Healerverse Inc.
Privacy Policy
g1fti.com — Effective Date: August 7, 2026 · Last Updated: August 7, 2026 · Includes Cookie Policy
I. Introduction
This Privacy Policy explains how Healerverse Inc., a Delaware corporation ("Healerverse," "we," "us," or "our"), collects, uses, shares, and protects information gathered through g1fti.com and related services (the "Platform"). This Policy also serves as our Cookie Policy and explains how we use cookies and similar tracking technologies. We respect your privacy and are committed to protecting the personal information you share with us.
This Privacy Policy applies to all Donors, Campaign Organizers, and other visitors to our Platform. By continuing to visit or use the Platform, you agree to the terms of this Privacy Policy. If you do not agree, please exit the Platform.
II. Definitions
- "Visitor" means a natural person who browses the Platform but has not registered an account.
- "Donor" means a natural person or organization that makes a Donation through the Platform.
- "Campaign Organizer" means a natural person or organization that creates or manages a fundraising Campaign on the Platform.
- "Content" means any information, images, video, or data uploaded by a Donor or Campaign Organizer to the Platform.
- "Personal Information" means information relating to an identified or identifiable individual collected via the Platform, which may include a User's full name, physical address, email address, IP address, or other identifier such as from a cookie. Personal Information does not include aggregated or anonymized data that can no longer reasonably identify or be linked to an individual.
- "Sensitive Personal Information" means data revealing racial or ethnic origin, government identification numbers, precise geolocation, or financial account information, as well as certain identity-verification data such as government-issued ID images collected for KYC purposes.
- "Platform" means the g1fti.com website and related applications and services.
- "You" or "Your" means a Visitor, Donor, or Campaign Organizer.
III. Information We Collect
Information You Provide Directly
- Account information: name, email address, phone number, and password, when you register as a Donor or Campaign Organizer.
- Campaign information: Campaign description, images, video, fundraising goal, updates, and beneficiary details, when you create a Campaign.
- Donation information: donation amount, optional message, and whether you choose to donate publicly, anonymously to the public, or fully anonymously.
- Identity verification (KYC) information: for Campaign Organizers, and where applicable Campaign beneficiaries, we collect full legal name, date of birth, residential address, a government-issued photo ID, taxpayer identification number (such as an SSN, EIN, or foreign equivalent), and, for organizations, formation documents, beneficial-ownership information, and authorized-signer verification. This verification is performed on our behalf by Didit, our identity-verification provider.
- Communications: messages you send us, including support requests, contact forms, newsletter sign-ups, and job applications.
Information Collected Automatically
- Device and usage data: IP address, approximate location, browser type and language, access times, referring or exit pages, internet service provider, date/time stamp, operating system, and system configuration.
- Analytics: we use Google Analytics to understand how the Platform is used, subject to the region-based consent rules described in Section IX below (in short: opt-in required in the EEA/UK/Switzerland, opt-out available everywhere else). You can learn about how Google Analytics collects and processes data, and how to opt out, at support.google.com/analytics/answer/7318509.
- Cookies and similar technologies, described in Section IX below.
Information From Third Parties
- Didit, our identity-verification vendor, which confirms or supplements KYC information for Campaign Organizers and beneficiaries, including for business/beneficial-ownership verification.
- Stripe Connect, our payment infrastructure provider, which shares limited transaction metadata (such as payment status and the last four digits of a card) with us; Stripe processes and stores full payment card details directly, not us.
- Publicly available sources and sanctions/watchlist databases, used for compliance screening.
IV. Why We Collect Your Information
- To Operate the Platform: to run g1fti.com effectively, process Donations, facilitate Campaign payouts, and support Your account.
- To Verify Identity and Prevent Fraud: to perform KYC checks through Didit, screen for sanctions and fraud, and monitor for anti-money-laundering compliance.
- For Marketing Purposes: if you've filled out a contact form, signed up for our newsletter, or created an account, we may send you marketing communications. You can opt out at any time using the unsubscribe link in any such email, or by emailing notify@g1fti.com.
- To Evaluate and Improve Customer Service: to ensure we're providing a high level of support and identify areas to improve.
- To Improve and Create New Products and Services: to improve the Platform or build new features and offerings.
- To Respond to Your Requests: if you've asked us a question or requested that we contact you.
- For Legal and Compliance Purposes: to comply with applicable law, including tax, KYC/AML, and charitable-solicitation regulations.
- For Auditing Purposes: to support internal and external audits of our business.
