security, changes, and contact
We use technical and organizational safeguards designed to protect information, including encrypted transport, restricted credentials, tenant-scoped records, role authorization, and time-limited access tokens. No online service can guarantee absolute security.
We may update this policy as FolioLanding changes. We will update the effective date and provide additional notice when a material change requires it. Questions can be sent to hello@foliolanding.com.