Legal

Terms of Use & Privacy Policy.

Last updated: September 16, 2026 · questions: help@joinsourcelink.com

Terms of Use · Privacy Policy

Terms of Use

1. Acceptance of These Terms

These Terms of Use ("Terms") govern access to and use of SourceLink, located at https://www.joinsourcelink.com/, and any related websites, applications, portals, APIs, public pages, Resource Navigator tools, surveys, web forms, event registration pages, communications features, reports, and services that link to these Terms (collectively, the "Platform").

The Platform is operated by The Curators of the University of Missouri, through its SourceLink program ("we," "us," or "our"). By accessing or using the Platform, you agree to these Terms and to the Privacy Policy below. If you use the Platform on behalf of an organization, you represent that you have authority to bind that organization to these Terms.

If you do not agree to these Terms, do not access or use the Platform.

2. Definitions

"Authorized User" means a person who has been granted login access to the Platform, such as a counselor, administrator, staff member, resource partner, or other approved user.

"Client" means an entrepreneur, business owner, business, founder, organization, or other person or entity receiving, requesting, or being considered for services through the Platform.

"Client Data" means information about Clients entered into, collected through, imported into, uploaded to, generated within, or otherwise processed by the Platform. Client Data may include contact information, business information, demographic information, service needs, notes, interactions, follow-ups, referrals, survey responses, event registrations, uploaded documents, communication records, newsletter preferences, and reporting data.

"Customer Organization" means a business support organization, resource partner, economic development organization, funder, network member, or other organization that uses or sponsors access to the Platform.

"Platform Data" means the Platform, its software, templates, configuration, documentation, reports, analytics, designs, workflows, and underlying technology, excluding Client Data and User Content.

"Resource Navigator" means Platform functionality that helps Clients and visitors find resource partners, services, programs, events, or other business-support resources.

"Resource Partner" means an organization listed in, contributing to, or using the Platform to provide services, resources, referrals, or profile information.

"SourceLink Network" or "Network" means a configured group of Customer Organizations that may share selected data, reports, lists, tags, referrals, surveys, web forms, events, or other records according to Platform permissions and confidentiality settings.

"User" means any Site Visitor, Authorized User, Customer Organization, Resource Partner, Client, or other person or entity that accesses or uses the Platform.

"User Content" means information, content, files, documents, comments, notes, messages, email content, survey content, profile descriptions, event details, resource listings, or other materials that a User submits to or through the Platform.

3. Purpose of the Platform

The Platform is intended to support entrepreneurial support ecosystems by helping Clients, Customer Organizations, Resource Partners, and related networks coordinate services, referrals, communications, events, surveys, resource navigation, reporting, and other business-support activities.

The Platform may include tools for:

  • client relationship management;
  • public intake, contact, feedback, and web forms;
  • public and private surveys;
  • Resource Navigator searches and recommendations;
  • provider/resource partner profiles;
  • client notes, interactions, follow-ups, referrals, tags, documents, snapshots, and reports;
  • event listings, registrations, invitations, and attendance records;
  • newsletter signup processing through providers such as Mailchimp or EMMA;
  • outbound email features, including system email, event/survey email, and, where enabled, Client Email workflows;
  • analytics, reporting, KPIs, and aggregated or de-identified ecosystem insights;
  • AI-assisted drafting or profile-support tools, where enabled.

The Platform does not provide legal, tax, accounting, investment, lending, employment, medical, or other professional advice. Any resources, referrals, recommendations, or matches provided through the Platform are informational and do not guarantee eligibility, funding, service availability, business outcomes, or endorsement by us.

4. Accounts and Access

Some Platform features are public. Other features require an account, login link, magic link, connected mailbox, API credential, or other authorized access method.

You agree to:

  • provide accurate account and profile information;
  • keep usernames, passwords, tokens, magic links, and other access credentials confidential;
  • not share access credentials with another person;
  • use only accounts and permissions assigned to you;
  • promptly notify us and your Customer Organization if you believe an account, credential, device, mailbox connection, or token has been compromised.

You are responsible for activity that occurs under your account, except to the extent caused by our failure to use reasonable safeguards.

