Privacy policy
This site should practice what it preaches.
The campaign is built to avoid third-party trackers and collect only what is needed to verify petition signatures.
What we collect
If you sign the petition, the site collects your name, email, ZIP code, state, optional message, timestamp, a hashed version of your IP address for spam control, and your consent choices.
What we do not do
- No third-party analytics by default.
- No ad pixels.
- No sale of petition data.
- No public display of your email.
How data is stored
The included PHP backend stores petition data under the storage folder. It uses SQLite when the server supports it and falls back to protected JSONL files when SQLite is unavailable. The folder includes a deny-all .htaccess file. Site owners should still use secure hosting, HTTPS, strong admin tokens, and regular backups.
Deletion requests
After deployment, add a working campaign email address here so signers can request deletion or correction of their petition record.
Important note
This privacy policy is a starting point for the website owner. Have a qualified attorney review it before public launch if the campaign grows or collects donations.