Privacy Policy
Last Updated: November 14, 2025
Introduction
Dashdig ("we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our URL shortening service.
1. Information We Collect
1.1 Information You Provide
- Account Information: Email address, username, password (encrypted)
- Profile Information: Optional display name and preferences
- URLs: Original URLs and custom short codes you create
- Payment Information: Processed securely through third-party payment providers
1.2 Automatically Collected Information
- Analytics Data: Click counts, timestamps, referrer URLs
- Device Information: Browser type, operating system, device type
- Location Data: Approximate geographic location based on IP address (anonymized)
- Usage Data: Features used, pages visited, time spent on service
- IP Addresses: Collected for security and analytics (anonymized after processing)
1.3 WordPress Plugin Data
When using the Dashdig WordPress plugin, we collect:
- WordPress Site URL: Your website domain for authentication
- Plugin Version: To ensure compatibility and provide updates
- WordPress Version: For compatibility checks
- API Authentication Requests: To verify and secure API access
- Analytics Data: Link performance data you choose to track
- API Keys: Securely stored for integration authentication
🔌 API Endpoint Disclosure:
Our WordPress plugin connects to our secure API endpoint hosted on Railway:
https://dashdig-production.up.railway.app/api
All communication is encrypted via HTTPS/TLS. No data is stored on your WordPress server beyond cached API responses.
2. How We Use Your Information
We use the collected information to:
- Provide and maintain the URL shortening service
- Create and manage shortened URLs with human-readable names
- Generate analytics and insights for your shortened links
- Authenticate API requests from WordPress plugin and other integrations
- Process your transactions and manage subscriptions
- Send service-related notifications and updates
- Improve and optimize our service functionality
- Detect and prevent fraud, abuse, or security threats
- Comply with legal obligations and regulatory requirements
3. Data Sharing and Disclosure
We DO NOT sell your personal information. We may share your information with:
- Service Providers: Railway (hosting), MongoDB Atlas (database), Redis Cloud (caching), Stripe (payments), and email service providers
- Legal Requirements: When required by law, court order, or to protect our rights and user safety
- Business Transfers: In connection with mergers, acquisitions, or asset sales (users will be notified)
- With Your Consent: When you explicitly authorize sharing with third parties
All service providers are contractually obligated to protect your data and use it only for providing services to Dashdig.
4. Third-Party Services
Our service integrates with the following third-party providers:
- Railway (Hosting): Backend API hosting and infrastructure at dashdig-production.up.railway.app
- MongoDB Atlas (Database): Secure cloud database for storing URLs and analytics
- Redis Cloud (Caching): High-performance caching for fast URL redirects
- Vercel (Frontend Hosting): Dashboard and website hosting
- Stripe (Payment Processing): Secure payment and subscription management
- Email Services: Transactional emails and notifications
These third parties have their own privacy policies governing how they handle data. We encourage you to review them:
- Railway Privacy: railway.app/legal/privacy
- MongoDB Privacy: mongodb.com/legal/privacy-policy
- Vercel Privacy: vercel.com/legal/privacy-policy
5. Data Retention
We retain your information for as long as your account is active or as needed to provide services:
- Account Data: Retained while your account is active
- Analytics Data: Retained for 24 months for reporting and insights
- Payment Records: Retained for 7 years for tax and legal compliance
- Security Logs: Retained for 90 days
You may request deletion of your account and associated data at any time by contacting privacy@dashdig.com. Some information may be retained for legal or legitimate business purposes.
6. Data Security
We implement industry-standard security measures to protect your data:
- Encryption of data in transit (HTTPS/TLS)
- Encryption of sensitive data at rest
- Secure password hashing (bcrypt)
- Regular security audits and updates
- Access controls and authentication
However, no method of transmission over the Internet is 100% secure. We cannot guarantee absolute security.
7. Your Rights
Depending on your location, you may have the following rights:
- Access: Request a copy of your personal data
- Correction: Update inaccurate or incomplete information
- Deletion: Request deletion of your account and data
- Portability: Request your data in a portable format
- Opt-Out: Unsubscribe from marketing communications
- Restriction: Request limitation on how we use your data
To exercise these rights, contact us at privacy@dashdig.com
8. Cookies and Tracking
We use cookies and similar tracking technologies to:
- Maintain your login session
- Remember your preferences
- Analyze service usage
- Improve user experience
You can control cookies through your browser settings, but disabling them may affect functionality.
9. Children's Privacy
Our service is not intended for users under 13 years of age. We do not knowingly collect personal information from children under 13. If you believe we have collected information from a child, please contact us immediately.
10. International Data Transfers
Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place to protect your data in accordance with this Privacy Policy.
11. California Privacy Rights (CCPA)
California residents have additional rights under the California Consumer Privacy Act (CCPA):
- Right to know what personal information is collected
- Right to know if personal information is sold or disclosed
- Right to opt-out of the sale of personal information
- Right to deletion of personal information
- Right to non-discrimination for exercising CCPA rights
12. GDPR Compliance (European Users)
For users in the European Economic Area (EEA), we comply with GDPR requirements:
- Lawful basis for processing (consent, contract, legitimate interest)
- Data protection by design and default
- Right to lodge a complaint with supervisory authority
- Data Protection Officer contact available
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via email or through the service. The "Last Updated" date at the top indicates when the policy was last revised.
14. Contact Us
For questions or concerns about this Privacy Policy, contact us at:
- Email: privacy@dashdig.com
- Support: support@dashdig.com
© 2025 Dashdig. All rights reserved.