Privacy Policy
Last updated: March 2026
1. Introduction
GiveMeThisStuff ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website at givemethisstuff.com (the "Service").
2. Information We Collect
Account Information
When you create an account, we collect:
- Your display name
- Email address
- Password (stored securely using bcrypt hashing)
List and Item Data
We store the gift lists you create and items you add, including:
- List titles, descriptions, occasion type, and event dates
- Item names, descriptions, prices, URLs, and images
- Claim status of items (who intends to buy or has purchased an item)
Automatically Collected Information
When you use our Service, we may automatically collect:
- IP address (used for rate limiting and security purposes)
- Browser type and version
- Pages visited and time of visit
3. How We Use Your Information
We use your information to:
- Provide, maintain, and improve the Service
- Send you email verification and account-related notifications
- Send list invitation emails on your behalf
- Protect against fraud, abuse, and unauthorized access
- Enforce our Terms of Service
4. Anonymity of Claims
When a viewer claims or purchases an item from a gift list, this information is kept strictly anonymous. The list owner cannot see who claimed which items, and other viewers cannot see claims made by other users. Only the individual who made a claim can see their own claim status.
5. Information Sharing
We do not sell, trade, or otherwise transfer your personal information to outside parties. We may share information only in the following circumstances:
- Public lists: If you set a list to "public," its title, your display name, and non-private items are visible in search results.
- Shared lists: When you share a list via a link, the list contents (excluding private items) are accessible to anyone with the link.
- Legal requirements: We may disclose information if required by law or in response to valid legal process.
6. Data Security
We implement security measures to protect your personal information, including:
- Password hashing with bcrypt
- CSRF protection on all forms
- Rate limiting to prevent abuse
- Account lockout after repeated failed login attempts
- HTTPS encryption in transit
7. Cookies
We use session cookies to maintain your login state. We also use Cloudflare Turnstile for bot protection, which may set its own cookies. We do not use tracking or advertising cookies.
8. Third-Party Services
We use the following third-party services:
- Cloudflare: DNS, CDN, and Turnstile CAPTCHA service
- Google Fonts: Web font delivery
- Lucide Icons: Icon library via CDN
9. Data Retention
We retain your account information and list data for as long as your account is active. Unverified accounts may be automatically cleaned up after 7 days. You may request deletion of your account and associated data at any time by contacting us.
10. Your Rights
You have the right to:
- Access the personal information we hold about you
- Correct inaccurate information
- Request deletion of your account and data
- Export your list data
11. Children's Privacy
Our Service is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date.
13. Contact Us
If you have questions about this Privacy Policy, please contact us at [email protected].