← Back to home
Legal & Policy

Privacy Policy

Last updated: April 29, 2026

What We Collect

When you create an account or use Grantd, we collect:

  • Email address and name (via Supabase Auth)
  • Organization details (EIN, name, mission)
  • Grant search queries and saved grants
  • Application drafts and deadline data
  • Basic product analytics events, such as CTA clicks, signup starts, checkout starts, and waitlist joins

How We Use It

  • Provide AI-powered grant matching and risk analysis
  • Manage your grant pipeline and deadlines
  • Improve our matching algorithms
  • Understand where visitors get stuck in signup, pricing, and waitlist flows

Data Storage

Data is stored in Supabase (PostgreSQL) with row-level security. When you use AI-assisted features, the relevant prompt and supporting context are sent to Google's Gemini API so Grantd can generate matches or draft analysis. All connections use TLS encryption.

Third-Party Services

  • Supabase — authentication and database
  • Google Gemini API — AI grant analysis and drafting assistance
  • Vercel — hosting, serverless functions, and privacy-preserving web analytics
  • Grants.gov / ProPublica — public grant data APIs

Your Rights

You can export or delete your data at any time from your account settings. To request full account deletion, contact support@grantd.fund.

Cookies

We use essential cookies for authentication sessions only. Funnel analytics events do not include emails, names, organization IDs, or application text. No advertising or third-party tracking cookies are used.

Contact

Questions? Email support@grantd.fund.