5. Customer Organization Responsibilities

Customer Organizations and Authorized Users are responsible for the Client Data and User Content they collect, enter, import, upload, submit, share, or process through the Platform.

Before entering or sharing Client Data, Customer Organizations and Authorized Users must:

  • have a lawful basis and all required consents, permissions, notices, and authorizations;
  • collect and enter only information reasonably needed for authorized Platform purposes;
  • keep Client Data reasonably accurate and up to date;
  • comply with applicable privacy, data protection, consumer protection, anti-spam, accessibility, public records, grant reporting, and professional responsibility obligations;
  • honor Client confidentiality instructions and Platform confidentiality settings;
  • not add highly sensitive information, such as Social Security numbers, payment card numbers, health information, or government identification numbers, unless the Platform specifically requests it and the Customer Organization is authorized to collect it.

If a Customer Organization imports data from another CRM, spreadsheet, public source, form, system, or provider, that Customer Organization is responsible for the legality, accuracy, formatting, permissions, and consequences of the import.

6. Data Sharing, Network Access, and Confidentiality

The Platform may allow Customer Organizations, Resource Partners, and SourceLink Network members to share selected Client Data and User Content. Examples include referrals, survey responses, event registrations, web form submissions, provider profiles, documents, notes, tags, reports, and client-service activity.

Some records may include confidentiality or privacy settings that limit visibility to an owner organization, authorized administrators, or selected network members. Users must respect those settings and must not access, use, export, screenshot, copy, disclose, or distribute information except as permitted by their role, permissions, Client consent, Customer Organization policy, and applicable law.

Platform confidentiality controls are operational tools. They do not replace a Customer Organization's obligation to obtain required consent, maintain appropriate policies, train staff, and use judgment before sharing Client Data.

If you become aware of unauthorized access to or disclosure of Client Data, you must promptly notify us and any affected Customer Organization through the appropriate support or privacy channel.

7. User Content and License to Operate the Platform

As between you and us, you or the appropriate rights holder retain ownership of User Content and Client Data.

You grant us, our service providers, and, where applicable, Customer Organizations and Resource Partners a non-exclusive license to host, store, copy, display, transmit, process, analyze, back up, restore, secure, support, and otherwise use User Content and Client Data as reasonably necessary to operate, maintain, support, improve, and provide the Platform; fulfill authorized reporting and analytics purposes; comply with law; and carry out the Privacy Policy.

You represent that you have the rights, permissions, and authority needed to grant this license.

8. Communications, Email, and Newsletter Features

The Platform may send or facilitate transactional emails, account notices, magic links, support messages, event invitations, survey invitations, referral notices, provider profile messages, newsletter signups, Client Email messages, and other communications.

Customer Organizations and Authorized Users are responsible for using communication features lawfully. This includes honoring consent, opt-out, unsubscribe, anti-spam, and sender-identification requirements.

Where enabled:

  • Mailchimp, EMMA, SendGrid, Google, Microsoft, or other providers may process email, newsletter, sender, recipient, and delivery data.
  • Local SourceLink CRM email opt-out settings may be separate from provider-managed newsletter unsubscribe preferences.
  • One-to-one client emails, bulk emails, event emails, survey emails, and newsletter emails may follow different consent, opt-out, queueing, audit, and retry rules.
  • Connected-mailbox features may require a User to authorize Google or Microsoft access. Users may not send from a mailbox or "from" address they do not own or control.

You may not use the Platform to send spam, unlawful marketing, deceptive messages, malicious attachments, harassment, or content that violates these Terms.

9. AI-Assisted Features

The Platform may include AI-assisted features, such as rewriting provider descriptions, helping draft resource partner profiles, or extracting possible profile information from publicly available websites.

AI-assisted features are tools, not final decision-makers. Users are responsible for reviewing AI-assisted output for accuracy, completeness, appropriateness, bias, intellectual property issues, and compliance before publishing or using it.

Do not submit confidential, sensitive, regulated, or third-party information to an AI-assisted feature unless you are authorized to do so and the feature is approved for that use. AI-assisted features may send prompts, source text, website content, responses, usage data, and related logs to third-party AI providers or service providers.

