Privacy Policy
Last Updated: 2026 July 10
This Privacy Policy describes how Entryly Solutions LLC ("Entryly," "we," "us," or "our") collects, uses, discloses, and protects personal information when you visit entryly.net (the "Site") or use our services. By using the Site, you agree to the practices described in this Policy.
1. Who We Are
Entryly Solutions LLC is a US LLC formation and business services company registered in the United States. We act as a Data Controller for the personal data you provide to us in connection with your account and service purchases. Where we process data on behalf of third-party service integrations (e.g., Stripe, state government portals), we act as a Data Processor under the instructions of those controllers.
Our registered address is: Entryly Solutions LLC, United States. For all privacy inquiries, contact support@entryly.net.
2. Information We Collect
2.1 Information You Provide Directly
- Account Information: Name, email address, password (stored hashed)
- Order & Formation Information: Business name, LLC member names, registered agent preferences, state of formation, EIN application details
- Identity Verification: Government-issued ID documents, passport scans, or other KYC/AML documentation where required
- Payment Information: Billing address, card details (processed directly by Stripe — we never store raw card numbers), bank transfer details for manual payments
- Communications: Support tickets, emails, and live chat messages you send to us
- Referral Program: Referral codes, referral relationships, and reward redemption activity
2.2 Information Collected Automatically
- Device & Log Data: IP address, browser type and version, operating system, device identifiers, time zone
- Usage Data: Pages visited, click-through paths, feature interactions, session duration, referrer URL
- Cookies & Similar Technologies: Session cookies (required for authentication), preference cookies, analytics cookies (see Section 6)
2.3 Information from Third Parties
- Authentication Providers: If you sign in via Google OAuth, we receive your name, email, and profile picture from Google
- Payment Processors: Stripe provides us with transaction confirmations, payment status, and limited billing details
- Government Portals: State filing confirmation numbers and EIN confirmation from the IRS
3. How We Use Your Information
We process your personal data for the following purposes and on the following legal bases:
| Purpose | Legal Basis |
|---|---|
| Fulfilling your service order (LLC filing, EIN, Stripe onboarding) | Contract necessity |
| Processing payments and preventing fraud | Contract necessity / Legitimate interests |
| KYC & AML compliance screening | Legal obligation |
| Sending order updates and application status notifications | Contract necessity |
| Responding to support requests | Contract necessity / Legitimate interests |
| Sending product updates, new features, or promotional communications | Consent (you may opt out at any time) |
| Improving our platform, debugging, and analytics | Legitimate interests |
| Compliance with legal obligations (tax records, law enforcement requests) | Legal obligation |
| Managing the referral program and reward disbursement | Contract necessity |
4. How We Share Your Information
We do not sell your personal data. We share information only in the following circumstances:
- Government Agencies: We submit your business and personal information to state filing offices (Secretary of State), the IRS, and other regulatory bodies strictly as required to fulfill your service request.
- Payment Processors: Our payment processors receive your billing and identity information to process payments securely. We never store raw payment card information. Payment data handling is governed by the respective processor's privacy policy.
- Third-Party Service Providers: We use the following sub-processors who may access personal data to perform services on our behalf:
- Resend — transactional email delivery
- Vercel — cloud hosting and serverless compute
- Neon / PostgreSQL — database hosting
- Google (OAuth, reCAPTCHA) — authentication and bot protection
- Sentry — error monitoring (anonymized where possible)
- Legal Requirements: We may disclose your information if required by law, court order, subpoena, or other governmental authority, or if we believe in good faith that such disclosure is necessary to protect our rights, prevent fraud, or ensure user safety.
- Business Transfers: In the event of a merger, acquisition, or sale of assets, your data may be transferred to the acquiring entity, subject to the same privacy protections.
5. Data Retention
We retain your personal data for as long as necessary to fulfill the purposes outlined in this policy:
- Account Data: Retained for the duration of your account plus 3 years after account closure, unless you request earlier deletion.
