FUTURE PROOF MARKETER

Privacy Policy

Privacy policy.

Last updated: 11 September 2026

The short version: we keep your e-mail address if you ask us to send you something, Stripe handles your payment so we never see your card, and analytics and ad tracking stay off until you accept cookies. Every address we hold can be removed with one e-mail. The details follow.

Who is responsible

The controller for personal data on futureproofmarketer.com is Universal Canvas, trading as Future Proof Marketer, registered in the Netherlands under KVK number 92815111. Questions about this policy or your data go to hi@futureproofmarketer.com.

What we collect, and why

Newsletter and free downloads. When you sign up for the newsletter or request a free download (the stack guide, prompt library, starter vault, toolbox, course waitlist), we store your e-mail address, your first name if you gave one, which download you asked for, and the date. We use it to send the download, a short welcome series, and the newsletter. Legal basis: your consent. Every e-mail carries a one-click unsubscribe, and unsubscribing takes effect immediately.

Purchases. When you buy a digital product, Stripe collects your name, e-mail address, billing country and payment details on its own checkout page. We never receive your card number. Stripe passes us your name, e-mail address, the product and the amount so we can deliver the files and keep proper accounts. Legal basis: performing the contract with you, and our legal obligation to keep financial records. Your download links contain your e-mail address so the files can only be opened by the buyer.

Contact form. A message through the contact page is relayed to our mailbox with your name and e-mail address so we can reply. Legal basis: our legitimate interest in answering you. We keep the thread in our mailbox for as long as the conversation is useful.

Analytics and advertising. With your consent we run four tools through Google Tag Manager. Google Analytics 4 records pages visited, time on page, rough location, device and browser, and which link brought you here; Funnelytics records the order you move through pages and where you came from. Together they show us which reviews help and which flop. Google Ads and the LinkedIn Insight Tag let us show our ads on Google and LinkedIn to people who have visited the site, and measure whether those ads work. LinkedIn receives the page address, referrer, IP address, browser details and time of each visit. Until you click "Accept" in the cookie banner, Funnelytics and LinkedIn don't load at all, and the Google tags run in consent-denied mode and set no cookies. Legal basis: your consent, which you can change at any time through "Cookie settings" in the footer.

We also use Vercel Analytics and Speed Insights, which measure page views and load times without cookies and without identifying you. Legal basis: our legitimate interest in keeping the site fast.

Server logs. Our hosting provider keeps short-lived technical logs (IP address, request, time) to run and secure the site. Legal basis: legitimate interest in security.

Cookies and local storage

We keep this list short on purpose.

  • fpm-consent (local storage): remembers whether you accepted or declined analytics and advertising cookies. Kept until you clear it or change your choice.
  • fpm-mode (local storage): remembers light or dark mode.
  • A signup-popup record (local storage): remembers that you dismissed the download popup, for 30 days, or that you signed up, so it doesn't nag.
  • Google Analytics and Google Ads cookies (_ga, _gid, _gcl_* and similar): only after you accept. Lifetime up to two years. Google's own policy explains their use.
  • Funnelytics (_fs cookie and _fs local storage): an ID that links your page views into one journey, only after you accept. Funnelytics sets it to last until 2038; some browsers, such as Chrome, cap it at 400 days.
  • LinkedIn cookies: set by LinkedIn on its own domain, only after you accept, so LinkedIn can recognize its members for ads and measurement. LinkedIn's cookie table lists them.
  • Stripe cookies: set by Stripe on its checkout page, for fraud prevention. Stripe's privacy policy covers these.

Affiliate links leave our site and land on a partner's page, which may set its own cookie to credit the referral. That happens on their site, under their policy. Our affiliate policy explains how those links work.

You can delete all of this through your browser at any time. The site works the same with everything declined.

Who we share data with

We don't sell or rent personal data, and we don't share it with anyone except the services we need to run the site:

  • Resend (e-mail delivery, EU data region) holds the newsletter list and sends every e-mail, including purchase deliveries and contact-form relays.
  • Stripe (payments) processes your payment and holds the transaction record.
  • Google (analytics, ads measurement and remarketing) receives analytics and advertising data after you consent.
  • Funnelytics (visitor journey analytics) receives analytics data after you consent.
  • LinkedIn (advertising) receives visit data from the LinkedIn Insight Tag after you consent.
  • Vercel (hosting) serves the site and keeps the technical logs.

Stripe, Google and Vercel are based in the United States; transfers to them rest on the EU-US Data Privacy Framework and the European Commission's standard contractual clauses. Funnelytics is based in Canada and stores tracking data there, under standard contractual clauses. For visitors in the EU, LinkedIn data goes to LinkedIn Ireland Unlimited Company, which may pass it to LinkedIn Corporation in the United States under its own safeguards. We may also disclose data when the law requires it.

How long we keep it

  • Newsletter and download signups: until you unsubscribe or ask us to delete you. Addresses that bounce or stay unsubscribed are removed periodically.
  • Purchase records: seven years, as Dutch tax law requires (Article 2:10 and 3:15i of the Dutch Civil Code).
  • Contact-form messages: as long as the conversation is live, then deleted from the mailbox in periodic clean-ups.
  • Analytics data: Google Analytics retains event data for 14 months.
  • Funnelytics journey data: kept for our plan's retention period, and deleted or anonymized within 90 days if our account closes.
  • LinkedIn Insight Tag data: LinkedIn removes direct identifiers within seven days and deletes the rest within 180 days.

Your rights

Under the GDPR you can ask us at any time to see the data we hold about you, correct it, delete it, restrict or object to how we use it, or hand it over in a portable format. Where we rely on consent you can withdraw it without affecting anything done before. E-mail hi@futureproofmarketer.com from the address in question and we'll act within a month, usually much faster. We may ask a question to confirm it's you, but we won't ask for a copy of your ID.

If you feel we've handled your data badly and we can't put it right, you can complain to the Dutch Data Protection Authority (Autoriteit Persoonsgegevens) or the supervisory authority in your own country.

Security

The site is served over HTTPS only. Download and unsubscribe links are signed so they can't be forged or guessed, download links expire after 30 days, and access to the services above is protected by two-factor authentication. No system is perfectly secure, so if you notice anything that looks wrong, please tell us at hi@futureproofmarketer.com.

Children

The site is for people running a business or a marketing job. We don't knowingly collect data from anyone under 16. If you think we have, e-mail us and we'll delete it.

Changes

When we change this policy we update the date at the top. Material changes to how we use e-mail addresses are announced in the newsletter first.