WP Media Directories
Privacy
What this site collects, what it stores, and how to opt out.
Plain-language disclosure of the data flows on wpmediadirectories.com. Effective date shown below; substantive changes are noted at the top of this page.
Effective date: 2026-01-01.
Who we are
WP Media Directories is operated by the maintainer ofwpmediadirectories.com (“we”, “us”). For privacy questions, emailsupport@wpmediadirectories.com.
What this site does
This is a marketing site and a small customer portal. Visitors can browse product information, request a Stripe-hosted Checkout, and, after purchase, sign in to a portal to download the licensed plugin and manage their subscription. The plugin itself runs on a license holder's own WordPress site and is not covered by this page; see the plugin's privacy notice for what it does on a customer site.
Data we collect directly
- Order data. When you buy a license, Stripe collects your email, billing address, payment method, and the plan you chose. We receive the customer record and the subscription record from Stripe and store them on our database so we can issue and reissue License Keys and serve the portal.
- Portal login. To sign in, you enter the email used at checkout. We send a one-time login link that expires after 15 minutes and can only be used once. A long-lived session cookie keeps you signed in for up to about 13 months; signing out clears it immediately.
- Support emails. If you emailsupport@wpmediadirectories.com, we keep the message thread to answer your question.
Cookies and local storage
We use a small number of cookies and a local-storage entry. Functional cookies are set regardless of consent; analytics and marketing cookies are only set after you click Accept on the consent banner, or via a hard opt-in we honor.
- Functional. The portal session cookie (
wpmd_session) and the consent preference cookie (wpmd_consent). Without these the portal and consent banner do not work. - Analytics (with consent). Google Analytics 4 (
_ga,_ga_*) and Microsoft Clarity (_clck,_clsk,SM) record page views, scroll depth, and (for Clarity) anonymous session replays. We mask the magic-link email input and any element withdata-clarity-maskin Clarity's dashboard configuration. - Marketing (with consent). Ahrefs Web Analytics records page views and referrer data on
analytics.ahrefs.com. - Local storage.
wpmd_consentremembers your banner choice;wpmd_checkout_refstores a one-time correlation id so we can attribute a successful Stripe Checkout back to the marketing visit that started it.
How we use analytics data
We use Google Analytics, Microsoft Clarity, and Ahrefs to understand which pages people visit, where they drop off in the buying flow, and whether the checkout step works on different browsers. This data is tied to a pseudonymous client id, not to your name. We do not sell it, and we do not use it to build advertising profiles.
We use Google Consent Mode v2. If you decline, no analytics cookies are set and no marketing cookies are set; if you accept, you can revoke consent at any time by clearing site data in your browser (the banner will reappear on your next visit).
Stripe
Checkout and recurring billing are handled by Stripe. Stripe's servers may set their own cookies and read your IP address to process payment, prevent fraud, and comply with tax and financial regulations. Stripe's privacy practices are described atstripe.com/privacy. We receive the customer record and the subscription record from Stripe and store them in our database so we can serve the portal.
Service providers
- Stripe: payment processing, subscription billing, fraud prevention.
- Resend: transactional email (magic-link login).
- Google (Analytics 4): page-view measurement, ecommerce funnel.
- Microsoft (Clarity): anonymous session replays and heatmaps.
- Ahrefs: page-view and referrer measurement.
- Cloudflare: CDN and DDoS protection (sets performance cookies).
How long we keep data
- Order and subscription records: kept while your license is active and for a reasonable period afterward so we can reissue License Keys, issue refunds, and meet tax and accounting obligations.
- License Keys and seat activations: kept until you deactivate them or delete your account.
- Magic-link tokens: expire 15 minutes after issue and cannot be reused.
- Portal session cookie: lasts up to about 13 months from your last sign-in and is cleared when you sign out.
- Support emails: kept for as long as we need them to support you and for a reasonable period afterward.
Specific retention periods for records we are legally required to keep (e.g. tax invoices) follow the law of the relevant jurisdiction rather than this page.
Your rights
You can ask us at any time to:
- Provide a copy of the personal data we hold about you.
- Correct inaccurate data.
- Delete your account, your License Keys, and your order history, subject to the records we are legally required to keep.
- Restrict or object to processing of your data.
Email support@wpmediadirectories.com. We respond within 30 days.
Children
This site is not directed at children under 16 and we do not knowingly collect data from them.
Changes to this page
We update this page when we add or remove a data flow. The effective date at the top of the page changes when we do.