Skip to content
formcrier

Privacy policy

Last updated 26 September 2026 · Applies from 1 October 2026

A plain-English summary sits at the top of each section. The full wording follows it and is what applies.

1. Who we are

In short: Formcrier is a project by Coysh Digital Ltd, a UK company. We are the controller for your account data and your processor for your visitors' submissions.

Formcrier (formcrier.com) is run by Coysh Digital Ltd, a company registered in England and Wales (number 16868808), whose registered office is 14 Sutherland Close, Warwick, CV34 5UJ. In this policy, "we" and "us" mean Coysh Digital Ltd, and "you" means someone who uses Formcrier or visits our website.

This policy covers Formcrier only. Coysh Digital's agency website and client work have their own privacy notice.

We have two roles under UK data protection law (the UK GDPR and the Data Protection Act 2018):

  • Controller for the data about you as a customer: your account, your team, billing contact details, the alert destinations you connect, and how you use the service. This policy explains what we do with it.
  • Processor for the form submissions your website sends us. You decide which forms we listen to and what they ask, so you're the controller for your visitors' data, and we handle it only to deliver your alerts and show you your submissions. Our data processing agreement sets out those terms, and section 9 below explains things for visitors.

2. What we collect

In short: Your account details, the submissions your forms send us, and basic technical data. Never passwords or card numbers from your forms.

Your account. Your name, email address and password (stored only as a one-way hash), your two-factor authentication secret and recovery codes if you turn it on (encrypted), your appearance setting, and when you last logged in.

Your workspace and team. Workspace names, country and time zone, your settings and branding, who you invite (their email address and role), and each member's role.

Your sites and forms. Site names and domains, your keys (secret keys are stored only as a hash), and what the script finds about each form: its name, its fields' names, labels and types (not what people type), and the web addresses of the pages it appears on.

Submissions. When someone fills in a form you've switched on, we receive what they entered, the page address and the page they came from, their browser's user agent, and how long they spent on the page. We keep a one-way code made from their IP address with a key that changes every day and is thrown away after 48 hours, so we can slow down abuse without ever storing the address itself. Files attached to a form (Pro and Agency plans) are stored too.

What we never keep from your forms. Before anything leaves the visitor's browser, and again on our server, we remove password fields, security tokens (CSRF, nonce and captcha fields) and anything that looks like a payment card number.

Alert destinations. The phone numbers, email addresses, Telegram chats, Slack channels and Microsoft Teams addresses you connect, with a record of how each one agreed to receive alerts (for example, the WhatsApp message that connected it) and whether it later opted out. We also keep a record of each alert we send: which channel, when, and whether it arrived. We don't keep a separate copy of the message.

Messages and events from providers. Replies such as STOP sent to our WhatsApp number or Telegram bot, and delivery reports from WhatsApp, Twilio and Mailgun.

Billing. Stripe sells Formcrier subscriptions for us and collects your billing details and card itself. We receive your Stripe customer reference, your plan and dates, and your card's brand and last four digits. We never see or store full card numbers.

Security and activity records. A log of key actions in each workspace (such as creating keys, inviting people or changing settings), with a one-way code made from the IP address. It never contains submission content.

Waitlists. If you ask to hear when a channel launches, your email address and which channel.

Our website. When you visit formcrier.com, Cloudflare and our server process your IP address and browser details to deliver the page and protect it from attack. We don't use analytics or advertising trackers.

3. How we use it

In short: To send your alerts, run your account and keep the service secure. Not for advertising.

We use your data only for these purposes. The law asks us to name a lawful basis for each one:

What we doLawful basis
Create and run your account, workspaces and team Contract: we need it to provide the service you signed up for
Receive submissions, send alerts to the destinations you connect, and show you your submissions Contract (for your visitors' data, we act on your instructions as your processor)
Send service emails: verifying your address, alerts, trial and usage notices, and warnings when a destination stops working Contract
Take payments and manage your plan, through Stripe Contract
Filter spam, rate-limit abuse, keep security records and investigate problems Legitimate interests: keeping Formcrier secure and reliable for everyone
Tell you once when a channel you asked about launches Consent, which you can withdraw at any time
Keep records we must keep by law, and respond to lawful requests Legal obligation

Spam filtering is automatic. It looks at signs such as a hidden trap field being filled in, a form being sent within two seconds of the page loading, lots of links, blocked phrases, or the same message being sent again. A submission marked as spam is still kept and shown to you, you can mark it as not spam, and it has no legal or similar effect on the person who sent it.

We don't sell your data, use it for advertising, or use your submissions to train any AI model. We don't send marketing emails.

4. Where it's stored

In short: In the UK and EU, encrypted. Alerts pass through the services you choose, some of which are based outside the UK.

Our application and database run on servers in the UK and EU. Files attached to forms are stored with Cloudflare R2 in its EU jurisdiction, under random names, and can be downloaded only through short-lived links.

Submission contents, file names, alert destinations and their credentials, and messages from providers are encrypted in our database with a key kept separately from the database. Everything travels over encrypted connections (HTTPS).

To deliver an alert, its content has to pass through the channel you chose, and some of those providers are based in, or process data in, the United States or elsewhere (see section 6). Where personal data leaves the UK, we rely on UK adequacy regulations (including the UK Extension to the EU-US Data Privacy Framework for certified US companies) or on the UK International Data Transfer Agreement or Addendum to the EU standard contractual clauses.

