Legal
Privacy
policy.
Last updated: June 2026
Introduction
Minting Marketing ("we," "us," or "our") operates the website mintingmarketing.com and provides Meta Ads management and advertising-attribution services to business clients. This Privacy Policy explains how we collect, use, disclose, and safeguard information when you visit our website, communicate with us, use our client portal, or interact with advertising campaigns and tracking we manage on behalf of our clients. It also describes how we handle business-contact data we use for outreach. Please read this policy carefully. By accessing or using our website, you agree to the terms of this Privacy Policy.
Information We Collect
Personal Information You Provide
When you fill out our contact form or schedule a consultation, we may collect:
- —Full name
- —Email address
- —Phone number
- —Message content and any details you choose to share
Information Collected Automatically
When you visit our website, certain information is collected automatically through cookies and similar technologies:
- —Google Analytics (G-LYSLN43EKE): Anonymized usage data including pages visited, time on site, referral sources, device type, and general geographic location.
- —Session Cookies: Used for authenticated areas (admin dashboard and client portal). These expire when you close your browser or log out.
Advertising & Conversion Tracking Data
For clients who engage our advertising services, we operate a first-party click-and-conversion tracking system to measure campaign performance and report results to clients. When someone clicks an ad we manage, our redirect endpoint records a click and appends a unique click identifier ("mm_cid") to the destination URL. This identifier is stored in a cookie and in local storage on the client's website for up to 30 days. The data we collect through this system includes:
- —A randomly generated click ID and the campaign, ad set, and ad identifiers associated with it
- —UTM parameters, landing page URL, and referrer
- —IP address, browser user agent, and approximate location
- —Conversion events reported by the client, including conversion type, order/transaction ID, and revenue amount
- —A one-way SHA-256 hashed version of a customer email address (when the client provides one), used only to match a conversion to a prior click — we do not store the plain-text email from this pipeline
For this data, our client (the advertiser whose ads and website are involved) is the controller of their customers' information, and we act as a service provider/processor on their behalf. If you interacted with a campaign or website we manage, please also refer to that business's own privacy policy. We use this data solely for attribution, reporting, and billing — never to build cross-client profiles or to sell information.
Business Contact Information (Outreach)
As part of our business-to-business marketing, we collect publicly available business contact information — such as business name, business email address, phone number, website, and physical address — from public sources and directories, and we may send commercial email to those businesses about our services. Every such message identifies us, includes our mailing address, and provides a way to unsubscribe. If you no longer wish to receive outreach from us, you can opt out using the link in any message or by emailing info@mintingmarketing.com, and we will remove you from future outreach promptly.
How We Use Your Information
- —To respond to your inquiries and contact form submissions
- —To provide and manage our advertising services
- —To measure advertising performance and attribute conversions for results reporting
- —To generate and deliver invoices and process payments
- —To send service-related communications and, for business prospects, outreach communications you can opt out of
- —To operate the AI assistant in our client portal and respond to portal messages
- —To analyze website usage and improve our site experience
- —To maintain the security and functionality of authenticated portals
- —To comply with legal obligations
Third-Party Services
Google Analytics
Used for website traffic analysis and user behavior insights. Google Analytics collects anonymized data and is governed by Google's Privacy Policy.
Resend
Used to deliver transactional emails, including contact form notifications and service communications. Your name and email are shared solely to deliver these emails.
Meta Ads (Facebook / Instagram)
For clients who engage our advertising services, we manage Meta Ads campaigns on their behalf. Client advertising data is handled per Meta's data policies and our client service agreements.
Stripe
Used to process invoices and payments for our clients. Stripe collects billing and payment information directly and is governed by Stripe's Privacy Policy. We do not store full card numbers.
Anthropic (Claude)
Powers the AI assistant in our client portal. Messages you send to the assistant are processed by Anthropic's API to generate responses. We instruct the assistant not to expose account-specific data and route sensitive questions to our team.
Sentry
Used for application error monitoring and reliability. Sentry may receive technical diagnostic data (such as error details and device/browser information) to help us detect and fix issues.
Infrastructure (Supabase, Vultr, Cloudflare)
We host our application and database on Vultr and Supabase (PostgreSQL) and use Cloudflare as a content-delivery and security layer. These providers process data on our behalf to operate, secure, and deliver the website and portal.
Data Sharing and Selling
We do not sell, trade, or rent your personal information to third parties. We only share your information with the third-party service providers listed above, and solely to the extent necessary to operate our website and deliver our services. We may also disclose your information if required by law, court order, or governmental regulation.
Data Retention
- —Contact form submissions: Retained for up to 24 months after your last interaction, unless you request earlier deletion.
- —Analytics data: Google Analytics data is retained per our configured retention period of 14 months.
- —Client portal data: Retained for the duration of our service agreement and up to 12 months after termination.
- —Advertising & conversion tracking data: Click and conversion records are retained for the duration of the related client engagement and as needed to support reporting and billing, after which they are deleted or anonymized.
- —Outreach contact data: Retained while a business remains a prospect; removed promptly on an opt-out request and added to a suppression list so we do not contact you again.
- —mm_cid tracking cookie / local storage: Stored on a client’s website for up to 30 days from the click.
- —Session cookies: Expire when you log out or close your browser.
Your Rights
- —Right to Access: You may request a copy of the personal information we hold about you.
- —Right to Correction: You may request that we correct any inaccurate or incomplete personal information.
- —Right to Deletion: You may request that we delete your personal information, subject to certain legal exceptions.
- —Right to Opt-Out: You may opt out of marketing/outreach emails using the unsubscribe link in any message, opt out of Google Analytics tracking via the Google Analytics Opt-Out Browser Add-on, and manage non-essential cookies through our cookie banner.
To exercise any of these rights, contact us at info@mintingmarketing.com. We will respond within 30 days.
California Consumer Privacy Act (CCPA)
- —Right to Know: You have the right to request disclosure of the categories and specific pieces of personal information we have collected about you.
- —Right to Delete: You have the right to request deletion of your personal information, subject to certain exceptions.
- —Right to Non-Discrimination: We will not discriminate against you for exercising any of your CCPA rights.
- —No Sale of Personal Information: We do not sell personal information as defined under the CCPA.
To submit a CCPA request, email info@mintingmarketing.com with the subject line "CCPA Request." We will verify your identity before processing and respond within 45 days.
Data Security
We implement reasonable administrative, technical, and physical safeguards to protect your personal information from unauthorized access, use, or disclosure. These measures include encrypted data transmission (HTTPS/TLS), secure session management with signed authentication tokens, optional two-factor authentication on portal accounts, signed (HMAC) verification of incoming conversion webhooks, one-way hashing of customer email addresses used for attribution, and access controls on internal systems. However, no method of electronic transmission or storage is completely secure, and we cannot guarantee absolute security.
Children's Privacy
Our website and services are not directed to individuals under the age of 18. We do not knowingly collect personal information from children. If we learn that we have collected personal information from a child under 18, we will take steps to delete that information promptly.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons. The updated policy will be posted on this page with a revised "Last updated" date. We encourage you to review this page periodically.
Contact Us
Questions about your data?
If you have any questions or concerns about this Privacy Policy or our data practices: