Privacy
Privacy built into the workflow.
Version 2026-08-20.1 · Last updated August 20, 2026
CSV files
CPSC FileCheck processes the CSV you select in your browser. The application does not transmit CSV contents, filenames, rows, product fields, corrections, or corrected-file bytes to CPSC FileCheck application servers. Your original CSV and corrected CSV stay on your device; the corrected download is created locally in your browser.
If you choose a paid export, the current file data is kept only in this browser’s session storage so the file can be restored after Stripe Checkout in the same browser session. It is not sent to FileCheck’s servers, retained as a FileCheck customer-file archive, or available to FileCheck staff through the application.
Purchase and delivery evidence
For paid exports, we retain a minimum non-file record: opaque order ID, checkout email, product/mode, amount and currency, Stripe session or payment identifier, policy versions and consent time, payment verification, processing/unlock/download timestamps, support or refund status, and non-content cryptographic hashes of the exact source and delivered output. These hashes help bind a paid export to the original CSV during the 14-day restore period. They are not copies of your CSV, cannot be used to reconstruct it, and do not prove your data is correct. These records are retained for up to 18 months.
Information we collect
The current version does not require an account and does not ask you to enter product certificate data or trade-party data into a CPSC FileCheck form. Payment details are entered directly into Stripe Checkout, not into FileCheck. Our hosting provider may process ordinary technical request information needed to deliver the website, such as network and browser information.
Analytics and advertising measurement
We use a Google Ads measurement tag to understand website visits and whether advertising is effective. Google may receive ordinary device, browser, and network information when the tag loads. We have disabled Google Ads personalization signals. The tag does not receive CSV contents, and we do not send CSV contents to Google.
We also keep a limited, anonymous operational funnel log: event name and timestamp only (for example, “file accepted” or “corrected CSV downloaded”). It does not include CSV contents, filenames, product data, field values, payment details, or customer accounts. The log is retained for up to 90 days and is available only to the authorized FileCheck operator through a protected internal view.
Third parties
Stripe processes paid-export payments under its own privacy notice. We send Stripe only opaque order and export identifiers needed to connect the payment with the current browser session; no CSV contents. Google processes advertising-measurement information under its own privacy notice. Our hosting provider processes the technical requests needed to deliver the site and its limited operational records.
Your choices
You can stop using the application at any time. Because the workflow does not retain customer file contents, there is no customer file archive for us to delete. See Support if a paid result is lost or you need purchase help.