
OnlineDonations (“we,” “our,” or “us”) is committed to protecting the privacy of all users of our online fundraising platform, including students, parents/guardians, donors, and participating schools or organizations. This policy supplements and replaces prior versions.
Children’s Online Privacy Protection Act (COPPA) Compliance
Our services are primarily intended for high school and collegiate programs. However, if a child under age 13 participates in a fundraising campaign, we take additional precautions consistent with COPPA.
Information we collect from children under 13 may include:
Parental consent: We obtain verified parental consent before collecting, using, or disclosing personal information from children under 13. If consent is not provided, we do not knowingly collect such information.
Parental rights: Parents may request to review, delete, or restrict future use of their child’s information. Contact: support@onlinedonations.us
Family Educational Rights and Privacy Act (FERPA) Compliance
We provide online fundraising tools to schools, districts, and educational programs. In doing so, we may have limited access to student information strictly on behalf of the educational institution.
Our role: When authorized by a school or district, OnlineDonations functions as a “school official” with a legitimate educational interest.
Information we may collect (only when provided by a school/program):
Use of information: We use this limited information to operate fundraising campaigns, contact donors with receipts, and provide schools with campaign results. We do not sell, share, or use student data for advertising.
Parent/eligible student rights: Requests for access or correction of official school records must be made directly to the school or district.
Data RetentionOnlineDonations retains personal information only for the duration necessary to operate and support the active fundraising campaign, or as required by law.
All student and donor information is purged immediately after the fundraiser ends.
We do not store personal information beyond the operational period of the campaign.
We maintain administrative, technical, and physical safeguards to protect all personal information processed through our platform. Our infrastructure is hosted on Amazon Web Services (AWS) and protected at the network level by Cloudflare, both of which maintain industry-standard security certifications.
Security & Breach ResponseWe maintain a formal Cybersecurity and Breach Response Plan, including:
All personal information is protected using industry-standard security practices, including encryption in transit, secure hosting controls, and network-level protections.
Data Privacy, Security Standards & Vendor Responsibilities
OnlineDonations follows widely accepted K–12 data-privacy and security standards across all states. Our platform is designed to minimize exposure of personal information, and all student and donor data is permanently deleted after the fundraising campaign concludes. Schools receive aggregate fundraising totals only—never personally identifiable student data.
The following commitments apply to all schools, districts, and organizations using our services:
1. Data Security & Privacy Plan
We maintain a comprehensive internal plan governing how data is collected, protected, accessed, and disposed of.
2. Cyber Incident Response Plan
Our formal response plan includes monitoring, investigation, containment, and notification processes consistent with federal and state expectations.
3. NIST Cybersecurity Framework Alignment
Our security practices align with the NIST Framework (Identify, Protect, Detect, Respond, Recover).
AWS and Cloudflare provide additional NIST-aligned controls at the infrastructure and network layers.
4. Limiting Access to Personal Information
Access to student or donor PII is restricted to essential personnel only.
All personnel follow role-based access and confidentiality procedures.
5. No Disclosure of PII for Commercial Use
We do not sell, rent, or disclose PII for advertising, marketing, or non-educational commercial purposes. All data is used solely to operate the authorized fundraiser.
6. Parent/Guardian Rights & Transparency
Parents, guardians, and school officials may request access, corrections, or deletion of information during the active campaign.
7. Supplemental Information Provided to All Schools & Districts
Exclusive Purpose for Data Use
PII is used only to facilitate the school’s or group’s fundraising campaign.
Subcontractor Oversight Plan
We oversee and vet all subcontractors (e.g., payment processors, hosting providers) to ensure they comply with strict privacy and security standards.
Contract Effective Date & Duration
All service agreements specify start dates, duration, and terms.
Data Disposal Plan
OnlineDonations purges all student and donor data immediately after the fundraiser ends.
Accuracy & Correction Practices
Schools or parents may request corrections to inaccurate information during the active campaign.
Security Protections
We implement encryption in transit, secure infrastructure, network-level firewalls, intrusion controls, and role-based access.
Data Location
All data is hosted on secure U.S.-based servers via AWS, with additional protections provided by Cloudflare.
Encryption Practices
All data is encrypted in transit (HTTPS/TLS).
AWS and Cloudflare provide additional encryption, monitoring, and protection controls.
Data Sharing
We do not share personally identifiable information with third parties except:
trusted service providers essential to platform operation (e.g., secure payment processors), or
when disclosure is required by law.
All partners are required to follow strict privacy and security standards.
Use of Data
All information collected is used solely for educational and fundraising purposes.
We do not use personal data for unrelated marketing or commercial activities.
User Rights
Parents, guardians, and authorized school officials may request access, correction, or deletion of information. Contact us at support@onlinedonations.us
Changes to This Policy
We may update this policy periodically. Material changes will be posted on our website.
Contact Information
For privacy questions or data-related requests:
support@onlinedonations.us
888-741-2963 ext. 1
520 Folly Rd #111
Charleston, SC 29412