LEGAL
Privacy
Last updated 2026-05-17. This is a working-draft notice — a full version replaces it before public launch. Email hello@grantscout.io with any specific question.
What we collect
- Account: email + password (Supabase Auth). Optional eligibility-profile fields you fill in: sectors, country, stage, org type.
- Billing: handled by Stripe. We store the Stripe customer ID and subscription state; we don't see or hold card details.
- Product analytics: minimal server logs (page paths, referrers). No third-party trackers.
- Feedback: when you click 🚩 Report bad data or 👍/👎 on an AI summary, we store the row id and the reason, plus a hashed IP for spam triage.
What we don't do
- No sale of personal data to third parties.
- No advertising trackers.
- No profiling beyond what your eligibility profile tells our matcher.
Where data lives
Supabase (Postgres, EU region) for the app database; Stripe for billing; Resend for transactional email; Anthropic for AI processing of public funder text. None of these processors receive your eligibility-profile fields beyond what's needed to render your account.
Your rights
You can export or delete your account by emailing hello@grantscout.io. We'll action it within 30 days.