AI output may be incomplete, inaccurate, or unsuitable. We do not guarantee the completeness, accuracy, or suitability of AI-generated or AI-assisted content.

10. Acceptable Use

You agree not to:

  • use the Platform for unlawful, fraudulent, abusive, discriminatory, harassing, defamatory, deceptive, or harmful purposes;
  • impersonate another person or organization;
  • access or attempt to access accounts, data, systems, features, APIs, or areas of the Platform that you are not authorized to access;
  • bypass, probe, disable, or interfere with security, authentication, authorization, rate limits, logging, or confidentiality controls;
  • upload or transmit malware, viruses, harmful code, or malicious files;
  • scrape, crawl, harvest, copy, or bulk extract Platform data except through authorized export tools and for authorized purposes;
  • use the Platform to send spam or unauthorized advertising;
  • submit information that you know is false, misleading, infringing, or unauthorized;
  • publish or share Client Data outside the Platform except as authorized by the Client, Customer Organization, and applicable law;
  • use automated tools or bots in a way that burdens or disrupts the Platform;
  • reverse engineer or attempt to derive source code, underlying models, or non-public Platform technology except as allowed by law.

We may investigate suspected violations and may suspend, restrict, or terminate access where reasonably necessary.

11. Third-Party Services and Links

The Platform may integrate with or link to third-party services, websites, APIs, and providers, such as email providers, newsletter platforms, connected-mailbox providers, AI providers, geocoding services, analytics/error-monitoring services, event resources, Resource Partner websites, or other external systems.

Third-party services are governed by their own terms and privacy policies. We do not control and are not responsible for third-party content, services, security, availability, data practices, or decisions.

Links, listings, referrals, resource matches, events, and Resource Navigator results are provided for convenience and informational purposes. They do not mean that we endorse, verify, or guarantee the third party.

12. Intellectual Property

The Platform and Platform Data are owned by us or our licensors and are protected by intellectual property and other laws. Except for rights expressly granted in these Terms, no rights are transferred to you.

You may not copy, modify, distribute, sell, lease, sublicense, publicly display, or create derivative works from the Platform or Platform Data except as expressly permitted by us or through authorized Platform functionality.

Feedback, suggestions, ideas, or recommendations that you provide may be used by us without restriction or compensation, provided we do not disclose your confidential information in doing so.

13. Suspension and Termination

We may suspend, limit, or terminate access to the Platform if:

  • you violate these Terms;
  • your account appears compromised;
  • your Customer Organization ends or changes its Platform relationship;
  • continued access may create legal, security, privacy, operational, or reputational risk;
  • we are required to do so by law, contract, or court order.

After termination, certain records may remain in the Platform, backups, reports, logs, archives, or records controlled by Customer Organizations, subject to applicable law, contractual obligations, retention policies, and the Privacy Policy.

14. Disclaimers

The Platform is provided on an "as is" and "as available" basis. To the fullest extent permitted by law, we disclaim all warranties, whether express, implied, statutory, or otherwise, including warranties of merchantability, fitness for a particular purpose, title, non-infringement, accuracy, availability, security, and uninterrupted operation.

We do not warrant that:

  • the Platform will be error-free, secure, uninterrupted, or available at all times;
  • data will never be lost, delayed, corrupted, disclosed, or unavailable;
  • resource matches, referrals, reports, recommendations, AI-assisted output, geocoding, search results, or analytics will be accurate or complete;
  • a Client will qualify for or receive funding, services, referrals, business outcomes, or other benefits.

Some jurisdictions do not allow certain disclaimers, so some of the above may not apply.

15. Limitation of Liability

To the fullest extent permitted by law, The Curators of the University of Missouri and its officers, directors, employees, contractors, licensors, and service providers will not be liable for indirect, incidental, consequential, special, exemplary, punitive, or lost-profit damages arising out of or relating to the Platform, even if advised of the possibility of those damages.

To the fullest extent permitted by law, our total liability for claims arising out of or relating to the Platform or these Terms will not exceed $1,000,000 or the amount paid by you to us for the Platform during the one year before the event giving rise to the claim, whichever is lesser.

