Plain-language privacy
We collect less because we need less.
Last updated: 18 August 2026
Bundle requests
We store the Bundle idea and optional context you submit so the editorial team can assess gaps in Bundlified’s research. This text is private research input and is never published automatically.
An email address is optional. We store one only when you explicitly request a one-time publication notification, and the notification is inactive until you confirm the address. This permission is separate from the newsletter.
Newsletter
The newsletter stores the email address, the consent wording version, source, and confirmation timestamps. Subscription requires a confirmation link. We use the address only for Bundlified editorial and new-Bundle notes, and every future newsletter message must include an unsubscribe route.
Security and abuse prevention
Email addresses are encrypted in the application database. Rate limits, time checks, one-time form tokens, duplicate suppression, and privacy-preserving keyed hashes help stop automated abuse. The submission database does not store a raw IP address; hosting access and security logs may process one for a limited operational period.
Retention
Unconfirmed newsletter records are deleted after 14 days. Unconfirmed request-notification addresses are removed after 14 days while the anonymous research idea may remain. Addresses connected to closed requests or completed publication notifications are removed after 30 days.
When a newsletter subscriber unsubscribes, the readable email address is removed immediately. A non-reversible suppression hash remains so the address is not accidentally re-enrolled without fresh consent.
Service providers
Bundlified’s hosting, database, and configured email-delivery provider process the limited data needed to operate these features. We do not sell submitted addresses or use a request-notification address for unrelated marketing.
Your choices
You can unsubscribe from the newsletter through the signed link in its confirmation email. A one-time Bundle request notification can be cancelled through the signed link in its confirmation message and otherwise ends when the requested Bundle is published and the notification is sent.
A verified public privacy contact will be added before production data collection begins.