Privacy

What we keep, and what we do with it.

The Orange Button is a pay button, a link and a QR code that get a seller paid in bitcoin, straight to their own wallet. We never hold the money, and we keep as little about you as the button needs to work. This page says what that is.

Last updated 5 September 2026. It covers theorangebutton.com and the old bitcoinpaylinks.com links that now point here.

If you make a button

The maker runs in your browser. A button made from the URL alone carries its own lightning address, product and price, and nothing about it is stored on our side. We do not know it exists until someone opens it.

When you paste a lightning address, the page asks our server about the wallet service behind it, so it can tell you whether that wallet confirms payments. The server may check the address once by asking your wallet for a small invoice that is never paid. What it remembers is the wallet's domain and what that wallet can do.

If you claim a short link

When you claim theorangebutton.com/yourname we store the name, your lightning address, the product and price, the display name if you gave one, and your email address. Your email is where your edit link goes and where payment emails go. We do not use it for anything else, we do not add it to a list and we do not share it.

Anything you set up on your edit page is stored so the button can do it: a message, a link or a file for the buyer, a webhook address, and your storefront products if you have any. Your edit link is the key to all of it. Anyone who has it can change your button, so keep it private.

If you buy something

The pay page asks the seller's wallet for an invoice and shows it to you. The payment goes from your wallet to the seller's wallet and never passes through us. We do not know who you are unless the seller has asked for your name and email.

When a seller has switched that on, the pay page asks for your name (optional) and your email (required) before it shows the invoice. They travel with the payment to the seller's wallet as the invoice comment, when the wallet accepts comments, and on a claimed link they are kept in the seller's sales record together with the product, the amount and the time. Your name and email are passed to the seller and kept in that record. We do not use them for anything else. If the seller has set up a delivery, we email the message, the link or the download to the address you gave, once.

You can use a private or throwaway email address if you prefer. The seller only needs somewhere to send what you bought.

How a payment is confirmed

When an invoice is paid, the page asks the receiving wallet whether it has settled, and our server asks the wallet again before it says Paid, sends any email or records a sale. From that check we keep a fingerprint of the invoice and the amount, so one payment can only be recorded once. None of it lets us move money. It only tells us that a payment happened.

Files sellers upload

A file attached to a short link is stored on our server and handed to the buyer through a download link that works for 30 days after the sale. We do not open, read or share it beyond that buyer. Sellers can replace or remove the file from their edit page at any time.

What the server sees anyway

Like any web server, ours logs each request: the network address it came from, the page or file it asked for and the time. Claimed links count their views as a number, not as people. The pages load their fonts from Google Fonts and the QR code library from jsdelivr, and those servers see the request the way any web server does. There are no advertising trackers and no third-party analytics on the site.

The emails we send

Three kinds: the edit link when a short link is claimed, a payment email to the seller when a sale settles, and a delivery email to a buyer who gave an address. They go out through SendGrid, the service that delivers them, which handles the address and the message for that purpose only. We do not send newsletters or marketing.

Where the data lives

On our own server, in the same database that runs the site, for as long as the short link exists. If you want a link and everything stored with it removed, write to us from the email address you claimed it with.

Changes to this policy

We may update it from time to time. Changes are posted on this page with a new date at the top.

Contact

Questions about any of this go to contact@theorangebutton.com.