Cashflow HUD Privacy Policy
Last updated September 13, 20261) Scope
a) This Privacy Policy governs Cashflow HUD (the “Application”), an internal financial reporting application operated by PXLPOD Media LLC (“PXLPOD Web”, “we”, “us”, “our”), a limited liability company formed in North Carolina, United States.
b) The Application is reachable only at cash.pxlpod.co and only by a single authenticated owner. It is not a product, it is not offered for sale or subscription, and no customer, client, or member of the public may access it or create an account on it.
c) This Policy is separate from the privacy policy governing our public website at https://pxlpod.co, which applies to visitors to that website. The two documents describe different systems with different audiences. If you are a visitor to our website, that policy applies to you and this one does not.
d) Effective Date: September 13, 2026
2) Information the Application Holds
a) The Application holds two categories of information, and the distinction between them applies throughout this Policy.
b) Client business records. Company names; the names, business email addresses, and business telephone numbers of individuals employed by those companies; billing addresses; and the invoices, subscriptions, and payment records associated with them. This constitutes personal information relating to individuals acting in a business capacity and is treated as such.
c) Our own financial data. Transactions on PXLPOD Media LLC’s business bank account, together with payout records from our payment processor. The data subject of this category is PXLPOD Media LLC itself and not any third party.
d) The Application holds no consumer information, maintains no end-user accounts, and contains no account belonging to any person other than the owner.
3) Sources of Information
a) The Application collects no information directly from any individual. Every record within it is mirrored by read-only synchronization from a system PXLPOD Web already operates.
b) Stripe. Invoices, subscriptions, payments, refunds, payouts, and associated processing fees, together with the customer record to which each belongs. Access is by restricted, read-only API key.
c) Monday.com. Client accounts, contacts, products, subscription classifications, and payment plan schedules. Access is by read-only API token.
d) Plaid. Transaction history for PXLPOD Media LLC’s own business bank account, for the purpose of expense forecasting. Access is read-only. This source is pending and not yet connected as of the Effective Date.
e) The Application does not write data back to Stripe or Monday.com. The Application exposes no form, field, or interface to any person other than the owner.
4) Payment Card and Bank Account Information
a) We do not collect, store, or have access to payment card numbers, card security codes, or client bank account numbers.
b) Clients remit payment through payment pages operated by Stripe. Subscription and plan payments are served at billing.pxlpod.co, a subdomain of ours delegated by DNS to Stripe’s hosted checkout infrastructure; invoice payments are served at invoice.stripe.com. In both cases the page is served, rendered, and controlled by Stripe, and PXLPOD Web’s own hosting is not in the path.
c) Because billing.pxlpod.co carries our domain name, a payer may not observe that the page is operated by Stripe. We state it here for that reason. Payment card details entered on that page are transmitted directly to Stripe and are held by Stripe in its capacity as our payment processor.
d) What is transmitted to PXLPOD Web is a payment method token, the final four digits of the instrument, the card brand, and the transaction amount. The underlying card number is not retrievable by PXLPOD Web through Stripe’s dashboard, its application programming interface, or any export function.
e) Card security codes are not retained by PXLPOD Web or by Stripe. Retention of card security codes following authorization is prohibited under the Payment Card Industry Data Security Standard.
5) Use of Plaid
a) PXLPOD Web will use Plaid Inc. (“Plaid”) to connect the Application to PXLPOD Media LLC’s own business bank account, so that outgoing expenses may be categorized and forecast alongside incoming revenue. As of the Effective Date this connection has not been established.
b) Plaid Link is not surfaced to any person other than the owner. The Application presents no sign-up process, no consumer-facing flow, and no screen that any third party may reach. The sole bank account connected is that of PXLPOD Media LLC, and the sole data subject of that connection is PXLPOD Media LLC.
c) Through Plaid we will retrieve transaction history and recurring transaction detection for that account only. We will not retrieve account balances for display, will not initiate payments or transfers, and will not use Plaid for identity verification or any consumer-facing purpose.
d) Plaid’s handling of information is governed by the Plaid End User Privacy Policy, available at https://plaid.com/legal/.
