Privacy policy
Updated October 11, 2026 ยท Nliminal, LLCDraft for human review. This page is not published advice. Anything marked (to verify) is not confirmed. Operated by Nliminal, LLC.
Draft for attorney review. Not legal advice. Prepared October 10, 2026 for Nliminal, LLC, operator of PopTheQuestion.
What this version actually collects
This policy describes the software as built, not a future product.
- Email address, if you submit the form. We store it in our database with the page or tool that sent it. If
EMAIL_WEBHOOK_URLis set, we also forward{ email, source, listId }to that address. The provider is whoever operates that URL (Kit, Beehiiv, Loops, or another service you configure). - Tool answers (interests, a city, memories you type). If an AI API key is configured, the text is sent to that provider after we strip email addresses and phone numbers we can recognize. If no key is set, the sample plan is built on our server and the answers are not sent to a model. We do not store the prompt text in the database in this version. We do store a usage row: feature name, model name or "fallback", token counts, and an estimated cost for the spend cap.
- Rate-limit key. We store a hash of the IP address with a server secret, not the raw IP, plus a timestamp, so we can limit repeat calls.
- Affiliate clicks. Brand, link name, source label, and time. No account is required.
- Staff accounts. Name, email, password hash, role.
- Images uploaded by staff, with alt text.
- Cookies. A staff session cookie if you log in to the admin. A consent cookie if you accept or decline analytics. If you accept and
GA_MEASUREMENT_IDis set, we load Google Analytics 4.
We do not ask for your partner's full name. Please do not type it, or an email, or a phone number, into a tool.
Children
The site is not directed at children under 13, and we do not knowingly collect their personal information. This version does not include a promposal tool or any flow aimed at minors.
AI providers
The model host is whatever AI_API_BASE_URL points to (the default in .env.example is xAI). They are a sub-processor only when a key is set. Their retention and training settings must be confirmed in that provider's current API terms before launch. (to verify) We do not claim a provider has opted us out of training unless that setting is actually configured.
How long we keep things
- Subscriber rows: until you ask us to delete them.
- Staff sessions: 14 days, or until logout.
- Rate-limit rows: about a day.
- AI usage totals: kept for the spend cap and a later cost review. They do not include the prompt.
- Click logs: kept so we can see which pages send people to retailers.
Sharing
We share data with the email webhook you configure, the AI provider when a key is set, Google Analytics if you accept and a measurement ID is set, and the host that runs this app and Postgres. We do not sell personal information. A formal "Do Not Sell or Share" process for state privacy laws should be reviewed by counsel before you rely on it. (to verify)
Your requests
Email the privacy contact and ask to access or delete a subscriber address. Intended address: privacy@popthequestion.com. The mailbox is to be activated. (to verify)
Security
Staff passwords are hashed. Session cookies are HTTP-only. No method of transmission is perfectly secure.
Contact
Nliminal, LLC, operator of PopTheQuestion. A mailing address for CAN-SPAM will be added before any commercial email is sent. It is not printed here because it is not confirmed in this draft. (to verify)