Privacy policy

What data GRANI needs and why.

Updated July 28, 2026. This policy describes the current application and infrastructure.

1. Controller and contact

ИП Тамаев Раиль Наилевич. support@granilink.com.

2. Data categories

CategoryDataPurposeWhere
AccountEmail, sign-in provider, verification stateAuthentication and accessPostgreSQL
DeviceID, fingerprint, model, OS, app version, IP/countryDevice limit, security, supportPostgreSQL
VPN sessionServer, protocol, states, timing, bytes, errorsConnection operation and diagnosticsPostgreSQL and infrastructure logs
AnalyticsFirebase app/session ID, user ID, app eventsAndroid product analyticsFirebase/GA4 and backend queue
PurchasePlan, amount, currency, order ID, purchase tokenGoogle Play verification and accessPostgreSQL, Google Play
DiagnosticsRuntime state, trace/session ID, errors, network checksSupport after explicit user actionBackend and support channel

3. Traffic content

GRANI does not build a browsing-history profile. VPN servers technically process packets in transit; API, reverse proxy, and VPN nodes create operational logs.

4. Firebase and GA4

The Android app sends usage and funnel events to Firebase Analytics/GA4. The backend adds verified server-side events.

5. Billing

Google Play processes payment. GRANI stores identifiers and status required to verify a purchase; full bank-card details are not received by GRANI.

6. Diagnostic report

The user submits a report explicitly. It may contain versions, server, protocol, VPN state, errors, network checks, and correlation identifiers.

7. Recipients

Hosting providers, Google Firebase/GA4, Google Play, email/identity providers, and the user-selected support channel process data for their roles.

8. Retention

Retention depends on category, security, support, accounting duties, and infrastructure rotation. One automated period for every database and log is not currently established.

9. Deletion and rights

Request access, correction, or deletion from the account email through support@granilink.com. Self-service deletion is not currently available; certain records may be retained for law or dispute handling.

10. International processing and changes

Providers may process data in other countries with applicable contractual and legal safeguards. Material policy changes are published with a new date.