6) Purposes of Processing
a) To forecast expected income and expenditure, and to distinguish committed amounts from projected amounts.
b) To reconcile records held in our customer relationship management system against amounts actually billed by our payment processor, and to identify discrepancies between them.
c) To identify late, failed, and at-risk payments for follow-up.
d) To satisfy our accounting, tax, and record-keeping obligations.
e) We do not use information held in the Application for advertising, profiling, automated decision-making, or any purpose involving the consumers of a third party. We do not sell personal information and do not share personal information for cross-context behavioral advertising.
7) Access
a) Access to the Application is limited to one operational user: Christopher Foley, managing partner of PXLPOD Media LLC. He is the only person who signs in to it.
b) The Application implements a single-owner authentication model. It provides no roles, no team accounts, and no invitation or provisioning mechanism. No employee or contractor holds access; PXLPOD Media LLC has no employees and no contractors.
c) The company has a second owner, a silent minority shareholder, who holds no account on the Application and performs no operational function. She holds the credential to the administration workstation as a continuity measure only, so that the business may be recovered on the death or incapacity of the managing partner. Because that workstation can reach the Application, this is recorded as access rather than described as none.
d) Direct database access is restricted to the Application’s server-side credential. Row-level security is enabled on every table with no permissive policies defined, such that no client-side key may read any record.
8) Service Providers
a) The Application operates on infrastructure provided by the following parties, each acting as a service provider or processor on our behalf.
b) Supabase — managed PostgreSQL database and the Application’s sole data store. United States (us-east-1).
c) Vercel — application hosting and scheduled synchronization. United States (us-east-1).
d) Stripe — payment processing and source of invoice and payment records. United States.
e) Monday.com — customer relationship management and source of client and subscription records. United States.
f) Plaid — bank connectivity for PXLPOD Media LLC’s own account. United States.
g) No information held in the Application is transferred to any party other than those listed above, and no information is transferred outside the United States.
9) Retention
a) Financial records, including invoices, payments, refunds, and payouts, are retained for seven (7) years from the end of the tax year to which they relate, in order to satisfy accounting and tax record-keeping requirements.
b) Client business records are retained for the duration of the client relationship and for seven (7) years thereafter where they form part of a financial record.
c) Bank transaction data retrieved through Plaid is retained while the connection remains active and is deleted within thirty (30) days of that connection being closed.
d) Projected and forecast records are regenerated upon each synchronization and are not retained beyond the current projection.
10) Deletion; Requests
a) Because the Application holds business records rather than consumer information, requests concerning it will ordinarily originate from a client company rather than an individual consumer. We will honor such requests in either case.
b) Any person who believes the Application holds information relating to them may request confirmation of what is held, correction of that information, or its deletion, by writing to the address in Section 12. We will respond within thirty (30) days.
c) Deletion is immediate and unconditional where no legal retention obligation applies. Where a record must be retained for tax or accounting purposes, we will state that fact, state the applicable period, and delete the record upon expiry of that period.
d) No third party holds a copy of information from the Application that PXLPOD Web is unable to reach.
e) Once established, the bank connection described in Section 5 may be revoked by PXLPOD Web at any time through Plaid, which terminates the Application’s access immediately.
11) Security Measures
a) All data is encrypted in transit using Transport Layer Security, and at rest by the managed database provider.
b) Multi-factor authentication is enabled on every system that stores or processes data described in this Policy, including the database platform, the hosting platform, the source code repository, and the Plaid dashboard.
c) The workstation used to administer the Application employs full-disk encryption and runs the current operating system release with automatic updates enabled.
d) Credentials are scoped to the minimum access required. The payment processor key is restricted and read-only; the customer relationship management token is read-only; no credential held by the Application permits writing to a source system.
e) Dependency vulnerability alerting and automated security patching are enabled on the Application’s source code repository.
f) Secrets are held in the hosting platform’s encrypted environment store and are not committed to source control.
g) PXLPOD Web maintains commercially reasonable safeguards but does not warrant absolute security.
12) Changes; Contact
a) Where this Policy is materially amended, the Effective Date stated in Section 1(d) will be updated. Because the Application has a single user, no notification list is maintained; the published version of this page is the current version.
b) Questions, requests, and complaints regarding this Policy or the information described in it should be directed to:
PXLPOD Media LLC
Attn: Christopher Foley
chris@pxlpod.co