FundCollector – Donations Plugin and Fundraising Platform for WordPress
·
Easily collect donations with PayPal or bank transfer. Automated email notifications, donor management, and security features built in.
The Simple, Powerful WordPress Donation Plugin
FundCollector is a completely free WordPress donation plugin that charges no platform fees: you keep 100% of every donation. Accept credit card, PayPal, and bank transfer payments with no coding required, send automatic email notifications to donors and your team, and manage your entire donor base from the WordPress dashboard.
Free Features
- Donation Form Builder: Customizable forms with fields, suggested amounts, and styling options
- Pre-built Pages: Automatic creation of Donation, Thank You, Payment Failed, and Privacy pages
- PayPal Integration: Secure PayPal REST API payments with sandbox support
- Bank Transfer Support: Alternative payment method with automated email instructions
- Gutenberg Block: Embed the donation form anywhere with the native block editor
- Donor Management: Full donor profiles with donation history and key statistics
- Email Notifications: Automated emails to donors and administrators, fully customizable
- Admin Dashboard: Sortable donation list with filters and detail view
- Security: Honeypot protection, reCAPTCHA v3, data encryption, and CSRF nonces
- GDPR Compliant: Data retention controls, encryption at rest, audit trail logging
- Multi-language: English, Italian, Spanish, French, German, Portuguese
FundCollector Pro
FundCollector Pro extends the free plugin with powerful tools for serious fundraisers:
- Recurring Donations: Accept weekly, monthly, or annual subscriptions from donors
- Mollie Payments: Accept credit card donations via Mollie, with full support for recurring donations
- PDF Reports: Generate and download donation reports as PDF
- CSV Export: Export all donation data for accounting or analysis
- Automatic Backups: Schedule and restore complete plugin data backups
Who Is FundCollector For?
- Nonprofits and charity organizations
- Sports clubs, associations, and NGOs
- Religious organizations
- Schools and educational institutions
- Anyone collecting donations or contributions online
Privacy Policy
FundCollector takes privacy seriously:
- Payment data is processed securely through PayPal’s API
- Sensitive data is encrypted at rest
- No data is shared with third parties without consent
- Users can request data deletion at any time
- Full audit trail is maintained for compliance
External Services
This plugin connects to external third-party services to provide payment processing and security features. Below is a detailed disclosure of each service used:
PayPal Payment Processing
- What it is: PayPal is a payment processing service used to handle online donations via credit cards, debit cards, and PayPal accounts.
- When it’s used: Activated when donors choose PayPal as their payment method. Connections occur during payment creation, authorization, and completion.
- Data transmitted: Donor information (name, email), donation amount, currency, and transaction metadata are sent to PayPal’s servers for payment processing.
- API endpoints used:
- Production:
https://api-m.paypal.com(live transactions) - Sandbox:
https://api-m.sandbox.paypal.com(testing environment)
- Production:
- Privacy Policy: PayPal Privacy Statement
- Terms of Service: PayPal User Agreement
- Documentation: PayPal REST API Documentation
Google reCAPTCHA v3
- What it is: Google reCAPTCHA v3 is an anti-spam protection service that helps prevent automated bot submissions.
- When it’s used: Optional feature (can be disabled). When enabled, reCAPTCHA analyzes user behavior on donation forms to detect potential spam or bot activity.
- Data transmitted: User interaction data (mouse movements, typing patterns, IP address) is sent to Google’s servers for spam analysis. The reCAPTCHA token generated is validated server-side.
- API endpoints used:
- Client-side script:
https://www.google.com/recaptcha/api.js - Server-side verification:
https://www.google.com/recaptcha/api/siteverify
- Client-side script:
- Privacy Policy: Google Privacy Policy
- Terms of Service: Google reCAPTCHA Terms of Service
User Control
- PayPal integration is optional and can be disabled in plugin settings (bank transfer only mode)
- Google reCAPTCHA is optional and can be disabled in plugin settings
- Each payment gateway can be enabled or disabled independently
Data Protection
- All communication with external services occurs over encrypted HTTPS connections
- API credentials (PayPal Client ID/Secret, reCAPTCHA keys) are stored encrypted in the WordPress database
- No donor payment card data is stored on your WordPress server — all sensitive payment information is handled directly by PayPal
- Payment processing is PCI DSS compliant through certified payment providers
- reCAPTCHA tokens are temporary and only used for spam verification