V. How Long We Store Your Personal Information
We store and maintain your Personal Information only for as long as necessary to fulfill the purpose it was collected for. If you maintain a Donor or Campaign Organizer account, we retain your account information for as long as your account remains active. KYC and transaction records are retained for the period required by applicable anti-money-laundering and recordkeeping laws, which commonly require retention of five years or more after an account closes or a transaction completes. Information collected for analytics purposes is retained only until it is aggregated into anonymous data that no longer identifies you, at which point the underlying Personal Information is deleted. Information collected for our newsletter is retained until you opt out.
VI. We Do Not Sell Your Personal Information
Healerverse does not sell your Personal Information to advertisers or any other third party, and never has. When you make a Donation, limited information (such as your name and public comment, unless you donate anonymously) may be visible to the Campaign Organizer and other Platform visitors, consistent with your chosen privacy setting for that Donation.
We may share your Personal Information internally within the Healerverse family of companies — including businesses that Healerverse Inc. wholly or partially owns — for internal operations, cross-platform account support, and internal marketing purposes. We do not sell this information to those affiliated companies, or to anyone else; sharing within the Healerverse family is for our own internal business purposes only, is never a data sale, and is always subject to the same standards of care described in this Policy.
No mobile opt-in information or SMS consent data is shared with any third party or affiliate for marketing or promotional purposes, under any circumstance.
VII. Who We Share Information With
Healerverse shares your Personal Information only when necessary, with our internal team and carefully selected service providers. Our service providers are bound by confidentiality and data-protection agreements that prohibit them from selling your information, using it outside the scope of the services they provide us, or contacting you independently of Healerverse.
- Stripe Connect — to process Donations, payouts, and transactions between Donors and Campaign Organizers.
- Didit — to perform identity verification (KYC) for Campaign Organizers and beneficiaries, including business and individual verification.
- IT and hosting service providers — for hosting, system management, backups, and maintenance of our infrastructure.
- Other Healerverse-affiliated companies (fully or partially owned) — for internal operations and internal marketing purposes, as described in Section VI.
- Our outsourced marketing team — bound by confidentiality obligations, for the operation of our own marketing (never third-party advertisers).
- Legal representatives, auditors, and accounting representatives — as needed for legal, audit, and financial purposes.
- Law enforcement, courts, regulators, and supervisory authorities — where required by law, subpoena, or legal process.
- A successor entity, in connection with a merger, acquisition, financing, or sale of assets.
VIII. How We Secure Your Personal Information
We take data security seriously. We use commercially reasonable safeguards, including firewalls, encryption in transit, access controls, and multi-factor authentication, to protect our systems and the data stored in them. Payment card data is handled by Stripe Connect, our PCI-DSS-compliant payment infrastructure provider; we do not store full card numbers ourselves. We rely on you to do your part as well — by using a strong, unique password and keeping it confidential. No system is completely secure, and despite our best efforts we cannot guarantee absolute security. If a security incident affects your Personal Information, we will notify you as required by applicable data-breach notification laws.
IX. Cookies and Similar Technologies
What Cookies Are
A cookie is a small text file stored on your device for record-keeping purposes. Cookies may be session cookies, which expire when you close your browser, or persistent cookies, which remain on your device for a set period. We also use similar technologies such as pixels and local storage.
What We Currently Use
The Platform always sets strictly necessary cookies — the ones required to keep you logged in and to complete a secure Donation checkout. These cannot be disabled. We also use Google Analytics to understand how the Platform is used. Where the law requires your prior opt-in before non-essential cookies are set — including the European Economic Area, the United Kingdom, and Switzerland — Google Analytics does not load until you accept the "Analytics" category below. Everywhere else, it loads by default, and you can opt out at any time through the same preference panel. We honor a Global Privacy Control opt-out signal from your browser everywhere, regardless of region. We do not currently use functional or advertising cookies. If that changes, we will update this section accordingly.
Categories of Cookies
So your choices below are meaningful as our use of cookies grows, we define every category up front:
- Strictly necessary cookies: required for the Platform to function, including maintaining your login session and enabling secure Donation checkout. These cannot be disabled.
- Performance and analytics cookies: Google Analytics, used to understand how the Platform is used so we can improve it. Only loads if you accept this category.
- Functional cookies: would remember your preferences, such as language or region. Not currently in use.
- Advertising cookies: would help us understand engagement with our own marketing (never third-party data sales). Not currently in use.
Third-Party Cookies
Stripe Connect and Didit may set their own cookies as part of processing your Donation or completing identity verification, governed by their respective privacy policies. These are outside the preference panel described below, since they're required to complete a Donation or identity verification you've already chosen to start. Google Analytics, described above, is controlled by the preference panel and only sets cookies once you accept it.
