Legal
Privacy Policy
Version 2026-08-20 · Last updated: 20 August 2026
Plain-English summary: RenewMark collects the contact, trademark, billing-reference, and security information needed to run the watch. Payment-card details stay with Stripe. We do not sell personal information, run behavioral advertising, or build cross-site visitor profiles. Short-lived operational data has automatic deletion periods, and privacy requests go through recorded Support.
1. Who controls this information
Michael Dube, a sole proprietor, operates RenewMark and is responsible for the personal information described in this Policy. RenewMark is based in Massachusetts and is designed primarily for U.S. trademark owners. Submit privacy questions or requests through the recorded privacy-request form.
2. Information we collect
- Account and contact data: your email address, optional backup email, confirmation state, account-link records, and information you submit to Support.
- Trademark-watch data: USPTO serial and registration numbers, the public registration record, calculated maintenance dates, watch configuration, observations, and alerts.
- Subscription and consent data: Stripe customer, checkout, subscription, invoice, and refund references; plan and status; purchase and renewal dates; the Terms and Privacy versions accepted; the automatic-renewal wording shown; and cancellation state. We do not receive or store your full payment-card number or card security code.
- Email-delivery data: recipient, subject, message type, a short body preview, provider message identifier, delivery/bounce/complaint status, error details, and timestamps. This lets us distinguish “accepted for sending” from actual delivery outcomes.
- Free tools and reminders: a number entered in the live checker is used to retrieve and temporarily cache a USPTO report. A free reminder request stores the email, mark number, source, and confirmation/unsubscribe state.
- Security and request data: RenewMark uses an IP-based daily rate-limit key and Cloudflare security services, including Turnstile. Cloudflare may process IP address, browser, device, and request information to provide hosting and bot protection.
- Privacy-minimized product events: we count actions such as successful checks, calendar downloads, confirmed reminders, checkout starts, and paid activations. A row may contain the current page path, referring website host or internal path, and a limited action detail. It does not contain email, IP address, trademark number, user ID, session ID, full URL, user agent, or browser fingerprint.
- Public records: USPTO trademark information is public government data. We still protect its association with a particular subscriber account.
3. How and why we use information
- Provide, verify, secure, and support the Service; compute deadlines; monitor enrolled marks; and deliver alerts, heartbeats, account links, and calendars.
- Process subscriptions, prevent duplicate purchases, record consent, send renewal and cancellation notices, reconcile payment status, and administer refunds.
- Confirm free-reminder requests, honor one-click unsubscribe, and avoid enrolling an inbox without its owner’s confirmation.
- Rate-limit abuse, validate bot checks, diagnose failures, prevent fraud, and preserve the reliability of the shared service.
- Measure aggregate funnel performance and improve useful pages without creating persistent visitor profiles.
- Comply with tax, accounting, consumer-protection, legal-process, and recordkeeping obligations; establish or defend legal claims; and enforce our Terms.
4. Service providers and disclosures
We disclose only what is reasonably necessary to providers that help operate RenewMark:
- Stripe processes Checkout, recurring payments, refunds, receipts, and the billing portal. Stripe may act as an independent controller for information it collects directly for payments, fraud prevention, and legal compliance.
- Resend sends transactional email and reports delivery, bounce, and complaint events.
- Cloudflare provides edge hosting, D1 storage, security, Turnstile, and privacy-oriented web analytics.
- USPTO systems receive the public record number necessary to retrieve the official trademark record.
We may also disclose information to comply with lawful process; protect customers, the public, or our rights; investigate fraud or abuse; obtain professional advice; or complete a merger, financing, reorganization, sale, or transfer of the Service with appropriate safeguards and notice where required.
5. No sale, behavioral advertising, or cross-site profiling
RenewMark does not sell personal information for money. We do not share personal information for cross-context behavioral advertising, serve targeted ads, or allow third-party advertising trackers. We do not use product-event data to recognize a person across unrelated websites.
6. Cookies, local storage, analytics, and Do Not Track
The public website does not use advertising cookies. Privacy-minimized product events do not use cookies or a cross-page visitor ID. Cloudflare Web Analytics is configured as a cookie-free aggregate measurement service. The private account temporarily keeps its signed account token in browser session storage and removes it when the browser session ends; the link token also expires server-side.
Browsers may send “Do Not Track” or similar preference signals. RenewMark does not change behavior in response because there is no universally accepted DNT standard and we do not engage in cross-site behavioral tracking. If a legally binding universal opt-out signal becomes applicable to our practices, we will honor it as required.
7. Email choices
A free reminder remains inactive until the inbox opens its confirmation link. Free reminders contain a one-click unsubscribe link and corresponding email headers. Paid operational messages are necessary to deliver the Service; cancel the subscription to stop future watch messages after the paid period. We may retain and send limited security, billing, cancellation, refund, or legally required messages after opt-out. Every email identifies RenewMark and includes the legally required postal footer.
8. Retention
We use defined retention periods rather than keeping every operational record indefinitely:
- live-checker cache: up to 2 days;
- IP-based rate-limit keys: up to 2 days;
- unconfirmed or unsubscribed free-reminder rows: up to 30 days after they become eligible for deletion;
- privacy-minimized product-event rows: up to 90 days;
- email body previews and provider error text: up to 90 days;
- email delivery metadata and provider event receipts: up to 2 years;
- Support request content: up to 2 years, unless a longer period is needed for an active dispute or legal obligation;
- active account, mark, and watch data: while needed to provide the Service; and
- billing, consent, refund, tax, and transaction records: generally for the active relationship and up to 7 years afterward where reasonably needed for accounting, legal compliance, or claims.
Automated cleanup runs daily for the short operational periods above. Backups, provider records, fraud records, and information under a legal hold may persist longer and are deleted or made inaccessible on their applicable cycle.
9. Your privacy choices and rights
You may submit a privacy request to ask what account information we hold, obtain a copy, correct it, delete eligible information, withdraw an optional reminder request, or appeal a denied request where applicable law provides that right. We may verify the request by sending a secure link to the account email and may retain information that law permits or requires us to keep. We will not discriminate against you for exercising a privacy right.
Depending on where you live and whether a particular privacy law applies to RenewMark, you may have additional rights to know, access, correct, delete, port, or limit certain uses. Because we do not sell personal information or use it for targeted advertising, there is no such sale or advertising use to opt out of. An authorized agent may submit a request, but we may require proof of authority and direct verification with you.
10. Security
We use reasonable administrative and technical safeguards appropriate to the information involved, including encrypted transport, write-only platform secrets, signed short-lived account links, signed provider webhooks, rate limits, bot protection, least-data product events, and fail-closed payment and official-data release gates. No online system is perfectly secure. Do not send card numbers, passwords, government identifiers, or confidential legal documents through Support.
11. U.S. processing and children
RenewMark and its providers process information in the United States and potentially other locations where those providers operate, subject to their safeguards. The Service is intended for adults and businesses. It is not directed to children under 13, and we do not knowingly collect personal information from a child under 13. Contact us if you believe a child submitted information.
12. Policy changes and contact
We may update this Policy prospectively. We will post the new version and effective date. If a material change affects active subscribers, we will provide reasonable notice by email or in the Service. A later edit does not replace the policy version retained with an earlier completed checkout.
Questions, requests, or complaints: submit a recorded privacy request. The request is saved before the website confirms receipt.