Who this policy covers
Graytower provides website analytics, revenue attribution, Explore analysis, opportunity discovery, and experiment measurement. This policy covers visitors to our own site and people who use the Graytower service. When a customer installs Graytower on its Website, that customer decides why visitor data is collected. Graytower generally processes that Website data on the customer’s behalf. The customer’s privacy notice should explain its own use of Graytower.
Our roles
Graytower determines the purposes of processing account, authentication, support, service security, billing administration, and our own site data. For customer Website events, identifiers, identified users, connected Stripe revenue data, Product Profiles, and analyses, Graytower generally acts as a processor or service provider under the customer’s instructions. A customer may also be a processor for someone else; in that case Graytower acts as its subprocessor.
Our Data Processing Agreement addresses customer-controlled personal data.
Information we handle
- Accounts: email address, name, credentials or Google sign-in information, sessions, Workspace membership, and preferences.
- Billing: subscription and customer IDs, plan, invoices and payment status from Stripe. Card details are handled by Stripe; Graytower does not need your full card number.
- Customer Websites: pageviews, custom events, page paths and titles, referrers, campaign parameters, approximate location and device information, visitor IDs in first-party identity mode, and identity values a customer deliberately supplies. Customer custom events can contain other values the customer chooses to send.
- Revenue connections: connected Stripe account and payment information, refunds, customer identifiers, and attribution evidence needed to report revenue and match eligible payments to visits.
- Product features: Website configuration, Product Profile text and public pages used for discovery, Explore questions and generated answers, opportunities, experiment definitions and results.
- Operations: support messages, request and security logs, rate limit data, and diagnostic records.
Tracking modes
In the default first-party identity mode, a customer’s tracker sets a persistent _gt_id browser cookie for returning-visitor analytics, journeys, and attribution. Its configured lifetime is one year. In cookieless mode, the tracker does not set this persistent visitor cookie. The collector uses a Website-scoped daily pseudonymous key derived from request IP address and User-Agent with a server secret, and estimated sessions use fixed 30-minute windows. Raw IP address and User-Agent are not written to Graytower analytics events by the application, though network infrastructure may log requests. Cookieless mode can still involve personal data and does not itself establish legal compliance. Read the identity and cookieless guides for technical detail.
Why we use information
- Provide accounts, Websites, analytics, revenue reports, Explore, opportunities, experiments, and support.
- Authenticate users, protect the service, enforce limits, and investigate failures or misuse.
- Administer subscriptions, invoices, taxes and payment disputes where applicable.
- Comply with legal duties and respond to valid requests.
Where a legal basis is required for our own processing, it may be performance of a contract, legitimate interests in operating and securing the service, consent where applicable, or a legal obligation. Customers determine the basis for their Website tracking and the data they submit.
Service providers and external tools
We use providers for hosting, databases, analytics infrastructure, background jobs, billing, email, security, and optional discovery or AI features. Explore questions and relevant Website analytics context may be sent to an AI provider to generate an answer. Product Profile content and public Website material may be sent to discovery and AI providers when those features run. We do not sell customer data or use customer Website analytics to train our own general-purpose models. See the provider list for the specific integrations found in the service.
Retention and deletion
Detailed analytics and older daily aggregates follow the Workspace’s plan retention settings, shown in the service and on pricing. Free retains up to 3 months of detailed data and 3 months of daily aggregates; paid plans have longer plan-specific periods. A reduction in retention can include a 30-day transition. Existing information may remain visible until the scheduled cleanup runs. Website and Workspace deletion starts a separate removal workflow for related database and analytics records; we may retain limited records where law, billing, security, or dispute resolution requires it. Provider backups and logs can follow their own deletion cycles.
International processing and security
Providers may process information in countries other than yours, including the United States. Application host: To be confirmed (To be confirmed). Database: Neon (planned) (US East (Ohio, us-east-2; provisional)). Pre-launch values; confirm before production deployment. The Subprocessors page lists other provider regions. We use access controls, tenant scoping, credential protection, and deletion controls appropriate to the service. No online service can promise absolute security. Where a transfer mechanism is legally required, it must be addressed in the customer agreement and applicable provider terms.
Your choices and requests
You can update account information, manage Websites and tracking mode, disconnect Stripe, and request Website or Workspace deletion through the service. You may ask us to access, correct, export, or delete personal information we control by emailing support@graytower.app. We may verify your identity and retain information where required by law. If your request concerns tracking on a customer Website, contact that Website’s operator first; we will assist that customer as appropriate.
Children and changes
Graytower is a business service and is not intended for children. Customers should not intentionally send children’s data or sensitive personal information unless they have confirmed an appropriate lawful basis and contacted us about suitability. We may update this policy as the service changes. Material changes will be communicated as appropriate; the date above identifies this version.
Questions
Contact support@graytower.app about these documents or a privacy request.