Privacy Policy
This Policy explains how #Dobro, LLC handles personal information through hashtagdobro.com. It is written to describe what the Site actually does today and to provide a durable framework for applicable privacy rights.
> OPERATOR / #DOBRO, LLC
> JURISDICTION / UNITED STATES
> BASE / NEBRASKA
> STATUS / PUBLIC
Who this Policy covers
This Privacy Policy applies to personal information processed by #Dobro, LLC(“#Dobro,” “we,” “us,” or “our”) through hashtagdobro.com and the forms and public pages that link to this Policy (the “Site”).
It does not govern personal information processed under a separate customer, pilot, employment, vendor, product, or other written agreement where that agreement includes different privacy terms. Future digital products may have product-specific privacy notices because their data flows can differ materially from this Site.
Personal information we collect
Information you choose to provide
When you use the Start Here form, we may collect your name, company, email address, website, description of a workflow, problem, idea, or opportunity, previous attempts, desired outcome, timeline, budget stage, and any other information you include.
When you use the Legal / Privacy Request form, we may collect your request category, name, email address, company or organization, state or country, and the information you provide about the request.
Technical and operational data
When you access the Site, hosting and infrastructure systems may automatically process technical request information such as IP address, browser and device information, request URL, timestamps, HTTP headers, response status, security signals, and diagnostic logs. This information is used to deliver, secure, troubleshoot, and maintain the Site.
Information we do not ask you to submit
Do not submit passwords, authentication secrets, private keys, Social Security numbers, government identifiers, payment-card details, medical records, precise geolocation, biometric identifiers, export-controlled material, or other highly sensitive or regulated data through public Site forms unless a separate written agreement specifically authorizes and governs that transfer.
How we use personal information
We may use personal information to:
- receive, review, evaluate, and respond to inquiries or legal requests;
- determine whether a potential engagement or conversation is appropriate;
- operate, secure, troubleshoot, maintain, and improve the Site;
- detect abuse, fraud, malicious activity, or technical failure;
- maintain reasonable business records and document decisions;
- protect our rights, intellectual property, users, systems, and property;
- comply with law, legal process, regulatory requests, and enforceable obligations; and
- create aggregated or deidentified information that is not reasonably linkable to an individual.
We do not use information submitted through the public inquiry forms for decisions that produce legal or similarly significant effects concerning consumers. If a future product materially changes that practice, it will require a separate legal and privacy review.
AI and inquiry data
As of the Effective date, the public Site sends form submissions through our hosting environment and transactional email provider to a private business inbox. The Site does not automatically send the substance of those inquiries to a general-purpose AI model, use them to train a #Dobro model, or make automated eligibility decisions about the sender.
#Dobro may use AI tools internally in other business activities. If we later use AI to process Site inquiry content in a way that materially changes this Policy, we will update the Policy and implement any consent, contractual, or other safeguards required by applicable law.
How we disclose information
We may disclose personal information to the following categories of recipients:
- Service providers and processors. Providers that host, transmit, secure, or support the Site and our communications. Current categories include web hosting/runtime infrastructure, transactional email delivery, business email, and domain/DNS infrastructure.
- Professional advisers. Attorneys, accountants, insurers, auditors, consultants, and similar advisers when reasonably necessary.
- Authorities and legal recipients. Courts, regulators, law enforcement, or other parties when required by law or reasonably necessary to protect rights, safety, systems, or property.
- Business transactions. A potential or actual buyer, successor, investor, lender, or adviser in connection with financing, reorganization, merger, acquisition, sale of assets, bankruptcy, or similar transaction, subject to appropriate safeguards.
- At your direction. Recipients you authorize or direct us to involve.
Service providers may process information only as permitted by their contracts and applicable law. Their own independent activities, if any, are governed by their respective terms and policies.
No sale or targeted advertising
#Dobro does not currently sell personal data collected through the Site for monetary or other valuable consideration and does not currently process Site visitor data for targeted advertising based on activity across nonaffiliated websites or applications.
