Privacy
Last reviewed: 19 August 2026
The checklist runs entirely in your browser. That single design decision settles most of what a privacy notice normally has to explain, and the rest of this page says exactly what it leaves.
What happens to what you type
The industry you pick, the campaign description you write, the activation types you tick, and the review areas that come back all live in the page’s own memory in the open tab. They travel to no server, are written to no cookie or local storage, and are attached to no identifier. Closing or refreshing the tab clears them, and the “Clear and start over” button clears them immediately. Because the description field never leaves your machine, a campaign that has yet to be announced stays as confidential as the device you are reading this on. Even so, the field is capped at 300 characters and asks for non-confidential context, because a habit of pasting briefs into web forms is worth breaking regardless of where any single form sends them.
Hosting and measurement
The site is hosted on Vercel. Ordinary request data — IP address, user agent, requested path, and timestamp — is processed to serve the page, secure it, and keep it available. Two first-party scripts load from this domain: Vercel Web Analytics, which counts page views without cookies and without following visitors between sites, and Vercel Speed Insights, which reports loading and interaction timing. Both produce aggregate numbers about the site. Neither is configured with a user identifier, and neither can see the checklist fields, which are never submitted.
Every response carries a Content-Security-Policy confining the page to its own origin, with one exception for performance measurements posted to vitals.vercel-insights.com. Scripts, styles, fonts, and images all resolve to this domain, so opening the checklist contacts no advertising network, font host, tag manager, or social platform.
Cookies
This site sets no cookies, which is why you were never shown a consent banner.
Contact, and links away
The site links to email and LinkedIn rather than embedding a form, so nothing you write passes through this domain on its way to me. Mail reaches a Northeastern University mailbox under that provider’s terms and retention schedule. Please keep confidential, privileged, and client-identifying material out of those channels. The source links point to eCFR, the U.S. Copyright Office, California and Tennessee legislature sites, and EUR-Lex; once you follow one, that destination’s own policy applies. A Referrer-Policy of strict-origin-when-cross-origin tells those sites only that a visitor arrived from this origin.
Access, correction, and deletion
Because the checklist stores nothing about you, there is no record to export, amend, or erase. Questions about this notice go to collins.ra@northeastern.edu. Any material change to what the site processes updates the reviewed date above, so that date reliably marks when these statements were last checked against the deployed build.