Gripd

Privacy Policy

Effective August 11, 2026

This Privacy Policy explains what data Gripd, operated by Gripd.ng ("Gripd", "we", "us"), collects, how we use it, and the choices you have. It's written to comply with the Nigeria Data Protection Act 2023, and applies to anyone who uses the Gripd app.

1. What we collect

  • Account info: your name and email address, and a securely hashed password (we never see or store your password in plain text).
  • Financial records you enter: hustle names, income and expense entries, categories, budgets, invoice details (including customer names/contact info you choose to enter), and any payment details you add to be shown on invoices.
  • Wallet and billing records: top-up and subscription transaction history. We do not collect or store your card number — that's handled entirely by Flutterwave, our payment processor.
  • Push notification subscription: if you opt in, a device endpoint/key used only to deliver notifications to that device.
  • Basic technical data: standard server logs (IP address, browser type, timestamps) generated by our hosting provider, and error reports if something breaks, so we can fix it.

2. How we use it

  • To provide the core service: storing and showing your records back to you.
  • To calculate reports, budget progress, and rule-based insights from your own data.
  • To process wallet top-ups and subscription billing through Flutterwave.
  • To send notifications you've opted into (reminders, wallet/renewal alerts).
  • To respond to support requests.
  • To detect, investigate, and fix bugs or abuse.

We do not sell your data, and we do not use it for third-party advertising.

3. Who we share it with

We share data only with the service providers that make Gripd work:

  • Supabase — hosts our database and handles authentication.
  • Vercel — hosts and serves the app.
  • Flutterwave — processes wallet top-up payments and handles your card details directly; we never receive or store them.

We don't share your data with anyone else unless required by law or with your explicit consent.

4. How we protect it

Data is encrypted in transit. Your records are protected by database-level access rules (row-level security) that restrict them to your own account — even our own systems access your financial data only through code paths scoped to you, except for the specific server-side processes needed to process billing (top-ups, subscription renewals) and to keep the service running.

5. Data retention

We keep your data for as long as your account is active. If you request account deletion, we delete your personal records within a reasonable time, except where we're required to retain certain billing records for legal or accounting purposes.

6. Your rights

You can access, correct, or delete most of your data directly in the app (Settings, individual records). You can also contact us to request a copy of your data, ask us to delete your account, or ask questions about how your data is handled.

7. Cookies

Gripd uses only the cookies necessary to keep you signed in. We don't use third-party advertising or tracking cookies.

8. Children

Gripd isn't intended for anyone under 18, and we don't knowingly collect data from minors.

9. Changes to this policy

If we make material changes to this policy, we'll update the effective date above.

10. Contact

Questions about this policy or your data? Reach us at support@gripd.ng.

Back to home