Custom Donations

GDPR Compliance

How Custom Donations supports the General Data Protection Regulation.

The General Data Protection Regulation (GDPR) is a legal framework that sets guidelines for the collection and processing of personal information of individuals within the European Union (EU). GDPR came into effect across the EU on May 25, 2018.

If your organization is based in the EU or you process the personal data of individuals in the EU, then the GDPR affects you.

Enabling GDPR Consent on Your Forms

Custom Donations forms can easily be configured to gain consent so your constituents can opt-in to your email marketing. Follow these steps:

  1. Click on "GDPR and Email Consent" from your Account tab in the Custom Donations dashboard.
  2. Enable the GDPR option. This enables you to set the GDPR toggle on any giving form. When the GDPR option is not enabled, you will not see the toggles on the Giving Form page.
  3. Enabling the GDPR option for a giving form will present a checkbox on the Gift Review step so that the user can give their consent.
  4. Edit the GDPR Consent Label to set the text that appears with the checkbox.
  5. Additionally, you can add up to two links to your specific policies. These links will appear with the consent checkbox on your giving forms.

Email Opt-In Consent

If you want to add donors to your email list, you must first get consent. You can set what you want the opt-in checkbox to say as well as add a link to your relevant privacy policy.

Once you have enabled GDPR and/or set your Email Consent options, you can enable those options on each Giving Form where you want them to appear.

The options will appear on your giving form right before the payment button. That's it — any form can now gain consent.

What Data We Collect

Custom Donations collects personal information about users who conduct transactions through our forms. At a minimum, this includes your IP address and email address. Additional information, beyond IP and email address, is determined by the organization with whom you are conducting the transaction (our clients).

The information collected on behalf of our clients allows them to conduct and manage that transaction. The information is securely passed to our clients through the payment processor (Stripe).

Additionally, certain information may be passed to our clients' data processors if the client has opted to do so. Please refer to their policies for more detail. Links to this information should be available, when relevant, on our donation forms.

Where Your Data May Go

  • Mass email clients — only if you have given permission to join their email list. If you have not given consent, no information will be sent.
  • Their CRM database — where they store your donor record.

Personal information is encrypted and securely stored on our servers. Outside of passing your information to our clients and their data processors, we do not leverage or share your personal information. It is strictly used to manage your transaction or recurring payment.

Your Rights

  • At any time, you may request that your information be removed.
  • You may request a copy of the data we have on file at any time.
  • We do not store credit card numbers or financial data.

For our full privacy policy, see our Privacy Policy page. Questions? Contact us at help@customdonations.com.