5. How long we keep it

In short: Submissions are deleted automatically at the end of your plan's history period.
DataHow long
Submissions and their attached files Your plan's history period: 7 days on Free, 30 on Starter, 90 on Pro and a year on Agency. After a plan change we wait 14 days before applying a shorter period. You can delete submissions sooner yourself.
Uploaded files never linked to a submission 24 hours
The daily key behind IP address codes 48 hours
Messages and delivery reports from providers 30 days
Connection codes (WhatsApp, Telegram, SMS and Teams) 15 to 30 minutes
Unconfirmed alert destinations About a day (email: 8 days)
Invitations Usable for 7 days, then kept with the workspace
Your account, workspace, sites, destinations and activity records Until you delete them, your account or the workspace
Waitlist addresses Until you ask us to remove them

When you delete your account, we delete it straight away, along with any workspace you own on your own. A workspace you share passes to another owner. When a workspace is deleted, everything in it goes too, including its submissions and files. Deleted data may remain in our encrypted backups for up to 30 days before it's overwritten.

Stripe keeps its own billing and tax records for as long as the law requires, under its own privacy policy.

6. Who we share it with

In short: The services that deliver alerts, such as WhatsApp, our hosting providers, and Stripe, who takes payments and sells Formcrier on our behalf.

We use these providers (sub-processors). Each sees only what it needs for its job:

ProviderWhat forWhere
Our server provider Hosting the application and database UK and EU
Cloudflare, Inc. Protecting and delivering our website and script, and storing attached files (R2, EU jurisdiction) Global network; files in the EU
Mailgun Technologies, Inc. (Sinch) Sending email (EU region) EU
Meta Platforms Ireland Ltd (WhatsApp) WhatsApp alerts: the phone number and the alert content EU and US
Twilio Inc. SMS alerts and codes: the phone number and the alert content US
Telegram Telegram alerts: the chat and the alert content Outside the UK
Slack Technologies, LLC (Salesforce) Slack alerts, posted to the channel you choose US
Stripe Payments Europe, Ltd and Stripe, Inc. Payments, tax and invoices EU and US
Functional Software, Inc. (Sentry) Error reports, set up not to collect personal data EU or US

Stripe sells Formcrier on our behalf as the merchant of record, so it's responsible for your payment and tax details under its own privacy policy.

Microsoft Teams alerts go to a workflow address in your own Microsoft 365 account, so Microsoft handles them as your provider, not ours. The same applies to the Slack workspace, Telegram account or phone that receives an alert: once delivered, the message is held under that service's terms.

Your team. Members of a workspace can see its sites, submissions and destinations. Agency plans can manage their clients' workspaces.

We may also share data if the law requires it, to protect people's safety or our rights, or with a buyer if Formcrier is ever sold, who would have to honour this policy.

7. Your rights

In short: You can see, correct or delete your data in your dashboard at any time, and ask us for a copy.

Under UK data protection law you have the right to:

  • get a copy of your personal data (access and portability);
  • have it corrected if it's wrong;
  • have it deleted;
  • object to, or ask us to restrict, how we use it;
  • withdraw consent where we rely on it (for example, the channel waitlist).

Much of this you can do yourself in the dashboard: change your details, delete submissions, remove destinations, delete a workspace or delete your account. For anything else, email [email protected]. We'll reply within one month, and we may need to check who you are first.

To stop alerts to a phone or chat, remove it in your dashboard. On WhatsApp you can also reply STOP, and on Telegram send /stop or block the bot.

If you're unhappy with how we've handled your data, please tell us first. You can also complain to the Information Commissioner's Office at ico.org.uk or on 0303 123 1113.

8. Cookies

In short: Only the cookies needed to log you in and keep forms secure. No tracking, and our script sets none on your website.

Our website sets only strictly necessary cookies, so it doesn't ask for consent:

CookieWhyHow long
formcrier-session Keeps you logged in as you move between pages 2 hours after your last visit
XSRF-TOKEN Protects forms against cross-site request forgery 2 hours
remember_web_… Keeps you logged in, if you tick "Remember me" Until you log out

The Formcrier script on your website sets no cookies and uses no browser storage, and it sends nothing until someone submits a form. You may still want to mention Formcrier in your own privacy notice (see the next section).

9. If you filled in a form

In short: The website you used decides what happens to your message. We deliver it to them, and delete it on their schedule.

If you sent a form on a website that uses Formcrier, that website's owner is responsible for your data, and their privacy notice applies. We process it for them: we pass your message to them by WhatsApp, text, email or the tool they use, keep it for their plan's history period (at most a year), and don't use it for anything else.

For access, correction or deletion, please contact the website you used. If you contact us instead, we'll pass your request to them and help them answer it.

10. Children

In short: Formcrier is a business tool for adults.

Formcrier accounts are for people aged 18 or over. We don't knowingly collect children's data for our own purposes.

11. Changes to this policy

In short: We'll email you before any change that matters.

We'll update this page when our services or the law change, and show the date at the top. If a change affects how we use your data, we'll email account owners at least 30 days before it applies.

12. Contact us

In short: Email [email protected].

Email [email protected] with any question about privacy or this policy, or write to Coysh Digital Ltd, 14 Sutherland Close, Warwick, CV34 5UJ, United Kingdom.