Effective 25 July 2026
What this policy covers
This policy explains how Your Invite Card handles information when you design an invitation, create an account, publish a guest link, collect RSVPs, or collaborate with a co-host. A host controls the personal details they place in an invitation or guest list and should have permission to use them.
Information we handle
- Account and access data: your email address, one-time sign-in requests, session records, account creation and last-sign-in times, current feature-access status, and any historical trial or entitlement records associated with the account. Current free access does not require a password or payment card.
- Invitation and event data: draft names, invitation wording, dates, venues, phone numbers, uploaded images, guest households, event functions, RSVP questions, co-host roles, reminders, and host notes you choose to add.
- Published invitations and RSVPs: an immutable copy of each invitation you publish; optionally, a guest's family name, attendance choice, party size, answers, and update time. Guest edit tokens are stored in hashed form. Draft edits and later account or access changes do not rewrite that published copy.
- Historical payment records: if a transaction was previously created, we may retain its order, entitlement, receipt, refund, currency, and status references for support, accounting, fraud prevention, disputes, and legal obligations. A hosted payment provider processes card or banking details when a transaction uses that provider; Your Invite Card does not store full payment-card numbers. Checkout is not required or offered for current free access.
- Product measurement: first-party, aggregate funnel events such as selecting a template, publishing, receiving a first RSVP, and, where applicable, completing a checkout. These events do not contain your email address, raw IP address, browser user agent, page URL or referrer, invitation, account, publication, or payment identifiers. A random session identifier exists only in session storage and disappears when that browser session ends.
- Security and operations data: privacy-preserving IP hashes used for rate limits, request IDs, error events, and ordinary web-server records used to prevent abuse and diagnose failures.
Anonymous invitation drafts are normally kept in your browser using IndexedDB or local storage. They reach our servers only when you upload media, sign in and synchronize, or publish a guest link.
Why we use it
We use information to provide, synchronize, publish and support invitations; provide current free feature access; deliver sign-in links and host reminders; collect RSVPs at the host's request; support any historical transactions and refunds; secure accounts; investigate abuse and failures; meet accounting obligations; understand aggregate product progress; and improve service reliability.
Who can see it
Anyone who has an active guest link can view the information displayed on that invitation. Guest links are not listed in our sitemap and are marked not to be indexed, but a recipient can still forward a link. Co-hosts see only the event access their role permits. Hosts can view RSVP responses for invitations they own.
We use specialist providers for hosting and delivery, Cloudflare for network security and performance, and Brevo for sign-in and service email. A hosted payment provider may process information only when supporting a historical transaction or if payment is clearly enabled in the future; it is not used to grant current free access. These providers process information for the service they supply and under their own legal obligations. We may disclose information when legally required or to protect users and the service.
Retention and deletion
- Expired sign-in tokens and sessions, rate-limit records, and trashed drafts are removed by scheduled cleanup.
- Active drafts and public links remain until you delete your account, delete the relevant data, or revoke the link.
- RSVP and event-management data remains available to the host until it is deleted with the associated event, invitation, or account.
- Aggregate product events are retained for up to 400 days. Daily rotating abuse-prevention hashes used for product-event rate limits are retained for up to two days.
- After account deletion, limited transaction, refund, fraud-prevention, and audit records may be retained where needed for legal, tax, chargeback, or security purposes, without keeping your editable invitation content.
- Deleted data can remain in restricted backups until routine rotation, normally no longer than 35 days.
Your choices
Product measurement does not use analytics cookies and honours browser Do Not Track and Global Privacy Control signals. When either signal is enabled, the browser does not send these product events.
You can download a machine-readable copy of server-held account data from the data export page. You can permanently delete your account and hosted invitation data from the account deletion page. Browser-only drafts are not part of the server export; clear this site's browser storage if you also want to remove them from that device.
You may also ask for access, correction, restriction, or help with a privacy concern by emailing [email protected]. Rights differ by location, and we will honour rights required by applicable law.
Safety and updates
Your Invite Card is not directed to children under 13. Adults creating invitations for children are responsible for the details and images they publish. We use access controls, encryption in transit, hashed credentials and tokens, rate limiting, backups, and monitoring, but no online service can promise absolute security.
We may update this policy as the service changes. Material changes will be dated here and, when appropriate, communicated in the product.