Legal · Updated 1 October 2026
Privacy policy
This policy explains what information VisaRelay receives, why we need it, and the choices available to you.
Information we collect
Public alerts include an application number, email address, status, and registration time. We do not ask for a phone number.
Signed-in accounts include an email address and account sessions, plus Google profile details if you sign in with Google. We also support email sign-in codes. Agency records include application numbers and optional labels. We store email preferences, secure preference-link tokens, correction requests and delivery suppression records. If you answer an optional product survey, we store that response with your account.
Anonymous website activity
We count public-page visits using a random identifier stored for one browser-tab session. We record known page routes, referrer domains, a broad device category, and the country and approximate city our hosting provider reports for the connection. If you arrive through a link carrying campaign tags (such as utm_source), we record those tags. We do not store IP addresses or link this identifier to an account.
While a public page is visible, it sends a short activity update every 30 seconds. Our private dashboard shows recently active visits, their last few page routes and named actions such as submitting a free search. We do not record typed text, application numbers, email addresses, screen recordings or activity inside the payment gateway in this tracking.
Live activity records expire after 24 hours of inactivity. Historical pageview and service-event records expire after 90 days. Account and admin pages are excluded from page tracking.
How we use information
We use this information to operate alerts, manage account access, provide support, prevent duplicate or abusive submissions, and maintain service reliability.
Payment information
Payments are processed by Polar, our merchant of record. Card numbers and other payment credentials are entered on the provider's secure checkout, never on this website, and we neither see nor store them.
What we keep is the record needed to prove a payment and support a refund: the gateway transaction reference, the amount, the payment method used, and the time it was confirmed.
To open a checkout we pass Polar your email address, an internal invoice reference and the product and price. Agency purchases also include an internal account identifier. We do not send your application number to Polar. Polar may then contact you directly about a payment you started, including a reminder if you leave the checkout without finishing it. Those messages come from the provider, not from us.
Service providers
We use hosting, database and email providers to run the service and deliver messages. Google handles authentication when you choose Google sign-in, and our payment provider handles payment checkout. Our operations team may receive copies of service emails to monitor delivery and provide support. Sign-in codes are sent only to the address requesting them.
What we do not request
VisaRelay does not need your passport, visa documents, financial records, card details, or date of birth to register an alert.
Retention and your choices
Use the secure unsubscribe link in your alert emails to stop routine updates only or all ongoing alerts for that application or agency account. Receipts, sign-in codes and replies to requests remain available. Keep your preference link private: anyone with it can change those preferences.
We retain service information only for as long as it is reasonably needed to provide alerts, maintain records, and meet applicable obligations. You can request access, correction, or deletion by emailing info@visarelay.com.
Security and updates
We use reasonable technical and organisational safeguards, but no online system can guarantee absolute security. Material policy changes will be published on this page with a revised update date.