UrlsTree
Sign in

Privacy Policy

Last updated August 15, 2026

This page explains what personal data UrlsTree collects, why, and what your choices are. It covers both UrlsTree account holders ("creators") and people who visit a UrlsTree page or short link ("visitors").

1. Data we collect from creators

When you create an UrlsTree account, we collect:

  • Name, username, and email address
  • Your password, stored hashed — we never see or store it in plain text
  • Anything you add to your profile: bio, avatar image, links, social icons, and appearance settings
  • Billing information, handled entirely by Paddle (see Section 4) — UrlsTree does not store your card details

2. Data we collect from visitors

When someone visits your UrlsTree page, clicks a link, or uses one of your short links, we record a page view or click event containing:

  • The referring website's domain, if any (e.g. instagram.com)
  • Country, derived from the network request when available — we do not store IP addresses
  • Device type (mobile, tablet, desktop) for short links, derived from the browser's user agent
  • Timestamp

This aggregated data is shown to the page owner as analytics. We don't use it to build advertising profiles or sell it to third parties.

If a creator enables email capture or an email-gated link, and a visitor chooses to submit their email address, that address is stored as a subscriber of that creator's account and is visible to that creator. UrlsTree does not use subscriber email addresses for its own marketing.

3. Cookies and sessions

UrlsTree uses a session cookie to keep you signed in and, on public profile pages, to remember which email-gated links you've already unlocked during your visit. We don't use third-party advertising or tracking cookies. If a creator adds their own Meta Pixel or Google Analytics ID to their page (a paid feature), those services' own cookies and data practices apply — that's between the visitor, the creator, and that third party, not UrlsTree.

4. Third parties we use

  • Paddle.com Market Limited — our payment processor and merchant of record for subscriptions. Paddle collects and processes your billing information directly; see Paddle's privacy policy.
  • Amazon S3 — stores uploaded profile images.
  • Our email provider — sends transactional email (password resets, account notifications). We do not send marketing email without your consent.
  • Cloudflare (where applicable) — provides network-level security and the country signal described in Section 2.

5. Data retention

We keep account and profile data for as long as your account is active. If you delete your account, your profile and links are removed; aggregated analytics tied to a deleted account are also deleted. Suspended accounts are withheld from public view but not deleted, so the action is reversible.

6. Your rights

You can access, correct, or export your own account data from your dashboard at any time. You can delete your account from account settings, which removes your public page and profile data. To request deletion of visitor-level data we hold about you (for example, as a subscriber on someone else's page), contact us at the address below.

7. Children's privacy

UrlsTree is not directed at children under 13, and we don't knowingly collect personal data from them.

8. Changes to this policy

We may update this policy from time to time. We'll update the "Last updated" date above when we do. Material changes will be communicated to account holders by email or an in-app notice.

Questions about this page? Contact [email protected].