16. Indemnification

To the extent permitted by law, you agree to defend, indemnify, and hold harmless The Curators of the University of Missouri and its officers, directors, employees, contractors, licensors, and service providers from claims, damages, liabilities, costs, and expenses arising out of or relating to:

  • your violation of these Terms;
  • your use of the Platform;
  • User Content or Client Data that you submit, import, upload, send, or share;
  • your failure to obtain required consent or authorization;
  • your violation of applicable law or third-party rights.

17. Governing Law and Venue

These Terms are governed by the laws of Missouri, without regard to conflict-of-law rules. Any legal action relating to these Terms or the Platform will be brought in the state courts located in Boone County, Missouri.

18. Changes to These Terms

We may update these Terms from time to time. When we do, we will update the "Last updated" date or provide another appropriate notice. Continued use of the Platform after changes become effective means you accept the updated Terms.

19. Contact

Questions about these Terms may be directed to:

The Curators of the University of Missouri, through its SourceLink program

4747 Troost Ave, Kansas City, MO 64110

help@joinsourcelink.com

Privacy Policy

1. Scope

This Privacy Policy explains how The Curators of the University of Missouri, through its SourceLink program collects, uses, discloses, and protects information in connection with SourceLink and the Platform.

This Privacy Policy applies to information collected through the Platform, including public pages, login-protected CRM features, Resource Navigator tools, surveys, web forms, event registration pages, APIs, reports, communications features, support workflows, and related services.

Depending on the deployment, we may process some Client Data on behalf of Customer Organizations. Customer Organizations may have their own privacy notices and may be responsible for deciding what Client Data is collected, how it is used, how long it is retained, and who may access it. If you have questions about a Customer Organization's use of your information, contact that organization directly.

2. Information We Collect

We may collect the following categories of information, depending on how the Platform is configured and used.

Information from Site Visitors

  • name, email address, phone number, organization, and other contact details;
  • information submitted through contact forms, feedback forms, intake forms, recommendation requests, newsletter forms, event registrations, or public surveys;
  • Resource Navigator search terms, selected services, interests, referrals, and activity logs;
  • communications with support or Customer Organizations.

Account and Authorized User Information

  • name, email address, phone number, title, organization, role, permissions, and login status;
  • authentication, authorization, session, token, magic-link, OAuth, connected-mailbox, and security metadata;
  • account preferences, administrative settings, feature flags, and usage history.

Client and Business Information

  • Client and contact names, emails, phone numbers, addresses, websites, social links, and business profile information;
  • demographic information, language preferences, business stage, industry, NAICS code, geography, services needed, tags, and custom list values;
  • business activity information such as revenue, employees, capital needs, funding sources, referrals, service history, events, and engagement records;
  • counselor notes, internal notes, interactions, follow-ups, referrals, matches, project records, snapshots, survey answers, accepted survey data, and reporting history;
  • uploaded files, documents, logos, images, form attachments, and survey file uploads;
  • email preferences, local CRM opt-out status, newsletter queue status, provider unsubscribe sync status, and communication history.

Resource Partner and Provider Information

  • organization names, descriptions, service categories, eligibility criteria, contact information, locations, languages, geographies served, websites, social links, logos, and public profile content;
  • profile management activity, magic-link activity, Resource Navigator activity, and AI-assisted profile metadata where enabled.

Communications and Email Data

  • email templates, subjects, bodies, recipients, sender snapshots, queued send data, delivery or processing status, failure details, unsubscribe information, and audit history;
  • newsletter provider data such as audience/list IDs, groups, subscriptions, tags, segments, external member IDs, and provider status where Mailchimp, EMMA, or similar providers are configured;
  • connected-mailbox authorization data and send metadata where Google or Microsoft mailbox sending is enabled.

Technical, Usage, and Log Information

  • IP address, browser type, device information, operating system, referring URLs, pages viewed, access times, request metadata, and session identifiers;
  • cookies and similar technologies used for authentication, session management, preferences, security, diagnostics, and performance;
  • error reports, security events, structured logs, correlation IDs, environment tags, performance data, and diagnostic context;
  • approximate location or geocoding results derived from addresses or service areas where location-based features are used.

