What data GRANI needs and why.
Updated July 28, 2026. This policy describes the current application and infrastructure.
1. Controller and contact
ИП Тамаев Раиль Наилевич. support@granilink.com.
2. Data categories
| Category | Data | Purpose | Where |
|---|---|---|---|
| Account | Email, sign-in provider, verification state | Authentication and access | PostgreSQL |
| Device | ID, fingerprint, model, OS, app version, IP/country | Device limit, security, support | PostgreSQL |
| VPN session | Server, protocol, states, timing, bytes, errors | Connection operation and diagnostics | PostgreSQL and infrastructure logs |
| Analytics | Firebase app/session ID, user ID, app events | Android product analytics | Firebase/GA4 and backend queue |
| Purchase | Plan, amount, currency, order ID, purchase token | Google Play verification and access | PostgreSQL, Google Play |
| Diagnostics | Runtime state, trace/session ID, errors, network checks | Support after explicit user action | Backend and support channel |
3. Traffic content
GRANI does not build a browsing-history profile. VPN servers technically process packets in transit; API, reverse proxy, and VPN nodes create operational logs.
4. Firebase and GA4
The Android app sends usage and funnel events to Firebase Analytics/GA4. The backend adds verified server-side events.
5. Billing
Google Play processes payment. GRANI stores identifiers and status required to verify a purchase; full bank-card details are not received by GRANI.
6. Diagnostic report
The user submits a report explicitly. It may contain versions, server, protocol, VPN state, errors, network checks, and correlation identifiers.
7. Recipients
Hosting providers, Google Firebase/GA4, Google Play, email/identity providers, and the user-selected support channel process data for their roles.
8. Retention
Retention depends on category, security, support, accounting duties, and infrastructure rotation. One automated period for every database and log is not currently established.
9. Deletion and rights
Request access, correction, or deletion from the account email through support@granilink.com. Self-service deletion is not currently available; certain records may be retained for law or dispute handling.
10. International processing and changes
Providers may process data in other countries with applicable contractual and legal safeguards. Material policy changes are published with a new date.