How PinBridge collects, uses, shares, and protects personal data and customer data.
Effective Date: March 2, 2026
Last Updated: March 2, 2026
Controller: Amendorg LLC, Sheridan, Wyoming, USA
Contacts: privacy@pinbridge.io, security@pinbridge.io, legal@pinbridge.io
PinBridge is a global SaaS product operated by Amendorg LLC. This Privacy Policy applies to the PinBridge website, product, APIs, billing workflows, and support interactions. If you are using PinBridge for a business, Amendorg LLC generally acts as the controller for account, billing, security, and website data, and may act as a processor or service provider for customer data that you choose to place in the Service.
We collect the following categories of personal data and account data:
We use personal data and customer data to:
Where GDPR or similar laws apply, our legal bases are:
PinBridge uses essential browser storage and similar technologies for sign-in state, theme preference, and basic site functionality. We also use a non-essential website analytics tool on the public site to understand traffic and usage patterns.
The website now presents an analytics choice before non-essential analytics is loaded. You can decline analytics in the banner, block cookies through your browser, or contact privacy@pinbridge.io if you need help changing your preference. Product functionality does not require accepting non-essential analytics cookies.
We disclose data to service providers only as needed to operate PinBridge, process payments, deliver communications, or secure the Service. We do not sell personal information and we do not share personal information for cross-context behavioral advertising.
| Category | Purpose | Data Categories |
|---|---|---|
| Hosting and infrastructure | Application hosting, storage, networking, and backups | Application infrastructure, stored customer data, logs, and backups processed in the normal operation of the Service. |
| Transactional email delivery | Account, billing, and service emails | Recipient email address, message content, and delivery metadata needed for transactional email. |
| Mailbox hosting and inbound email | Role inboxes and inbound communications | Inbound messages sent to PinBridge role inboxes and related mail routing metadata. |
| Billing and payment processing | Subscription billing, invoicing, and payment operations | Billing contact details, payment status, invoice metadata, and transaction records. Full payment card data is handled by the payment processor. |
| Website analytics | Traffic measurement and site improvement | Website usage events, device or browser metadata, and analytics cookies where enabled. |
| Error monitoring | Application diagnostics and incident investigation | Planned only. If enabled, error and diagnostic metadata may be processed for monitoring. |
| AI feature providers | Future AI-powered features | Not currently used in production. If introduced later, this policy will be updated before use. |
We may also disclose data to advisors, auditors, acquirers, courts, regulators, or law enforcement where legally required or reasonably necessary to protect rights, safety, and the Service. Current subprocessor details may be provided through security or legal review channels where appropriate.
PinBridge is offered globally. Your data may be processed in countries other than your own, including the United States and other locations where our providers operate. Where required, we may rely on recognized transfer mechanisms under applicable law, including contractual measures and provider commitments, but we do not make claims about any single transfer framework unless we have specifically implemented it.
We retain data based on the category of data and the purpose for which it was collected:
To request account deletion or a privacy review, email privacy@pinbridge.io from the account email address. We may need to verify identity before acting on the request.
When an account deletion request is completed, we generally delete or de-identify:
We may retain limited information after deletion where required to:
PinBridge uses administrative, technical, and organizational safeguards designed to protect data. Current controls include TLS in transit, encrypted-at-rest storage for Pinterest OAuth tokens, workspace-scoped access controls, and access boundaries described on the Security page. In the current API implementation, Pinterest OAuth tokens are encrypted with Fernet before being written to the database, using a master key supplied through environment configuration. We do not currently claim SOC 2, ISO 27001, or similar certification.
If we confirm a reportable security incident affecting customer data, our incident-response goal is to notify affected customers in less than 24 hours after confirmation, subject to the needs of investigation and applicable law.
Depending on your location, you may have rights to access, correct, delete, restrict, object to, or request portability of certain personal data, and to appeal a denied request where applicable. California residents may also have rights relating to disclosure, deletion, correction, and non-discrimination. To exercise a right, contact privacy@pinbridge.io.
PinBridge is not intended for children under 13. We align our minimum age requirement with Pinterest's minimum age requirement. If you believe a child under 13 has provided data to PinBridge, contact privacy@pinbridge.io.
We may update this Privacy Policy from time to time. If we make a material change, we will update the Last Updated date on this page and may provide additional notice by email, in-app, or on the website where appropriate.
Privacy requests: privacy@pinbridge.io
Security reports: security@pinbridge.io
Legal and contract matters: legal@pinbridge.io
Email privacy@pinbridge.io for privacy requests, or use the contact page to reach us.