- Transaction & Financial Records: Retained for a minimum of 7 years to comply with US tax and accounting regulations.
- KYC/AML Records: Retained for 5 years from the date of transaction, in compliance with applicable anti-money laundering laws.
- Support Communications: Retained for 2 years from the date of last contact.
- Server Logs: Retained for 90 days for security and debugging purposes.
Upon expiration of the applicable retention period, data is securely deleted or anonymized. You may request early deletion as described in Section 8 below, subject to our legal retention obligations.
6. Cookies & Tracking
We use the following types of cookies:
- Essential Cookies: Required for authentication, session management, and security (e.g., NextAuth session token, CSRF token). These cannot be disabled.
- Preference Cookies: Store your display preferences (e.g., language, theme). These persist for 30 days.
- Analytics Cookies: Aggregate, anonymized data on site usage to help us improve the platform. We use Vercel Analytics, which does not fingerprint individual users.
- Referral Cookies: A short-lived cookie (
entryly_referred_by) that stores a referral code for up to 30 days to credit the referring user upon your signup.
You can manage cookie preferences through your browser settings. Note that disabling essential cookies will prevent you from logging in to the platform.
7. International Data Transfers
Entryly is based in the United States. If you access our services from outside the United States, your information will be transferred to and processed in the US, where data protection laws may differ from those in your jurisdiction.
For users in the European Economic Area (EEA), United Kingdom, or Switzerland, we rely on Standard Contractual Clauses (SCCs) approved by the European Commission, and the adequacy decisions applicable to our sub-processors, to lawfully transfer your data to the United States.
8. Your Privacy Rights
Depending on your jurisdiction, you may have the following rights regarding your personal data:
- Right of Access: Request a copy of the personal data we hold about you.
- Right of Rectification: Request correction of inaccurate or incomplete data.
- Right to Erasure ("Right to be Forgotten"): Request deletion of your data, subject to our legal retention obligations.
- Right to Restriction: Request that we limit processing of your data in certain circumstances.
- Right to Data Portability: Receive your data in a structured, machine-readable format.
- Right to Object: Object to processing based on legitimate interests (including direct marketing).
- Right to Withdraw Consent: Where processing is based on consent, you may withdraw at any time without affecting prior processing.
- CCPA Rights (California Residents): You have the right to know what personal data is collected, the right to opt out of the sale of personal information (we do not sell personal data), and the right to non-discrimination for exercising your rights.
To exercise any of these rights, please email support@entryly.net with the subject line "Privacy Request." We will respond within 30 days. We may require identity verification before processing your request.
9. Data Security
We implement industry-standard technical and organizational security measures to protect your personal data:
- All data is encrypted in transit using TLS 1.2/1.3
- Database data is encrypted at rest
- Passwords are hashed using bcrypt — we never store plaintext passwords
- Payment card data is handled exclusively by Stripe — we are PCI-compliant by delegation
- Access to production systems is restricted to authorized personnel only, with MFA enforced
- Security headers (HSTS, CSP, X-Frame-Options) are enforced on all responses
Despite these measures, no system is completely secure. In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify you and applicable authorities as required by law.
10. Children's Privacy
Our services are not directed to individuals under 18 years of age. We do not knowingly collect personal data from minors. If we become aware that we have collected data from a person under 18, we will take steps to delete it promptly. If you believe a minor has submitted information to us, contact us at support@entryly.net.
11. Changes to This Policy
We may update this Privacy Policy periodically. When we make material changes, we will update the "Last Updated" date at the top of this page and, where required by law, notify you by email or prominent notice on the Site. Your continued use of our services after changes are posted constitutes your acceptance of the updated policy.
12. Contact & Complaints
For privacy-related inquiries, requests, or complaints, contact us at:
If you are located in the EEA and are not satisfied with our response, you have the right to lodge a complaint with your local data protection supervisory authority.