Legal

Privacy Policy

Last updated: August 9, 2026

This Privacy Policy describes how Infinite Acquisitions (“Infinite Acquisitions,” “we,” “us,” or “our”) collects, uses, and discloses personal information when you visit https://infiniteacquisitions.io, use our member tools, contact us, or otherwise interact with our services (collectively, the “Services”).

This document is provided for transparency about our current product practices. It is not legal advice. If you need a formal assessment for your jurisdiction, consult qualified counsel.

1. Who we are

Infinite Acquisitions operates a private network and web application for entrepreneurs learning how to acquire and scale established companies. Contact for privacy requests: privacy@infiniteacquisitions.io. [Legal entity registered address — to be confirmed by client]

2. Information we collect

2.1 Information you provide

  • Contact and lead details — name, email, phone, and any message content you submit through our contact form.
  • Account details — identity data associated with your login (typically name, email, and authentication identifiers) when you create or use a member account.
  • Member activity you enter — deal-tracker progress, tool inputs you choose to save, checklist state, and similar content you store in member features.
  • Support communications — information you include when you email or otherwise contact us.

2.2 Information collected automatically

  • Technical and usage data — IP address, device/browser type, approximate location derived from IP (for security and, where used, privacy-notice presentation), timestamps, and pages or API routes requested.
  • Cookies and similar technologies — essential cookies for authentication and security, plus optional analytics or advertising technologies only if you allow them. See our Cookie Policy.

2.3 Information from third parties

  • Clerk — authentication and session management (including social sign-in such as Google when enabled).
  • Whop — membership checkout and subscription status. Payment card data is handled by Whop (and its payment processors), not stored as full card numbers on our servers.
  • Automation tools (e.g. Zapier) — contact submissions may be forwarded to workflows the business uses for follow-up.
  • Hosting and infrastructure — Vercel (frontend), our API host, and Neon Postgres process technical and application data as processors / service providers.

3. How we use information

  • Provide, secure, and improve the Services and member tools.
  • Create and manage accounts; enforce access and membership rules.
  • Respond to contact requests and operate the membership community.
  • Process membership entitlements signaled by Whop webhooks.
  • Monitor abuse, debug errors, and protect against fraud.
  • Comply with law and enforce our Terms of Use.
  • Measure site performance with analytics only when you have consented to analytics cookies (if analytics tools are configured).

4. Legal bases (EEA / UK / similar)

Where GDPR or UK GDPR applies, we rely on:

  • Contract — to provide accounts, member tools, and requested services.
  • Legitimate interests — security, fraud prevention, essential product improvement, and responding to business inquiries, balanced against your rights.
  • Consent — optional cookies/technologies and certain marketing communications where required.
  • Legal obligation — when we must retain or disclose information to comply with law.

5. How we share information

We share personal information with:

  • Service providers / processors that host or operate parts of the Services (including Clerk, Neon, Vercel, our API host, Zapier or similar automation, and email or support tools we enable).
  • Whop when you purchase or manage membership on their platform.
  • Professional advisors or authorities when required by law or to protect rights and safety.
  • Successors in connection with a merger, acquisition, or asset transfer, subject to appropriate safeguards.

We do not sell personal information for money. If we ever use cookies or pixels for cross-context behavioral advertising, that activity may be considered a “sale” or “sharing” under some U.S. state laws. You can opt out via cookie preferences, the reject control, or Global Privacy Control (GPC).

6. Cookies

Essential cookies are required for the site and signed-in product to function (including Clerk session cookies and our consent preference cookie). Optional categories default to off until you opt in. Details and a cookie list are in the Cookie Policy.

7. International transfers

We and our providers may process data in the United States and other countries. Where required, we rely on appropriate transfer mechanisms (such as Standard Contractual Clauses) offered by our providers, and on contractual and technical safeguards.

8. Retention

  • Contact leads — retained as needed for follow-up and legitimate business records, then deleted or anonymized on a reasonable schedule.
  • Account and member tool data — kept while your account is active and for a limited period afterward for security, disputes, and legal compliance.
  • Logs — kept for a short operational window unless needed longer for security investigations.
  • Consent records — stored in the consent cookie on your device (and any server-side records we add later) for the life of that preference or until superseded.

9. Security

We use administrative, technical, and organizational measures appropriate to our risk profile, including TLS in transit, authenticated APIs, least-privilege database roles, and access controls. No method of transmission or storage is completely secure.

10. Your rights

10.1 EEA, UK, and similar jurisdictions

Subject to law, you may have rights to access, rectify, erase, restrict, or port your personal data, to object to certain processing, and to withdraw consent. You may lodge a complaint with your local supervisory authority.

10.2 U.S. state privacy rights

Residents of California and certain other U.S. states may have rights to know, access, correct, delete, and obtain a portable copy of personal information, and to opt out of sale/sharing or targeted advertising. We honor GPC as an opt-out of sale/sharing for advertising cookies on this site. We will not discriminate against you for exercising privacy rights.

10.3 How to exercise rights

Email privacy@infiniteacquisitions.io with the subject line “Privacy Request.” We may need to verify your identity before fulfilling the request. Authorized agents may submit requests where law allows, with proof of authority.

11. Children

The Services are directed to adults. We do not knowingly collect personal information from children under 16 (or under 13 where that is the applicable standard). If you believe a child has provided information, contact us and we will take appropriate steps.

12. Third-party sites

The Services may link to third parties (including Whop checkout, social networks, and education resources). Their privacy practices are governed by their own policies.

13. Changes

We may update this Privacy Policy from time to time. We will post the revised version on this page and update the “Last updated” date. Material changes may also be highlighted in the product or via email where appropriate. A change to cookie categories may bump our consent version and re-prompt for preferences.

14. Contact

Privacy questions and requests: privacy@infiniteacquisitions.io.