FundLink Tech

Privacy Policy

This policy explains how FundLink Tech accesses, uses, stores, and shares information when you use our merchant funding platform — including Gmail data obtained through Google OAuth.

Effective September 3, 2026 Public page for Google OAuth verification

This Privacy Policy applies to the FundLink Tech web application (the “Service”), including organization settings, View Emails, application intake, underwriting, funding, and related portals. By using the Service, you agree to this policy. Capitalized terms used for Google APIs follow the Google API Services User Data Policy.

1. Who we are

FundLink Tech operates a business funding platform used by our team, organization administrators, brokers, and merchants. The Service supports merchant cash advance / future-receivables applications: collecting business and owner information, bank statements and other documents, underwriting, offers, contracts, disbursements, and ACH collections.

Questions: hello@mg.fundlinktech.com. Support: hello@mg.fundlinktech.com.

2. Information we collect

Account and organization data

Merchant application data

Usage data

3. Google account and Gmail data

Organization administrators may connect one shared Gmail inbox per organization from Organization Settings (“Organization Gmail (View Emails)”). Connecting uses Google OAuth. We request these scopes:

  • https://mail.google.com/ — mailbox access so the Service can read inbound application emails and attachments through Google’s mail interface (including IMAP-style access used to ingest files).
  • https://www.googleapis.com/auth/userinfo.email — the Google account email address, so we can show which inbox is connected and confirm the account.

We use that access only to:

We store Google OAuth access and refresh tokens, the connected email address, organization id, and token expiry in our database so staff of that organization can use the shared inbox. Disconnecting Gmail in Organization Settings revokes the token with Google (when possible) and deletes the local token record.

Other organization admins who are allowed to manage that organization can see View Emails for the connected inbox. We do not sell Gmail contents. We do not use Gmail contents to create advertising profiles.

4. Google API Services User Data Policy (Limited Use)

Limited Use commitment. FundLink Tech’s use of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

In particular, Gmail data obtained through Google OAuth is used only to provide or improve user-facing features that are prominent in the Service (View Emails and email-based application document intake). We do not:

This section is intended to satisfy Google’s restricted-scope verification requirements for Gmail access.

5. How we use information

6. How we share information

We share information only as needed to run the Service:

We do not sell personal information. We do not share Gmail data with data brokers or ad networks.

7. Storage, security, and retention

Application files, documents, and OAuth tokens are stored in our production systems (application database and private file storage). Access is limited to authenticated users of the relevant organization and to operators who need access to run the platform.

We retain application and funding records for as long as needed for underwriting, servicing, audits, and legal obligations. Synced email copies used for intake are kept while the organization uses View Emails and related processing. You may disconnect Gmail at any time; we then stop new mailbox access. Previously ingested documents that already belong to an application file remain part of that file unless deleted under your organization’s process.

8. Your choices

9. Your rights

Depending on where you live, you may have rights to access, correct, delete, or export personal information, or to object to certain processing. Send requests to hello@mg.fundlinktech.com. We may need to verify the request and may retain information where we have a legal or contractual duty to do so.

10. Children

The Service is for businesses and authorized staff. It is not directed to children under 13 (or 16 where applicable). We do not knowingly collect data from children.

11. Changes

We may update this policy. The “Effective” date at the top will change. Material changes to how we use Google user data will be reflected here before those changes take effect.

12. Contact

FundLink Tech
Privacy: hello@mg.fundlinktech.com
Support: hello@mg.fundlinktech.com

Related: Terms of Use.