Privacy Policy
Last updated:
EntryWise is a form backend that receives submissions, stores them for form owners, and delivers them to email recipients and connected services. This policy explains how we handle personal information when you use the EntryWise website, hosted console, and hosted API.
1. Who this policy covers
This policy covers account holders, website visitors, and people who submit forms powered by our hosted service. Form owners decide what information their forms collect and where submissions are sent. We process those submissions on their behalf. If you submitted a form on another website, consult that website’s privacy notice and contact its owner about how your submission is used.
Self-hosted instances are operated by their respective operators, whose privacy policies govern their handling of data.
2. Information we process
- Account information: identifiers, email addresses, and profile information supplied through our authentication provider, Clerk, including information you authorize when signing in with Google.
- Workspace and integration settings: workspace names, site domains, notification addresses, form schemas, webhook URLs, and credentials you provide for connected services.
- Form submissions: the fields and files submitted to your endpoints, which may include names, email addresses, phone numbers, messages, and other information chosen by the form owner.
- Technical information: submission timestamps, IP addresses (subject to the form owner’s IP anonymization setting), browser and request information, and delivery or error logs used to operate and protect the service.
- Support information: information you provide when requesting assistance.
Authentication uses cookies and similar browser storage to maintain sessions and support security. Third-party resources, such as Google Fonts, receive the technical information needed to serve their resources to your browser.
3. Google user data
Google sign-in: when you choose to sign in with Google through Clerk, the authentication flow can access your Google account identifier, email address, and basic profile information, such as your name and profile picture, as authorized on the consent screen. Clerk processes this information to authenticate you and maintain your account; EntryWise uses the resulting account identity and session to grant access to your workspaces. Account and profile information is retained through our authentication provider while your account remains active, subject to deletion requests and necessary legal or security retention.
Google sign-in does not grant EntryWise access to your Gmail messages, Google Drive files, calendar, or spreadsheet contents.
Google Sheets connector: if a form owner enables this connector, EntryWise sends form field values, the submission identifier, site domain, and submission timestamp to the Google Apps Script or webhook URL supplied by that owner. The owner’s script controls which spreadsheet receives the data. This connector uses the configured URL rather than requesting Google Sheets OAuth access, and does not read spreadsheet contents.
We use Google user data only to provide and improve the user-facing features you authorize. We do not sell Google user data, use it for advertising, or use it to train generalized artificial intelligence or machine learning models. We share it only as needed to provide authorized features through service providers, protect security, or comply with applicable law. Human access is limited to situations permitted by Google’s policy, such as your affirmative consent, security investigations, or legal obligations.
EntryWise’s use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
4. How we use information
We use information to authenticate users, manage workspaces and form endpoints, store and display submissions, deliver notifications and configured integrations, respond to support requests, and detect spam, abuse, and unauthorized access. Where applicable law requires a legal basis, we process information to perform our service agreement, pursue legitimate interests in operating and securing the service, comply with legal obligations, or act on your consent.
5. Sharing and service providers
Our hosted service uses Cloudflare for infrastructure, database and file storage, request processing, and delivery queues, and Clerk for authentication. Submission data is available to authorized workspace users and is sent to the email providers, recipients, and integrations configured by the form owner. These may include Google Sheets, Airtable, Notion, Slack, Discord, and custom webhooks.
We do not sell personal information. We may disclose information when required by law or when necessary to investigate abuse or protect users and the service. Service providers may process information in countries other than your own. Their processing is subject to their own terms and privacy policies and applicable data protection requirements.
6. Storage, security, and retention
We use access controls, authenticated sessions, encrypted HTTPS connections, and protections for integration secrets to safeguard information. No storage or transmission system can guarantee absolute security.
Submission records are retained until a workspace user deletes them or a configured retention policy removes them. Retention cleanup occurs when new submissions are processed; it is not a guaranteed deletion at an exact time. File objects, operational logs, and copies already delivered to third-party services may have separate retention periods. Deleting a submission in EntryWise does not delete copies held by email recipients or connected services.
We retain account and configuration information while needed to provide the service. After a deletion request, information may be retained where necessary to meet legal obligations, resolve disputes, or investigate security incidents.
7. Your choices and rights
Workspace users can review, export, and delete submissions, configure submission retention and IP anonymization, and disable integrations. To stop future Google Sheets deliveries, disable the connector and revoke or remove the associated Apps Script deployment as appropriate.
You can revoke Google sign-in access in your Google Account connections settings. Revoking access does not automatically delete information previously stored by EntryWise or Clerk. Contact us to request account deletion and removal of associated personal information.
Depending on where you live, you may have rights to access, correct, delete, or receive a copy of your personal information, restrict or object to processing, withdraw consent, or complain to your local data protection authority. We may need to verify your identity before acting on a request. If your information was submitted through another website’s form, contact its owner first; we can assist that owner with requests concerning data processed on their behalf.
8. Children’s privacy
EntryWise is intended for developers and businesses and is not directed to children under 13. We do not knowingly collect account information from children under 13. Contact us if you believe a child has provided personal information so we can address it.
9. Changes and contact
We may update this policy as the service changes. The date above identifies the latest revision. We will provide additional notice of material changes where required.
For privacy questions or data deletion requests, email help@entrywise.si. Do not include passwords, API keys, or integration secrets in your message.