Effective Date: March 24, 2025
Table of Contents
- Our Commitment to Privacy
- How and Why We Obtain Personal Information
- How We Protect Your Information
- How We Share Information with Third Parties
- Digital Privacy & Data Security
- Data Retention & Destruction Policies
- Payment Integration & Donor Data Processing
- Client Responsibilities for Data Protection
- Compliance & Hosting Infrastructure
- Fraud Prevention & Transaction Security
- Fundraising & Donor Compliance
- GDPR Compliance for European Clients
- Additional Information
- Terms & Conditions
1. Our Commitment to Privacy
AidForGood is committed to safeguarding the privacy and security of donor data and financial transactions. We facilitate real-time payment processing, donor data integration, and CRM synchronization, ensuring secure and compliant operations for nonprofit organizations.
We do not sell personal data and only process donor information to facilitate payment transactions and analytics.
2. How and Why We Obtain Personal Information
AidForGood collects donor data strictly for payment integration and CRM synchronization, ensuring seamless transactions and donor engagement.
What We Collect:
- Personal Identifiers: Name, email, mailing address, phone number
- Financial Data: Transaction details, donation amount, payment method
- Authentication & Security Data: Login credentials for donor access, one-time passcodes (OTP)
- CRM Integration Data: Donor engagement history, giving trends, and segmentation
How We Use the Data:
- Facilitate and process secure donations through PCI DSS-compliant gateways
- Sync donor transactions to nonprofit CRM systems in real time
- Ensure donor authentication and fraud prevention
3. How We Protect Your Information
AidForGood implements multi-layer security protocols, including:
- PCI DSS Level 1 compliance for all payment processing
- AES-256 encryption for donor data in transit and at rest
- Two-factor authentication (2FA) and OTP login security
- Real-time fraud monitoring for suspicious transactions
4. How We Share Information with Third Parties
AidForGood does not sell donor information. However, we may share data with trusted service providers solely for:
- Payment Processing: Transactions via PCI DSS-certified payment gateways
- CRM Synchronization: Secure API-based data integration with nonprofit CRM systems
- Fraud Prevention: Sharing suspicious transaction patterns with security vendors
๐ PCI DSS Compliance Information
5. Digital Privacy & Data Security
AidForGood uses essential tracking technologies for:
- One-time passcode (OTP) authentication
- Seamless donor login across multiple nonprofit organizations
- Session security logs to prevent unauthorized access
We do not use cookies for third-party marketing or tracking.
6. Data Retention & Destruction Policies
Retention Periods:
- Transaction Data: Retained for 7 years per financial compliance laws
- Donor Profiles: Retained until donor requests deletion or service termination
- CRM Logs: Retained for active client services only
Data Destruction Policy:
Upon service termination or client request, AidForGood permanently deletes donor data from active systems and removes any associated CRM logs, subject to legal and regulatory retention requirements.
7. Payment Integration & Donor Data Processing
AidForGood is not a payment processor but a payment integratorโwe do not store payment credentials but transmit donor transactions securely to third-party processors like Stripe, PayPal, and Authorize.net.
Key Payment Features:
- Real-time donation processing & CRM sync
- Encrypted donor data transmission
- Seamless multi-ministry giving under unified login
๐ AidForGood Payment Integrations
8. Client Responsibilities for Data Protection
Clients must:
- Ensure all donor records comply with PCI DSS and GDPR
- Maintain API security for donor data synchronization
- Monitor and enforce proper user authentication policies
9. Compliance & Hosting Infrastructure
AidForGood operates on Liquid Web, ensuring:
- SOC 2 Type 2 & PCI DSS-compliant infrastructure
- Redundant server backups & disaster recovery
๐ Liquid Web Security & Compliance
10. Fraud Prevention & Transaction Security
To protect donor funds, AidForGood employs:
- AI-driven fraud detection for anomalous transactions
- Multi-factor authentication (MFA) for donor logins
- Behavioral analytics to flag suspicious patterns
๐ Fraud Prevention Guidelines
11. Fundraising & Donor Compliance
AidForGood ensures compliance with:
- GDPR & PCI DSS for donor transactions
- IRS guidelines for tax-deductible donations
- Nonprofit best practices for donor engagement
๐ Nonprofit Data Privacy Standards
12. GDPR Compliance for European Clients
AidForGood adheres to General Data Protection Regulation (GDPR – EU 2016/679) by:
- Providing donors with opt-in consent for transaction processing
- Offering data portability & right-to-be-forgotten requests
- Ensuring encrypted cross-border data transfers
๐ GDPR Compliance Information
13. Additional Information
Clients may request a full copy of the Privacy Policy in PDF format.
๐ Download pdf version of AidforGood Privacy Policy
14. Terms & Conditions
By using AidForGoodโs payment integration services, nonprofits and donors agree to:
- Compliance with PCI DSS & GDPR guidelines
- Use of essential security features for authentication
- Responsible handling of donor payment records