Legal & Policy
Privacy Policy
Last updated: April 29, 2026
What We Collect
When you create an account or use Grantd, we collect:
- Email address and name (via Supabase Auth)
- Organization details (EIN, name, mission)
- Grant search queries and saved grants
- Application drafts and deadline data
- Basic product analytics events, such as CTA clicks, signup starts, checkout starts, and waitlist joins
How We Use It
- Provide AI-powered grant matching and risk analysis
- Manage your grant pipeline and deadlines
- Improve our matching algorithms
- Understand where visitors get stuck in signup, pricing, and waitlist flows
Data Storage
Data is stored in Supabase (PostgreSQL) with row-level security. When you use AI-assisted features, the relevant prompt and supporting context are sent to Google's Gemini API so Grantd can generate matches or draft analysis. All connections use TLS encryption.
Third-Party Services
- Supabase — authentication and database
- Google Gemini API — AI grant analysis and drafting assistance
- Vercel — hosting, serverless functions, and privacy-preserving web analytics
- Grants.gov / ProPublica — public grant data APIs
Your Rights
You can export or delete your data at any time from your account settings. To request full account deletion, contact support@grantd.fund.
Cookies
We use essential cookies for authentication sessions only. Funnel analytics events do not include emails, names, organization IDs, or application text. No advertising or third-party tracking cookies are used.
Contact
Questions? Email support@grantd.fund.