Legal
This is the plain version. It says what we actually collect, what our tools actually record, who else touches it, and how to make any of it stop.
Last updated August 14, 2026
We use FlowGlance for analytics, and we have its deep capture setting switched on. That means it does not simply count page views. It records the sequence of a visit, including the text entered into forms on this site and the images uploaded through them.
We turned it on because it is the only reliable way to see where a restaurant owner gets stuck halfway through a form, and then fix it. We would rather say so at the top of the page than bury it in section nine. If you would rather not be recorded, choose Only what’s necessary in the cookie banner and nothing is recorded at all.
FrontCanvas is a small design studio in Michigan. We redesign websites for restaurants. We build a free concept first, email it to the restaurant, and only ask for money if they want it built for real. This policy covers frontcanvas.com, the concepts we send, and the email we send.
Our postal address is 3120 Oak Valley Dr, Ann Arbor, MI 48103. For anything in this policy, write to contact@frontcanvas.com. A person reads it.
Our host records the usual server log entries: IP address, browser and device type, which page you asked for, and when. That happens for every website on the internet and we use it to keep the site up and to spot abuse. If you accept analytics, we also collect what is described in the next section.
Before we write to a restaurant we gather what is publicly published about it: the business name, address, phone number, business email, opening hours, menu, photographs on its own site or listing, and the state of its current website. We use that to build the concept and to write an email that is actually about your restaurant. We also record whether that email was delivered, opened, and whether you clicked. There is no personal profile behind this — it is business information about a business.
Your email address, and the times you signed in. Sign-in works by emailing you a one-time code, so there is no password. We could not leak your password if we tried, because we never had one.
Your name, business name, business address, phone number, email, the content you send us — menu text, photographs, logo files — and a record of what you paid and when. Card details are entered on Stripe’s own page and are never seen or stored by us.
Whatever you chose to put in the message, plus any file you attached or uploaded. Note that form contents are also captured by our session recording, as described below.
FlowGlance is our analytics tool and it runs with deep capture enabled. Here is exactly what that means for you.
What it records: pages viewed, time on page, where you clicked and scrolled, the device and browser you used, the approximate city your IP resolves to, the text you type into forms on this site, and the images you upload through them.
What it cannot record: your card number, expiry, or security code — those are entered on Stripe’s page, not ours, and our analytics does not run there. There is no password on this site, so there is no password to capture.
One honest caveat: the sign-in code we email you is typed into a Clerk component that sits inside our page, so it can appear in a recording. The code is single-use and expires within minutes, which limits the damage, but you deserve to know rather than to assume.
Who sees recordings: only the people who run this studio. They are never sold, never shared with advertisers, and never used to build a profile of you across other websites.
How to switch it off: choose Only what’s necessary in the cookie banner. Your choice is stored on your own device and we stop recording. If your browser sends a Global Privacy Control signal, we treat that as a refusal automatically and never show you the banner at all.
We keep this short because our list is short.
You can change your mind at any time by clearing this site’s data in your browser settings, which brings the banner back.
We do not build our own database software or payment system, so a handful of companies process data on our behalf. This is the complete list. Each one is bound by its own agreement with us, and each publishes its own privacy policy.
Handles logging in. We use emailed one-time codes only, so there is no password to store and we never see one. Clerk holds your email address and the times you signed in.
Their privacy policyTakes payment. Card numbers are typed on Stripe’s own hosted page and never touch our servers. We see your name, billing email, the last four digits, and whether the charge worked.
Their privacy policyThe Postgres database where everything about your project lives: contact details, the concept we built, our notes, and the status of any order.
Their privacy policyStores photographs and screenshots — yours and ours — used in concepts and in finished sites.
Their privacy policyServes this website. Keeps short-lived server logs containing IP address, browser type, and the page requested.
Their privacy policyRecords page views, clicks, and the shape of a visit. Because deep capture is switched on, it also records text typed into forms on this site and images uploaded through them. See the section above.
All of these companies are based in the United States, and your information is stored and processed there. We do not sell personal information, we do not trade it, and we do not share it for anyone’s advertising.
We send business email to restaurants that never asked to hear from us. That is worth being straight about.
Unsubscribe requests are actioned within two business days, and always inside the ten business days that US law allows. After that we keep your address on a do-not-contact list — and nothing else — so that we do not accidentally write to you again a year from now. If you would also like the concept we built deleted, say so in the same message and it goes. You can unsubscribe from any email’s link, from the unsubscribe page, or by writing to contact@frontcanvas.com.
Nothing is kept forever out of laziness. These are the periods we work to.
You can ask us to do any of the following, and we will not ask which state or country you live in before we do it.
Write to contact@frontcanvas.com. We acknowledge within five business days and finish within thirty. There is no charge and no form to fill in. The only things we may have to keep are payment records the tax authorities require us to hold, and the do-not-contact entry that stops us writing to you again.
Everything travels over encrypted connections. Access to the database and to session recordings is limited to the people who run the studio. We store no passwords and no card numbers, because we deliberately never take them. We are a design studio, not a bank, so our real defence is keeping the number of places your information lives as small as possible.
If something does go wrong and your information is exposed, we will tell you what happened and what we did about it, without waiting to be asked.
This is a service for business owners. It is not directed at children, and we do not knowingly collect information from anyone under sixteen. If you believe a child has sent us something, write to us and we will delete it.
If we change how we handle information, we update this page and change the date at the top. If the change is significant — a new processor, a new kind of collection — we email active clients rather than relying on you to check.
Questions, requests, or complaints about anything on this page go to contact@frontcanvas.com, or by post to 3120 Oak Valley Dr, Ann Arbor, MI 48103.
Ask in one sentence. No form, no account, no explanation required.