Your Cookie Choices
- Cookie preferences panel: click "Cookie preferences" in the site footer at any time to see and change your choices for each non-essential category. If you're in a region where opt-in consent is required (see above), this panel appears automatically on your first visit, before any non-essential cookie is set.
- Browser controls: most browsers let you block or delete cookies through their settings; note that blocking strictly necessary cookies may prevent parts of the Platform, including Donation checkout, from working.
- Global Privacy Control: if your browser sends the Global Privacy Control signal, we treat it as a standing request to reject non-essential cookies and reflect that in the preferences panel automatically.
- Do Not Track: some browsers offer a "Do Not Track" signal. Because there is no common industry standard for responding to this signal, the Platform does not currently respond to it separately from Global Privacy Control.
X. California Residents' Legal Disclosures
Categories of Personal Information we collect, and their sources:
- Identifiers (name, address, IP address, email, phone number, government ID number) — provided directly by you, or collected automatically on the Platform.
- Financial and transaction information (donation amounts, limited payment metadata) — provided directly by you, or received from Stripe Connect.
- Identity-verification information (government ID images, taxpayer ID, business formation documents) — provided directly by you, or received from Didit.
- Internet activity (browsing history on the Platform, referring pages) — collected automatically on the Platform, or from Google Analytics if you've accepted the Analytics cookie category.
- Geolocation data (approximate location derived from IP address) — collected automatically on the Platform.
- Professional or organizational information (for Campaign Organizer businesses) — provided directly by you or received from Didit.
Sale or sharing of information belonging to persons under the age of 18: We do not knowingly collect, sell, or share the Personal Information of persons under 18. The Platform is not directed to, and may not be used by, individuals under 18.
We do not sell your Personal Information, as described in Section VI. We do share certain categories of Personal Information with the third parties described in Section VII, for the business purposes described below.
Categories of business purposes for which we share information:
- Auditing — with our third-party vendors and our own auditors, related to an audit of our business.
- Service Improvement — with our third-party vendors and service providers, to improve our services, build new features, and identify and fix errors.
- Service Delivery — with our third-party vendors (such as Stripe Connect and Didit) so they can perform their services for us, under written contracts.
- Security and Legal Compliance — with law enforcement or other parties pursuant to a valid legal obligation, or with vendors to detect and prevent security incidents.
Your Rights Under California Law
- Right to Know: you, or your authorized agent, can request the specific pieces of Personal Information we've collected about you, and how we've collected, used, and shared it over the past 12 months.
- Right to Correct: you can ask us to correct inaccurate Personal Information we hold about you.
- Right to Delete: you can ask us to delete your Personal Information, subject to legal retention requirements such as KYC/AML recordkeeping.
- Right to Opt Out of Sale or Sharing: as noted above, we do not sell or share your Personal Information for cross-context behavioral advertising.
- Right to Limit Use of Sensitive Personal Information: you can ask us to limit our use of your sensitive Personal Information to what's necessary to provide the Platform.
- Right to Non-Discrimination: we will not discriminate against you for exercising any of these rights.
- Right to Notice: we will not collect new categories of Personal Information from you without notifying you first.
To exercise any of these rights, email us at notify@g1fti.com. We may need to verify your identity before fulfilling a request.
XI. European and UK Residents (GDPR)
If you are located in the European Economic Area or United Kingdom, we process your Personal Information on the basis of performance of a contract with you (e.g., processing a Donation), compliance with a legal obligation (e.g., KYC/AML checks), our legitimate interests (e.g., fraud prevention and Platform security), and, where required, your consent. In addition to the rights described above, you have the right to lodge a complaint with your local data protection authority.
XII. Children's Personal Information
The Platform is not directed to, and may not be used by, individuals under 18 years of age. We do not knowingly collect Personal Information from children. If we learn that we've collected Personal Information from someone under 18, we will take steps to delete it.
XIII. Third-Party Sites and Applications
The Platform may include links to third-party sites, including Campaign Organizers' own websites or social media pages. Although we choose our vendor partners carefully, we are not responsible for the privacy practices of third-party sites, including those linked from the Platform. You should review the privacy policy of any third-party site or application before sharing your Personal Information with it. Healerverse does not endorse or control any third-party websites or applications, and linking to them is not an endorsement.
XIV. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on the Platform with a new "Last Updated" date at the top of this Policy. We encourage you to review this Policy each time you visit the Platform.
XV. Contact Us
If you have questions or concerns about this Privacy Policy, or would like to exercise any of the rights described above, please email us at notify@g1fti.com.
XVI. Email and Newsletter Opt-Out
If you'd like to opt out of receiving our emails or newsletter after signing up, we'll be happy to remove you from our list immediately. Click the opt-out link at the bottom of any email from us, or email notify@g1fti.com.