Privacy Policy
Last updated: 3 September 2026
Privogrid is operated by WaveLinker OÜ, a company registered in Estonia (the "controller", "we", "us"). This policy explains what we collect, why, where it goes and how you can control it. By using Privogrid you agree to this policy.
1. What we collect
- Account data: your email address and a salted hash of your password (PBKDF2-SHA256 — we never store the password itself). If you sign in with Google we receive your Google account email and a verified-email flag; we do not receive your Google password.
- Subscription data: your plan, billing status and renewal date, and your Stripe customer and subscription IDs. Card numbers are entered on Stripe's pages and never reach our servers.
- Licensing data: on the Free plan, a hardware identifier (HWID) of the computer you first signed in on, used to lock the trial to one computer.
- Synced profiles (paid plans, optional): if you turn on cloud sync, your browser profiles — settings, fingerprint seeds and, with cookie sync, cookies — are encrypted on your device (AES-256-GCM) before upload. We store only the encrypted data, together with plain metadata such as profile IDs and "last updated" timestamps. The key material needed to unlock a profile is held per account on our server so that your other devices can open the same profiles — so this is encryption at rest and in transit, not zero-knowledge storage.
- Shared profiles (Pro and up): when you share a profile with a teammate it is wrapped with the recipient's public key on your device. Only the recipient's private key — kept on their computer, never on our server — can open it. We cannot read shared profiles.
- Team data (Pro and up): workspace name, member emails, roles, profile assignments and an audit log of team actions.
- Support messages: what you write to us in the support chat or by email, so we can answer you.
- Technical logs: IP address and request timestamps on our API, kept briefly for rate-limiting and abuse prevention.
2. What we do NOT collect
- We do not log your browsing activity, the websites you visit, or the accounts you manage inside your profiles.
- We do not collect the website passwords you save in a profile — they are encrypted on your device with a key held by your operating system and are excluded from sync.
- The Local API and MCP server run on your own computer; their calls and audit log never leave it.
3. Why we use it (legal basis)
- To provide the service you signed up for (contract): create and secure your account, enforce plan limits, sync and share profiles, take payment, answer support.
- To keep the service safe (legitimate interest): rate-limiting, blocking abuse, preventing repeated free trials.
- To meet legal obligations: keeping invoices and payment records for accounting and tax law.
We do not sell your data and we do not use it for advertising.
4. Who processes it for us
- Stripe — payments, invoices and subscription billing (Stripe is an independent controller for card data; see Stripe's privacy policy).
- Cloudflare — hosting of the website, API, database and download files, plus DDoS protection and analytics.
- Resend — sends our transactional emails (verification codes, password resets, billing notices).
- Google — only if you choose "Continue with Google" to sign in.
Each processor only receives what it needs for its job. Some of them operate outside the EU under standard contractual clauses or an adequacy decision.
5. How long we keep it
- Account, subscription, synced and team data: for as long as your account exists.
- Login sessions: expire automatically after 30 days.
- Support conversations: for as long as your account exists, so we can follow up.
- After you delete your account: everything above is deleted. We keep payment records (amount, date, plan) for the period required by accounting law, and a record of the deleted email address so that free trials cannot be repeated indefinitely.
6. Security
Passwords are salted and hashed (PBKDF2). Synced data is encrypted with AES-256-GCM before it leaves your device. All traffic uses HTTPS (HSTS). Accounts are protected with rate-limiting, automatic blocking of abusive traffic and session-token expiry. Found a vulnerability? See our security page or write to [email protected].
7. Your rights (GDPR)
You can ask us to access, correct, export or erase your personal data, to restrict or object to processing, and you have the right to lodge a complaint with your supervisory authority — in Estonia, the Andmekaitse Inspektsioon.
- Delete your account yourself: Dashboard → Settings → Danger zone → Delete account. This cancels any active subscription and removes your data as described in section 5.
- Everything else: email [email protected] from the address on your account. We answer within 30 days.
8. Cookies
The website sets no advertising or tracking cookies. The dashboard keeps your login token in your browser's local storage so you stay signed in; Stripe sets its own cookies on its checkout pages. Cloudflare may set a security cookie to protect against bots.
9. Changes
We may update this policy. Material changes will be posted on this page with a new "Last updated" date, and announced in the dashboard or by email if they affect how your data is used.
10. Contact
WaveLinker OÜ, Estonia · [email protected] (privacy requests) · [email protected] (security reports).
← Back to home