Privacy Policy

Effective August 1, 2026

This policy explains what CurateWeb ("we", "us") collects when you use curateweb.com, why we collect it, who we share it with, and how to have it removed. We've written it to describe what the site actually does rather than every hypothetical.

The short version: you can browse the whole site without giving us anything. If you fill in one of our match forms, we pass what you submit to the program partners the form is for, so they can contact you. We use two analytics tools — one of which records how visitors interact with pages.

Information you give us

Our lead capture forms (for example, the business school and online college match forms on our landing pages) collect only what the form shows on screen. Typically that is:

  • your name;
  • contact details — email address, phone number, and zip code;
  • your answers to the form's questions, such as the program or degree you're interested in and when you'd like to start;
  • whether you agreed to be contacted, and the time you agreed, when the form includes a consent checkbox.

Forms save your progress as you go, so answers from earlier steps are stored even if you don't reach the final step. If you email us, we keep the message and your address so we can reply.

Information collected automatically

  • Vercel Web Analytics — aggregate page-view and performance measurement provided by our host, Vercel. It reports visits, pages and referrers in aggregate.
  • Microsoft Clarity — product analytics that includes session recording and heatmaps. Clarity reconstructs how visitors move through pages: clicks, taps, scrolling, mouse movement, and the content of the pages viewed. Recordings help us find broken and confusing pages. Clarity masks text typed into form fields by default, and we do not use it to capture payment details. Microsoft processes this data under its own privacy terms.
  • Request and device data — when your form progress is first saved (which happens as you move through the form, before you submit) we store the IP address reported by our platform and your browser's user-agent string alongside your form record, as a record of where and when it was made. This data is retained even if you never finish the form.
  • Campaign attribution — if you arrive from an ad or a link with tracking parameters (utm_source, utm_medium, utm_campaign, utm_term, utm_content, gclid, fbclid and our own campaign id), those values, the referring page and the landing URL are stored with your form record when your progress is first saved, so we know which campaign it came from.
  • Advertising identifiers — when your form progress is first saved, we also read a fixed list of advertising cookies already present in your browser (Meta, Google Ads, Google Analytics, TikTok and Microsoft Ads identifiers) and store them with your form record so ad platforms can attribute the conversion. Nothing outside that list is read.

Cookies

  • Functional — when you start a form we set a cookie (name beginning cw_lead_) holding a random token so you can leave and come back to a partly finished form. It contains no personal details, is not readable by scripts, and expires after 90 days.
  • Analytics — Microsoft Clarity sets its own cookies or local storage to tell sessions apart. Vercel Web Analytics identifies visitors from a hash of the incoming request and does not use cookies or browser storage.
  • Advertising — we don't set advertising cookies ourselves, but ad platforms may have set them on your browser before you arrived; see above for how they're used. You can clear or block cookies in your browser settings; the site works without them, apart from resuming a form.

Zip codes and location

Our car pages are organized by zip code, city and state. The zip code in a page's address is part of the page, not information about you: we use it to look up public reference data (city, county, population) and the dealers and popular cars we track for that area. We do not use precise device location, and browsing a zip code page doesn't tell us who you are.

A zip code becomes personal information only when you type it into a form, in which case it is handled like the rest of your submission.

How we use information

  • to pass your request to the program partners a form is for, so they can contact you about the programs you asked about;
  • to reply to your messages and handle your requests;
  • to measure which pages, campaigns and layouts work, and to find and fix problems;
  • to protect the site — for example, detecting automated or fraudulent submissions;
  • to meet legal and record-keeping obligations.

Who we share it with

  • Program partners — the schools, colleges and education program providers behind the form you complete. They contact you directly by email, phone or text and use your details under their own privacy policies. This is the purpose of the form and the reason we ask for consent; if you don't want your details shared, don't submit the form. Depending on where you live, this sharing may count as a "sale" or "sharing" of personal information under state privacy laws — you can opt out by emailing us.
  • Service providers — the companies that run the site for us: Vercel (hosting, analytics and file storage), Neon (database), and Microsoft (Clarity analytics). They process data on our behalf.
  • Data suppliers — our automotive listing data comes from a licensed third-party provider. We send them no information about you.
  • Legal — where we must comply with the law, enforce our terms, or protect our rights and users' safety.

We do not sell your information to data brokers, and we don't share it with anyone else for their own advertising.

Your choices and rights

Whatever state or country you're in, you can ask us to show you the information we hold about you, correct it, delete it, or stop sharing it — email contact@curateweb.com from the address you gave us, or tell us which address to look up. We will confirm your request before acting on it and respond within the time the applicable law allows. We won't treat you differently for asking.

Deleting your record with us doesn't reach partners who already received it — contact them directly to be removed from their lists. Marketing emails from partners include their own unsubscribe links.

Retention

We keep form submissions for as long as needed to service the request and to keep a record of the consent given, and analytics data for the period our analytics providers retain it. We delete records sooner on request, unless we're required to keep them.

Children

CurateWeb is meant for adults and isn't directed at children. We don't knowingly collect information from children under 16. If you believe a child has submitted information, email us and we'll delete it.

Other sites

Our pages link to dealer inventory pages, school sites and other third-party sites. Once you follow a link, that site's own privacy policy applies — we have no control over what it collects.

Changes

If we change this policy we'll update the effective date at the top of this page. Material changes will be described here rather than made quietly.

Contact

Privacy questions and requests: contact@curateweb.com. More ways to reach us are on our contact page.