Last updated: 28 July 2026
Feedinbox asks a website's visitors one question when they leave without buying, and collects general product feedback. This policy explains what we collect, why, and what we deliberately do not collect.
This policy covers two relationships, and they work differently:
Account information. You sign in with Google. We receive your name, email address, and profile image. We never receive or store your Google password.
Project settings. The project name, optional domain, your widget key, and your configuration: question wording, answer options, timing, and notification preference.
Feedback submissions. The message, the chosen category, an optional email address if the visitor supplies one, the page URL it was sent from, and the browser user agent string.
Why-Not-Buy responses. The selected reason, any optional free text, whatever context you choose to attach in your own code (for example the plan being viewed), a two-letter country code, the page URL, the browser user agent, and a random session identifier used to avoid asking the same person twice.
Billing information. Payments are processed by Dodo Payments, acting as merchant of record. We store only your customer and subscription identifiers, your plan, its status, and the current period end date. We never see or store card numbers.
The widget uses sessionStorage, not cookies. It writes three short-lived keys, all prefixed feedinbox_: a random session id, and flags recording that the question was already answered or dismissed. Their only purpose is to avoid asking the same person the same question twice.
Because this is sessionStorage, the browser discards all of it when the tab is closed. Nothing persists across sessions or across sites.
We do not use your feedback content or Why-Not-Buy responses to train machine learning models.
We use a small number of infrastructure providers, and only to deliver the service:
We may also disclose information where legally required, or as part of a merger or acquisition, in which case we will tell you before your data becomes subject to a different policy.
We keep data until you delete it or close your account. Deleting a project permanently deletes every feedback submission and Why-Not-Buy response belonging to it, immediately and irreversibly.
To delete your entire account and everything in it, email us at support@feedinbox.com and we will action it. Backups may retain copies for a short period before being rotated out.
Depending on where you live, you may have the right to access, correct, export, or delete your personal data, and to object to certain processing. You can view everything in your dashboard at any time, and export responses to CSV or PDF on a Pro plan. For anything you cannot do yourself, email us and we will help.
If you are a visitor who answered a question on someone else's website, please contact that website's owner, since the data belongs to them.
Data is transmitted over HTTPS and stored on managed infrastructure with access restricted to what is needed to operate the service. No system is perfectly secure, so we aim to collect as little as possible in the first place, which is why we do not store IP addresses or set cookies.
Feedinbox is a tool for businesses and is not directed at children under 13. We do not knowingly collect their personal information.
We may update this policy as the product changes. Any update is reflected in the date at the top of this page, and significant changes will be communicated by email.
Questions about this policy or about your data: support@feedinbox.com.