Information from Other Sources

We may receive information from Customer Organizations, Authorized Users, imports, Resource Partners, public websites, email/newsletter providers, connected mailbox providers, analytics or error-monitoring providers, and other systems integrated with the Platform.

3. How We Use Information

We use information to:

  • provide, operate, maintain, secure, and support the Platform;
  • create, authenticate, authorize, and administer accounts;
  • process intake forms, public forms, surveys, event registrations, recommendations, referrals, follow-ups, provider updates, and support requests;
  • maintain CRM records, Client profiles, Resource Partner profiles, documents, notes, interactions, tags, custom lists, snapshots, and reports;
  • support SourceLink Network and Customer Organization collaboration, including configured sharing, confidentiality, owner-organization, and pool/network rules;
  • send transactional, administrative, support, survey, event, referral, newsletter, and Client Email communications;
  • process newsletter signups, unsubscribe/status sync, connected-mailbox sending, and email delivery or failure workflows where enabled;
  • provide Resource Navigator search, matching, filtering, geocoding, duplicate detection, and recommendation features;
  • generate dashboards, reports, KPIs, exports, SSRS reports, funder reports, ecosystem analytics, and aggregated or de-identified insights;
  • provide AI-assisted drafting, rewriting, or provider-profile support where enabled;
  • investigate, prevent, detect, and respond to fraud, abuse, errors, outages, security incidents, unauthorized access, or policy violations;
  • debug, monitor, improve, test, and develop the Platform;
  • comply with legal, contractual, accounting, audit, public-records, grant-reporting, and risk-management obligations;
  • enforce terms, contracts, policies, and legal rights.

4. How We Share Information

We may share information as described below.

With Customer Organizations and Authorized Users

Client Data and User Content may be visible to Customer Organizations, counselors, administrators, Resource Partners, and other Authorized Users according to Platform configuration, permissions, roles, referrals, ownership rules, confidentiality settings, SourceLink Network membership, and Client consent.

With Resource Partners and Network Members

When a referral, recommendation, intake, event, survey, resource request, or network-sharing workflow involves a Resource Partner or another Customer Organization, relevant information may be shared with that party as needed to provide services, coordinate support, avoid duplicates, or complete the requested workflow.

With Service Providers

We may share information with vendors and service providers that help operate the Platform, such as hosting providers, database providers, email providers, newsletter providers, connected-mailbox providers, AI providers, geocoding providers, logging/error-monitoring providers, analytics providers, file/document storage or processing providers, support providers, and professional advisors.

Service providers are authorized to use information only as needed to provide services to us or as otherwise permitted by contract and law.

With Legal, Safety, and Compliance Recipients

We may disclose information when we believe disclosure is reasonably necessary to:

  • comply with law, regulation, subpoena, court order, legal process, public-records obligations, grant requirements, or government requests;
  • protect the rights, privacy, safety, or property of The Curators of the University of Missouri, through its SourceLink program, Customer Organizations, Users, Clients, Resource Partners, or others;
  • investigate or prevent fraud, security incidents, abuse, or unlawful activity;
  • enforce terms, contracts, and policies;
  • defend or assert legal claims.

In Business or Organizational Transfers

If all or part of the Platform, The Curators of the University of Missouri, through its SourceLink program, or a related program is reorganized, merged, transferred, assigned, funded, sold, or otherwise changed, information may be transferred as part of that transaction or transition, subject to applicable law and contractual obligations.

Aggregated or De-Identified Information

We may use and share aggregated, statistical, or de-identified information for reporting, research, ecosystem analysis, public communications, funder reports, product improvement, or similar purposes, provided it does not reasonably identify an individual unless permitted by law and applicable agreements.

5. Cookies and Similar Technologies

The Platform may use cookies, session storage, local storage, and similar technologies to:

  • keep Users logged in;
  • maintain session state and preferences;
  • secure accounts and prevent misuse;
  • remember settings;
  • understand usage and performance;
  • support forms, surveys, navigation, and interactive features.

Most browsers allow you to block or delete cookies. If you disable cookies, some Platform features may not work correctly.

6. Communications Choices

You may receive transactional or administrative messages that are necessary for the Platform, such as account notices, security messages, magic links, form confirmations, survey messages, event notices, referral notices, or support communications.

