Formgopher Formgopher
  • Pricing
  • FAQ
  • Docs
Log in Get Started
  • Pricing
  • FAQ
  • Docs
Log in Get Started
← Back to home

Privacy Policy

Last updated: July 31, 2026

Formgopher provides a form-delivery service: website owners and the freelancers/agencies who build sites for them (“Account Holders”) use Formgopher to receive contact-form submissions from their own websites by email.

On this page
  1. Overview
  2. 1. Information Formgopher Collects
  3. 2. How Formgopher Uses Information
  4. 3. Who Formgopher Shares With
  5. 4. Data Retention
  6. 5. Your Rights
  7. 6. Security
  8. 7. Children's Privacy
  9. 8. International Transfers
  10. 9. Changes to This Policy
  11. 10. Contact

Overview

This policy covers two different groups of people, because Formgopher handles their data very differently:

Account Holders — people who sign up for a Formgopher account. You have a direct relationship with Formgopher, log in, and control your own data.

Form Submitters — visitors to an Account Holder's website who fill out a contact form that happens to run on Formgopher. You never sign up for Formgopher, never see Formgopher's name, and have no account with it. Your form submission is relayed by Formgopher on behalf of the site you submitted it to.

Both are covered below, in separate sections, because your rights and Formgopher's role are different depending on which one you are.

1. Information Formgopher Collects

From Account Holders (people with a Formgopher account)

  • Account information: email address, and authentication credentials, handled via Firebase Authentication (Formgopher does not directly store your password).
  • Recipient configuration: the name, destination email address, and allowed website domains you set up for each form you connect to Formgopher, plus any additional CC email addresses and spam-handling preferences you configure (Warren plan).
  • Billing information: if you subscribe to a paid plan, payment is processed by Stripe. Formgopher stores your Stripe customer ID and subscription status; it does not store your card number.
  • Usage data: submission counts and delivery logs tied to your account, used for plan-limit enforcement and to show you your own dashboard history.

From Form Submitters (visitors who fill out a connected contact form)

When someone submits a contact form connected to Formgopher, Formgopher receives and processes:

  • The content of the form fields they submitted (e.g. name, email address, message, and any other fields the site owner included in their form).
  • Their IP address, used to detect abusive or automated submissions (see Spam Detection below) and to display which site a submission came from.
  • The domain of the website the form was submitted from.
  • Any file attached to the submission, on plans that support attachments.

This information is collected because the Account Holder configured their form to use Formgopher's delivery service, not because the Form Submitter chose to interact with Formgopher directly. Formgopher does not have a direct relationship with Form Submitters and cannot verify their identity or respond to routine account requests the way it can for Account Holders.

Automatically, from anyone using the dashboard

The dashboard uses your browser's sessionStorage to keep a local copy of your own account data (recipients, submission history, profile) so the app doesn't have to re-fetch it on every page. This data lives only in your browser tab, is never sent anywhere but Formgopher's own servers, and is automatically cleared when you sign out or close the tab. Formgopher does not use third-party advertising or tracking cookies on the dashboard.

2. How Formgopher Uses Information

  • To deliver form submissions from a connected website to the Account Holder's configured destination email, via Formgopher's email provider, Resend.
  • To enforce plan limits (number of recipients, monthly submission volume, attachment size).
  • To detect likely spam or abusive submissions (Warren plan only), using submission content and submission frequency from a given IP address, and to apply the Account Holder's chosen handling (flag for review, or block delivery).
  • To maintain a submission log so Account Holders can see delivery status, diagnose failures, and audit which website a submission originated from.
  • To process billing for paid subscriptions.
  • To secure the service, including detecting unauthorized use of an API key.

Formgopher does not sell personal data, and does not use Form Submitter content to build advertising profiles, train models, or for any purpose beyond delivering and logging the submission it was part of.

3. Who Formgopher Shares Information With

Formgopher shares information with the service providers that make it work. Each acts as a processor on Formgopher's behalf and is bound to use data only to provide their service to Formgopher:

Provider Purpose What they receive
Firebase (Google) Authentication, database hosting Account Holder credentials, all Firestore-stored data
Resend Email delivery Recipient email address, CC addresses, submission content, attachments
Stripe Payment processing Billing information for paid subscriptions

Formgopher does not share Form Submitter data with any party other than the Account Holder whose form generated the submission (that's the entire point of the service), and the infrastructure providers above needed to deliver it.

Information will be disclosed if required by law, such as in response to a valid subpoena or court order.

4. Data Retention

  • Account data is retained for as long as your account is active, and deleted on request (see Your Rights below).
  • Submission logs (form field content, submitter IP, origin domain, delivery status) are automatically deleted 12 months after the submission date.
  • File attachments are automatically deleted 90 days after submission, regardless of account plan.

Because submission logs can include personal data about Form Submitters who never directly consented to Formgopher retaining their information, deletion requests from Form Submitters are honored on a manual, case-by-case basis (see Your Rights below), even though Formgopher doesn't offer Form Submitters a self-service account to do this themselves.

5. Your Rights

If you are an Account Holder, you can access, correct, or delete your recipient and submission data directly from your dashboard, and can delete your account entirely, which removes your profile and cancels any active subscription.

If you are a Form Submitter and want to know what data Formgopher holds about you, or want it deleted, reach out at roger@atroger.com with the website you submitted the form on and approximately when. Because Formgopher doesn't collect enough information to independently verify a Form Submitter's identity, it may ask the Account Holder who operates that site to confirm the request before acting on it.

Depending on your location, you may have additional rights under laws such as the GDPR (EEA/UK) or CCPA/CPRA (California), including the right to access, correct, delete, or restrict processing of your personal data, and the right to lodge a complaint with a supervisory authority.

6. Security

Formgopher uses industry-standard measures to protect data in transit and at rest, including encrypted connections (HTTPS) for all traffic to its submission endpoint and dashboard, and access controls restricting who can read Firestore data to the account it belongs to. No method of transmission or storage is 100% secure, and absolute security can't be guaranteed.

7. Children's Privacy

Formgopher is not directed at children, and does not knowingly collect personal data from anyone under 16 as an Account Holder. Because Form Submitter data originates from third-party websites Formgopher doesn't operate or moderate, Account Holders are responsible for ensuring their own use of Formgopher on their website complies with applicable children's privacy laws (such as COPPA) for their own audience.

8. International Data Transfers

Formgopher's infrastructure providers (Firebase, Resend, Stripe) may process and store data in the United States or other countries outside the Form Submitter's or Account Holder's home country. Where required by applicable law, Formgopher relies on the safeguards those providers make available for cross-border transfers, such as Standard Contractual Clauses.

9. Changes to This Policy

This policy may be updated as Formgopher's features change. The “Last updated” date above will be updated accordingly, and for material changes, Account Holders will be notified by email.

10. Contact

Questions about this policy, or requests related to your data, can be sent to roger@atroger.com.

Related reading

Terms of Service Cookie Policy Acceptable Use Policy Accessibility Statement
Formgopher Formgopher

Forms in, inbox out.

Product
  • Pricing
  • FAQ
  • Docs
  • Release Notes
  • Contact the dev
Legal
  • Privacy Policy
  • Terms of Service
  • Cookie Policy
  • Accessibility Statement
  • Acceptable Use

© 2026 Formgopher. All Rights Reserved.

Developed by AR Development · Web Apps