Cookie and Similar Technologies Policy

Effective October 7, 2026

This policy explains how BizMeet LLC, a Wisconsin limited liability company ("BizMeet", "we", "us") uses cookies and similar technologies on our website at https://bizmeetapp.org and in the BizMeet app. Our practices here are simple, so this policy is short.

1. Summary and scope

Our website does not set cookies of its own, and it runs no analytics scripts, no advertising and no tracking pixels. Cloudflare, our host, shows us overall visit counts (such as visits by country) from its own server logs; these don't identify you.

The BizMeet app does not use cookies either. Like most apps, it keeps some data on your device. It also includes a few software development kits (SDKs) from our service providers. These let the app sign you in, handle purchases and deliver notifications. This policy lists each one and explains why we use it.

Categories we use. Cookie policies often sort these technologies into categories: strictly necessary, functional (remembering your choices), analytics, advertising and social media. On our website and in the app, BizMeet uses only strictly necessary and functional technologies. We use no analytics, advertising or social media technologies there.

This policy covers only these technologies. For everything else about how we collect, use and share personal information, see our Privacy Policy at Privacy Policy.

2. What these technologies are

Cookies. Small text files a website asks your browser to save and send back on later visits.

Local storage. Space in your browser (such as localStorage or sessionStorage) or on your phone (such as app preferences) where a website or app can keep small pieces of data.

Pixels. Tiny invisible images or snippets of code in a web page or email that report back when the page or email is opened.

SDKs. Ready-made code from another company that an app includes to provide a feature, such as payments or push notifications.

Device identifiers. Codes that identify a phone, an app installation or a notification channel, such as a push token or an advertising ID.

First-party and third-party. A first-party technology is set by the website or app you are using. A third-party technology is set by another company whose code or content that website or app loads.

Session and persistent. Session data is removed when you close your browser or the task it serves ends. Persistent data stays on your device until it expires or you delete it.

When this policy says "technologies", it means any of the items above.

3. On bizmeetapp.org

Our website is a set of plain, static pages. It does not set cookies of its own, and it does not use localStorage, sessionStorage, analytics, web forms, tracking pixels or social media plugins. The only script of our own runs on one page: the page our server sends you to after you sign in to LinkedIn for the verified badge. Our server puts LinkedIn's one-time code and a random BizMeet token at the end of that page's address. The script copies them into the Finish in BizMeet button, which passes them to the BizMeet app on your phone, and then removes them from the address bar. Browsers do not send that part of an address to our website's servers. The page also tells your browser not to keep a copy of it and not to pass its address on to other sites.

Cloudflare, our website host, also adds its own bot-detection script to our pages. Our site's security settings stop that script from running. If it ever ran, it would set a security cookie called cf_clearance that records the result of the check. Cloudflare also asks your browser to report failed page loads on our site to Cloudflare for up to 7 days. These reports go to Cloudflare.

Our website's font (Inter) is stored on our own website, so loading a page does not contact any other company's servers.

Our website is hosted by Cloudflare. When you visit, Cloudflare's servers receive your IP address, browser type, the page you asked for and the time of the request. Cloudflare may keep these details in server logs for security and reliability. If Cloudflare sets a strictly necessary security cookie to block attacks or abuse, we will name it in this section. We do not use any of this data to track you, profile you or advertise to you.

4. In the BizMeet app

The app keeps the following data on your device or uses the following SDK identifiers. All of them are needed to run the app or a feature you choose to use.

TechnologyWhat it doesProviderHow long it stays
Sign-in session tokensKeep you securely signed in. Strictly necessary.SupabaseUntil you sign out, delete your account or clear the app's data
App preferencesRemember your theme (light, dark or system), your distance unit (miles or kilometers), your selected Discover filter chip, the day's Daily Picks and your progress through the app tourBizMeetUntil you clear the app's data or uninstall the app. The day's Daily Picks are also removed when you sign out, and your tour progress when you delete your account in the app on this phone.
Sign-up agreementRemembers the Terms version you agreed to on the sign-up screen, with your account ID and the time, so a restart during sign-up does not lose your agreementBizMeetNormally removed once our server saves your agreement. The app ignores it after 7 days. Clearing the app's data or uninstalling removes it.
Purchase SDK cache and identifiersProcess in-app purchases, restore them and check which plan and extras you haveRevenueCat, with Google Play BillingUntil you clear the app's data or uninstall the app
Push notification token and installation IDDeliver push notifications to your deviceGoogle Firebase Cloud MessagingWhen you sign out, the app invalidates the token and asks our server to delete it. If that request fails, our server removes the dead token the next time it tries to send to it. Our server also deletes a token once its sign-in session has ended, or after 60 days without refresh. The installation ID stays until you clear the app's data or uninstall the app.
Bot check (sign-up, log-in, code resend and password reset only)A short, invisible check in a hidden web view confirms the request comes from a person. Strictly necessary.Cloudflare TurnstileOnly while the check runs; the view is then closed and anything it stored is cleared
Image cacheStore copies of profile photos so they load faster and use less data. The cache may include photos of other members you have viewed.BizMeet (on your device)Emptied when you sign out or delete your account. Otherwise up to 30 days after a photo was last shown, or until you clear the app's data or uninstall the app.

The purchase SDK identifies you to RevenueCat with a random billing ID, not your BizMeet member ID or your email address. Before you sign in, it uses an anonymous ID that it creates on your phone. Push notifications pass through Google's Firebase service on their way to your phone. They never include message text, but a Priority message notification can include the sender's first name. Our Privacy Policy at Privacy Policy explains what each provider receives.

The app's code does not read your device's advertising ID, and we do not use it. The app includes no analytics, advertising, attribution or crash-reporting SDKs. The only web page it loads inside the app is the hidden Cloudflare Turnstile check described above. When you tap a link to an outside website, it opens in your phone's browser. When you connect LinkedIn for verification, LinkedIn's sign-in page opens in your phone's browser, and our result page's Finish in BizMeet button brings you back to the app (see section 3). Outside websites, including LinkedIn, follow their own policies and may use their own cookies in your browser. We do not see what you do there.

5. In our emails

We send account emails: the one-time codes that confirm your email address and reset your password. We do not send marketing email. Before we start, we will update this policy and our Privacy Policy and ask for your permission in the app. Our email provider, Resend, delivers our account emails. We do not use account emails for marketing or advertising.

7. Do Not Track and Global Privacy Control

We do not track you across other websites or apps, and we do not add third-party tracking tools to our website or app.

Some browsers and devices can send a Do Not Track (DNT) or Global Privacy Control (GPC) signal. We treat either signal as a valid request to opt out of the sale of your personal information, its sharing for cross-context behavioral advertising, and targeted advertising. We do not sell personal information. We do not share it for cross-context behavioral advertising, and we do not use it for targeted advertising. We have not done any of these in the past 12 months. Because of that, these signals do not change how our website or app works for you. If this ever changes, we will update this policy first, honor these signals automatically, and show you when we have applied them. For more about your US privacy rights, see US State Privacy Notice (including California Notice at Collection and Nevada notice).

8. Changes and contact

We will update this policy before we add any analytics, advertising pixels, chat widgets, session recording or similar tools to our website, app or emails. When we make an important change, we will update the date at the top of this page and tell you in the app or by email before the change takes effect. Where the law requires it, we will ask for your consent first.

If you have questions about this policy, email us at contact@bizmeetapp.org. You can also write to us at BizMeet LLC, 2809 E Hamilton Ave, Unit #2177, Eau Claire, WI 54701.