Privacy Policy
Effective September 11, 2026 — self-service edition. This policy covers Sigdes previews, paid designer workspaces, private access links, Stripe payments, and support. Mark Zschiegner, trading as FiveToClose, operates the service.
1. Trying the public designer
The public preview stores your draft in browser sessionStorage so it can survive checkout in the same tab. It is not sent to our server by the preview. After payment, that draft can populate your first empty signature slot; it is sent to our server only when you save or export. Closing the tab or clearing session storage removes the local draft. The preview is not a clean HTML export.
2. Purchasing and using the workspace
Before Stripe checkout, we store your receipt email, chosen plan, order reference, creation date, policy version, and affirmative acceptance and immediate-access request. This record exists even if payment is abandoned. Stripe collects billing and payment information and returns transaction identifiers, amount, currency, and payment status. We do not store full card numbers or card security codes.
After payment, details you explicitly save or export are stored in your private workspace: names, titles, business contact details, website and call-to-action links, colors, and template choices. We also record the first clean export time for access, troubleshooting, and fulfillment records. Unsubmitted edits remain in your browser. Only enter team information you are authorized to use.
3. Access cookies and private links
We use one necessary, HttpOnly access cookie to recognize a paid workspace on the current device, normally for up to 90 days. It is not an advertising or analytics cookie. You can clear it using “Close access on this device,” by clearing browser cookies, or through browser settings. Clearing it does not delete the workspace or cancel a purchase; reopen the private email link to return.
Your private link acts as an access credential. We store a hash of its token and keep the signing secret on the server. Anyone holding the link may access and edit saved signatures. Do not share it publicly; contact us if exposed. We do not require a password or access to your mailbox.
4. Technical data and third-party checkout
Our hosting infrastructure processes IP addresses, request paths, timestamps, browser information, and security/error information needed to operate the site. Nginx access logs omit URL query strings so private-link tokens are not included in those logs. Browser history, email providers, and other infrastructure may retain relevant information.
Public Sigdes pages use Is Your Traffic Real (isyourtrafficreal.com) to measure traffic quality and detect automated visits. Its script uses a temporary sessionStorage identifier and sends page/referrer paths without query strings, page title, campaign tags, language/time zone, device/browser signals, and whether interaction occurred and time spent. The receiving service also receives network information such as your IP address. The script does not read signature or checkout form field values. It is not loaded on private access, order, or paid designer pages. Browser privacy tools may block it, and clearing session storage resets its session identifier. Stripe uses its own technologies on hosted checkout as described at https://stripe.com/privacy.
5. Why information is used and shared
We use information to provide paid access, save and export signatures, send access emails, verify payments and refunds, answer support requests, prevent misuse, and comply with legal obligations. Performing the requested service is the primary basis for order processing; legal duties and legitimate security and recordkeeping interests may also apply where recognized by law.
We do not sell personal information, share it for cross-context behavioral advertising, add invisible tracking to signatures, or enroll purchasers or team members in marketing lists from their purchases. We do not publish their data as samples. Access is limited to the operator and providers needed for hosting, email, payments, support, and business records. Hostinger supplies VPS and email services; Stripe processes payments. Valid legal obligations, protection of systems, or a business transfer may require appropriate additional disclosure.
6. Retention
Unpaid order records are scheduled for deletion after 30 days. Paid workspace content and access records remain while the paid workspace is active, until a verified deletion request or closure. We may retain limited payment, acceptance, export, and dispute records for up to seven years after closure where necessary for accounting, legal obligations, or claims. Legal holds may extend necessary retention.
Legacy manually fulfilled briefs follow their original retention schedule: generally up to 12 months, apart from legal holds. Operational access logs generally rotate within 30 days. Root-only order backups rotate within 90 additional days, so deleted information may remain in a backup until rotation. Stripe and email providers also apply their own retention practices.
7. Security and your choices
We use HTTPS, restricted server file permissions, secure cookies, signed Stripe webhook verification, and payment checks before workspace access or export. No system can guarantee perfect security. You are responsible for protecting your email account, private link, devices, and downloaded files.
Email support@fivetoclose.cloud to request access, correction, deletion, or a copy of your records. Depending on location, you may also have rights of portability, restriction, objection, withdrawal of consent for processing based on consent, or complaint to a privacy regulator. We may verify identity and authority before acting. Deleting the workspace removes stored signatures and can end usable access; we will explain the effect. Necessary legal or financial records may be retained. We do not penalize lawful privacy requests.
8. Age, international processing, and updates
Sigdes is intended for adults and business use, not children. Contact us if a child’s data was submitted. We operate in the United States and our providers may process data in other countries. Applicable international-transfer conditions and safeguards remain required where the law applies.
Policy updates will show a new effective date. Material changes affecting previously collected information will receive additional notice or consent where required.
Contact support@fivetoclose.cloud. Check Spam/Junk for replies, mark the message “Not spam” or move it to your inbox, and add our address to contacts or safe senders for future messages.