Newsletter and marketing preferences may be managed through the applicable unsubscribe links, newsletter provider tools, Customer Organization processes, or Platform settings. Local SourceLink CRM email preferences may be separate from Mailchimp, EMMA, or other provider-managed newsletter preferences.

For Client Email and other CRM communications, choices may depend on the type of communication, the sending Customer Organization, applicable law, and whether the communication is one-to-one, transactional, service-related, event-related, survey-related, or bulk.

7. Accessing, Correcting, or Deleting Information

Authorized Users may be able to access and update some information directly in the Platform.

Clients, Site Visitors, and other individuals may request access, correction, deletion, restriction, portability, or other privacy rights by contacting help@joinsourcelink.com or the relevant Customer Organization. We will respond as required by applicable law and contracts.

Some information may not be deleted immediately or completely if it is needed for legal compliance, security, fraud prevention, audit trails, backups, dispute resolution, reporting obligations, Customer Organization records, or legitimate Platform operations.

8. Data Retention

We retain information for as long as reasonably necessary to provide and support the Platform, maintain Customer Organization records, comply with legal and contractual obligations, resolve disputes, enforce agreements, support reporting, maintain backups, and protect security.

Retention periods may vary by record type, Customer Organization configuration, contract, legal requirement, and operational need. Aggregated or de-identified information may be retained for longer periods.

9. Security

We use administrative, technical, and physical safeguards designed to protect information from unauthorized access, loss, misuse, alteration, or disclosure. These safeguards may include authentication controls, role and permission checks, confidentiality settings, structured logging, monitoring, backups, secure configuration practices, and incident response procedures.

No system or transmission over the internet can be guaranteed to be completely secure. You are responsible for using strong account practices, protecting credentials, limiting access to authorized personnel, and promptly reporting suspected unauthorized access.

10. Sensitive Information

The Platform may collect business-sensitive and personal information needed for entrepreneurial support workflows, such as demographics, business metrics, funding needs, financial ranges, notes, documents, and survey responses.

Unless a form specifically asks for it and you are authorized to provide it, do not submit Social Security numbers, payment card numbers, bank account numbers, health information, government identification numbers, passwords, or other highly sensitive information in free-text fields, uploads, notes, emails, or surveys.

11. AI-Assisted Processing

Where AI-assisted features are enabled, information submitted to those features may be processed by AI providers or related service providers. This may include provider descriptions, public website content, prompts, outputs, usage metadata, and logs.

AI-assisted features may help draft, summarize, rewrite, extract, or classify information, but Users must review outputs before use. The Platform does not make solely automated decisions that legally or similarly significantly affect individuals unless separately disclosed and permitted by law.

Google API user data

SourceLink's use of raw or derived user data received from Google Workspace APIs complies with the Google API Services User Data Policy, including the Limited Use requirements.

12. Children's Privacy

The Platform is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided personal information through the Platform, contact help@joinsourcelink.com.

Some Customer Organizations may serve youth entrepreneurs or education programs.

13. Links to Other Websites

The Platform may link to Resource Partner websites, event pages, grant pages, social media pages, maps, public resources, and other third-party sites. We are not responsible for the content, privacy practices, security, or availability of those third-party sites.

14. International Users

The Platform is operated from the United States. If you access the Platform from outside the United States, your information may be processed in the United States or other locations where we or our service providers operate. Those locations may have privacy laws that differ from the laws in your jurisdiction.

15. State-Specific and Other Privacy Rights

Depending on where you live and how the Platform is used, you may have additional privacy rights under state, federal, or other privacy laws. These rights may include the right to know, access, correct, delete, opt out of certain processing, or appeal a decision.

Requests may be subject to verification, legal exceptions, Customer Organization control, contractual limitations, and retention requirements. We do not sell personal information in the ordinary meaning of that term.

16. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. When we do, we will update the "Last updated" date or provide another appropriate notice. Continued use of the Platform after changes become effective means the updated Privacy Policy applies.

17. Contact

Questions, concerns, or privacy requests may be directed to:

The Curators of the University of Missouri, through its SourceLink program

4747 Troost Ave, Kansas City, MO 64110

help@joinsourcelink.com