Who this covers
This notice describes how the DonorForward platform processes account data for nonprofit staff and donation data collected on hosted forms. It is a product statement for this application, not a substitute for counsel.
What we collect
Staff accounts: name, email, hashed password, role, and organization. Donors: the fields an organization requires on a form, typically name and email, plus gift amount, campaign, and payment status. We do not store raw card numbers. Stripe tokenizes payment methods.
Why we use it
To operate checkout, receipts, donor records, reporting, and fraud controls. Organization data is isolated by organizationId. Secondary jobs such as email must not block a successful payment.
Sharing
Payment data is sent to Stripe as the connected processor. We do not sell donor lists. Future integrations (accounting, CRM) are optional and must fail independently of payment.