We also do not currently use third-party advertising pixels on the public Site. If that changes, we will update this Policy and the Cookie & Tracking Noticebefore or when the change is deployed, and we will provide consent or opt-out mechanisms where applicable law requires them.
Current Site infrastructure
The Site currently uses third-party infrastructure including Vercel for web hosting and runtime services, Resend for transactional email delivery, Google for business email receipt, and Cloudflare for domain/DNS infrastructure. These providers may process limited technical or message data necessary to provide their respective services.
Provider arrangements can change as the Site evolves. We evaluate material changes to data flow before deployment and update this Policy when the change materially affects the categories, purposes, or recipients described here.
Cookies and similar technologies
The public Site does not currently deploy advertising or analytics cookies. Interactive features such as the homepage cube operate in the browser without using localStorage, sessionStorage, or a persistent identifier to remember your interaction.
Hosting or security infrastructure may still process ordinary network request information necessary to deliver and protect the Site. For current details and future changes, see the Cookie & Tracking Notice.
Retention
We retain personal information only for as long as reasonably necessary for the purposes described in this Policy, including evaluating and responding to inquiries, maintaining appropriate business records, protecting legal rights, resolving disputes, maintaining security, and complying with legal obligations.
Retention depends on the nature of the information and the relationship. Provider logs, email records, backups, and legal records may have different retention periods. When information is no longer reasonably needed, we may delete, anonymize, or deidentify it, subject to technical, backup, legal-hold, and recordkeeping constraints.
Security
We use administrative, technical, and organizational measures appropriate to the nature of the Site and the information we process. Current measures include limited server-side handling of form destinations and email credentials, restricted environment variables, encrypted HTTPS transport, scoped service credentials, source-control separation from secrets, and minimization of information requested through public forms.
No method of transmission, storage, or security is perfect. We cannot guarantee absolute security. If you believe you have identified a vulnerability, use our Security & Responsible Disclosure Policy.
Privacy rights and requests
Depending on where you live and whether a particular privacy law applies to #Dobro or the processing at issue, you may have rights to request access, correction, deletion, a copy or portability of certain personal data, or to opt out of certain sale, targeted advertising, or profiling activities. Some rights are subject to exceptions, authentication, and scope limitations.
You may submit an applicable privacy request through our Legal / Privacy Request form. We may request information reasonably necessary to authenticate you and locate responsive information. We will not require you to create an account solely to make a request.
We respond within the period required by applicable law. If applicable law gives you a right to appeal a denial, submit a new Privacy request clearly marked “Appeal” and identify the earlier request. We will handle the appeal as required by applicable law.
We do not discriminate against individuals for exercising privacy rights granted by applicable law.
Nebraska privacy context
#Dobro is based in Nebraska. Nebraska’s Data Privacy Act includes consumer rights and controller obligations for covered businesses and also contains a small-business applicability rule. Whether a particular statutory requirement applies depends on the entity, processing, and circumstances at the relevant time.
Regardless of statutory coverage, this Policy states the practices we commit to for the public Site as of the Effective date. A privacy promise can create legal and operational obligations even when a specific comprehensive privacy statute does not otherwise apply.
Children
The Site is directed to businesses, founders, builders, professionals, and general adult audiences, not to children under 13. We do not knowingly collect personal information online from children under 13 through the Site. If we learn that a child under 13 provided personal information through the Site without appropriate authorization, we will take reasonable steps to delete it.
International visitors
#Dobro operates from the United States, and information submitted through the Site may be processed and stored in the United States or other locations where our service providers operate. Data-protection laws may differ from those in your country.
The public Site is not currently designed as a localized consumer service for every jurisdiction. A future product or service directed to users in a jurisdiction with additional requirements will receive a product- and market-specific legal review before launch.
Changes to this Policy
We may update this Policy as our Site, providers, data practices, products, or legal obligations change. The Effective date identifies the current version. If a change is material and applicable law requires additional notice or consent, we will provide it in the manner required by law.
Contact and requests
Submit privacy questions, applicable consumer-rights requests, or concerns about this Policy through our Legal / Privacy Request form. Do not include highly sensitive information unless we specifically request it through an appropriate secure channel.