Legal

Privacy Policy

Last updated: March 10, 2026

This Privacy Policy explains how ThibaultC LLC d/b/a 5472Direct (“5472Direct,” “we,” “us,” or “our”) collects, uses, shares, stores, and protects personal data when you use our website, application, checkout, support channels, and related services.

5472Direct is a self-service document preparation platform for certain IRS filing workflows. We do not sell personal information and we do not use third-party advertising cookies. We do use essential cookies, and—if you consent—analytics technologies to measure and improve the Service.

1. Data We Collect

We may collect the following categories of data:

Account Information

Email address, authentication events, and account identifiers used to create and secure your 5472Direct account through Supabase Auth.

Filing and Owner Information

LLC legal name, EIN, U.S. address, state of formation, owner name, ownership information, foreign address, country of residence, foreign TIN, and other filing details you provide to generate IRS forms.

Financial and Bank Transaction Data

Transaction amounts, descriptions, dates, and categorization data imported via Plaid or entered by you. We do not store your online banking username or password.

Payment Information

Payments are processed by Stripe. We do not store full payment card numbers on our servers. We receive purchase status, checkout details, and limited billing metadata from Stripe.

Support Communications

The contents of emails, contact form messages, attachments, and support requests that you send us when asking for help.

Usage & Technical Data

IP address, browser and device information, pages visited, referrer data, and product interaction events. Non-essential analytics tools are enabled only if you consent.

Electronic Signatures

If you opt into our IRS Direct Delivery service, we collect your drawn signature image plus transmission and delivery status data needed to sign and send your filing package.

2. How We Use Your Data

  • To authenticate users and provide access to the Service.
  • To generate filing documents, PDFs, summaries, and related records based on your inputs.
  • To import and categorize transaction data used in your filing workflow.
  • To process payments, verify purchases, and deliver purchased digital products.
  • To transmit documents and signatures to the IRS when you specifically authorize and purchase IRS Direct Delivery.
  • To send transactional emails, receipts, support replies, and filing-related notices.
  • To secure the Service, prevent fraud, investigate misuse, and maintain logs.
  • To analyze product usage and improve performance and user experience, where permitted by law and your consent choices.
  • To comply with legal obligations and resolve disputes.

3. Legal Bases for Processing (EEA/UK)

If you are located in the EEA or UK, we rely on the following legal bases to process personal data:

  • Contract performance: To provide the Service, generate forms, process purchases, and respond to service-related requests you initiate.
  • Legitimate interests: To secure the Service, prevent abuse, provide support, maintain records, and improve our operations in a proportionate way.
  • Legal obligation: To comply with applicable laws, accounting, fraud prevention, and regulatory obligations.
  • Consent: For non-essential analytics cookies and similar technologies, and any other processing that legally requires consent.

4. Cookies and Analytics Technologies

We use essential cookies and similar technologies to operate login sessions, security features, and core application functionality.

If you click Accept analytics in our cookie banner, we may also enable Google Analytics, PostHog, and Vercel Analytics to measure traffic, understand feature usage, and improve the Service. These tools may collect identifiers such as IP address, browser and device data, page paths, referrers, and interaction events. We have disabled PostHog session recording.

If you choose Essential only, we keep non-essential analytics disabled. You can reopen and change your preference at any time through the Cookie Settings control in the site footer.

5. Third-Party Service Providers and Sharing

We share data with trusted service providers only as needed to run the Service, process transactions, send communications, and comply with law.

ProviderPurposeData Shared
SupabaseDatabase hosting and authenticationAccount, filing, and application data stored in the platform
PlaidBank connectivity and transaction importConnected-account tokens and transaction data necessary for import
StripePayment processingEmail address, product selection, checkout amount, and payment metadata
TelnyxIRS fax transmission for IRS Direct DeliveryFiling PDFs, signature image, LLC and owner details contained in the transmission, and delivery status data
ResendTransactional and support emailsEmail address, message content, attachments, and delivery metadata
VercelApplication hosting and analytics infrastructureIP address, request logs, device/browser metadata, and site usage information
Google AnalyticsWebsite analytics (consent-based)Page views, approximate location from IP, browser/device information, and referral data
PostHogProduct analytics (consent-based)Product events, page paths, device/browser details, and user account identifier when you are signed in; session recording is disabled

We may also disclose information if required by law, to respond to lawful requests, protect rights and safety, prevent fraud, or as part of a merger, financing, acquisition, or asset sale.

6. Data Storage and Security

We use reasonable technical and organizational safeguards designed to protect personal data, including encryption in transit, access controls, secure hosting, and authentication controls.

  • Encrypted transport via TLS/SSL.
  • Authentication and session management through Supabase Auth.
  • Row-level access controls for user-owned application data.
  • Separation of payment processing from our application systems.

No method of transmission or storage is completely secure, and we cannot guarantee absolute security.

7. Data Retention and Deletion

We retain personal data only for as long as reasonably necessary to provide the Service, maintain records, comply with law, and resolve disputes.

  • Filing data and generated documents: generally up to 7 years, or longer if required by law or needed for dispute resolution.
  • Account data: for the life of the account and a reasonable period afterward for security, fraud prevention, and recordkeeping.
  • Payment, support, and delivery records: as needed for accounting, fraud prevention, customer support, and legal compliance.

You may request deletion of your account and associated personal data by contacting support@5472direct.com. We will review and process verified requests within a reasonable period, typically within 30 days, subject to any legal or legitimate retention needs.

8. International Data Transfers

Our operations are based in the United States, and your data may be transferred to and processed in the United States or other countries where our service providers operate. If you are in the EEA or UK, we rely on appropriate safeguards where required by law, such as contractual protections.

9. Your Rights

Depending on your location, you may have rights regarding your personal data, including the right to:

  • Request access to the personal data we hold about you.
  • Request correction of inaccurate or incomplete information.
  • Request deletion of personal data, subject to legal exceptions.
  • Request restriction or object to certain processing.
  • Request a portable copy of certain data.
  • Withdraw consent for analytics cookies at any time.

To exercise these rights, contact support@5472direct.com. You can also change your analytics consent at any time using the Cookie Settings control in the footer.

10. Children’s Privacy

The Service is not directed to children under 18, and we do not knowingly collect personal data from children. If we learn that we have collected personal data from a child, we will take reasonable steps to delete it.

11. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be reflected by updating the “Last updated” date above. Your continued use of the Service after the updated policy becomes effective means you accept the revised policy.

12. Contact

For privacy requests, complaints, or questions, contact us at support@5472direct.com.

ThibaultC LLC d/b/a 5472Direct
30 N Gould St
STE R
Sheridan, WY 82801
USA

If you are located in the EEA or UK and believe we have not addressed your concern, you may also have the right to complain to your local data protection authority.

See also our Terms of Service.