API Privacy Policy
Last Updated: July 21, 2026
1. Information We Collect and Process
When your WordPress site communicates with the GiveBlocks API, we handle specific operational data necessary to facilitate the transaction and maintain service health:
- API Routing and Usage Data: IP addresses, timestamp data, and API request parameters from the originating WordPress site.
- Transaction Metadata: Payment amounts, currency, Stripe Account IDs, and transaction statuses necessary to calculate and verify the 1% platform fee.
- Platform Configuration: Basic site details (URL, plugin version) to ensure compatibility, maintain software updates, and authenticate API requests.
2. Zero PII Retention Policy
We do not collect, process, or store any Personally Identifiable Information (PII) belonging to your end-users (donors, ticket buyers, or event attendees) on our servers. All checkout and donation information entered by your end-users is passed directly and securely from your WordPress plugin instance to Stripe for processing. No donor names, email addresses, credit card numbers, or billing details ever touch or reside on giveblocks.net infrastructure.
3. How We Use Non-Personal Data
We use the collected metadata strictly to:
- Authenticate API requests and route transactions securely to your connected Stripe account.
- Calculate and collect the 1% platform fee.
- Monitor API performance, troubleshoot technical connection issues, and prevent fraudulent platform activity.
4. Third-Party Data Sharing
The GiveBlocks API operates purely as a conduit. Necessary payment data is transmitted directly to Stripe. We do not sell, rent, trade, or share any developer, platform, or transaction data with third-party marketers or outside entities. All financial data routing is subject to Stripe’s Privacy Policy.
5. Plugin Owner Responsibilities
Because your WordPress site acts as the point of collection, you are responsible for providing your own privacy policy to your end-users (donors and attendees). Your policy should disclose that payment processing is handled via Stripe and is subject to Stripe’s terms.
6. Security
We implement industry-standard encryption protocols (HTTPS/TLS) to secure data in transit between your WordPress site, our API, and Stripe.