Loading…
Loading…
Plain English. No legalese. If anything here is unclear, write to privacy@deargrove.com and a real person will answer.
Last updated: April 16, 2026
Every sensitive field (SSNs, account numbers, credentials, messages to loved ones) is encrypted with AES-256 before it ever reaches our database. A full database compromise would reveal only ciphertext.
No advertising. No data brokers. No partners. You pay $39 once. That's the whole business model.
One click gives you a complete PDF of everything you've entered. If we ever shut down, you get 60 days' notice and a clean export. You never lose your work.
One click in Settings wipes your account. No exit surveys. No dark patterns. Purged from our backups within 30 days.
Dear Grove is a web application that helps you document the accounts, passwords, contacts, and wishes your family would need if something happened to you. The company is a Michigan-registered entity operating the service at deargrove.com. When this policy says “we,” “us,” or “Dear Grove,” we mean that entity.
We collect only what the service needs to work. There is no marketing pixel, no analytics that identifies you individually, no tracking across other sites.
We do not collect: location beyond the country level inferred from IP, contacts from your address book, social graph data, behavioral fingerprints, or anything about sites you visit outside Dear Grove.
The content you enter is encrypted with AES-256-GCM in our application layer before it touches our database. The encryption keys are managed by a key-management service and are never stored in the database alongside the ciphertext. This means:
We use Supabase (PostgreSQL) for the database, hosted on AWS in the United States. Your data stays in the US.
Nobody except a short list of sub-processors needed to run the service. Each one sees only the narrow slice of data required for its job, and each is bound by contractual confidentiality and security obligations.
| Sub-processor | What they do | What they see |
|---|---|---|
| Stripe | Process your one-time payment | Your card details (directly from you), your email, the amount |
| Supabase | Database hosting and authentication | Encrypted ciphertext of your content; your email |
| Vercel | Hosting the app | HTTP requests, IP addresses (ephemeral logs) |
| Resend | Transactional email (sign-in links, receipts, share notifications) | Your email address and the message content we send |
| Sentry | Error diagnostics | Stack traces and scrubbed request metadata; never your content |
| Plausible | Privacy-first page analytics | Anonymous page-view counts; no cookies; no cross-site tracking |
We do not sell personal information. We do not share it for advertising. We do not swap it with anyone for any reason. If a government agency serves a valid legal order for your information, we will notify you unless the order prohibits it, and we will provide only what is legally required.
Regardless of where you live, you have these rights with respect to your Dear Grove data:
If you live in California, the CCPA gives you the rights above plus the right to know the categories of personal information collected (listed in “What we collect”) and the right not to be discriminated against for exercising these rights.
If you live in the EU, the UK, or another jurisdiction with a GDPR-style law, the rights above apply along with your right to data portability (satisfied by the Export feature) and the right to lodge a complaint with your supervisory authority. Our legal basis for processing is contract performance (to provide the service you purchased) and legitimate interest (abuse prevention and diagnostics).
We use only what we need. There are no advertising cookies, tracking cookies, or third-party marketing pixels.
Plausible, our analytics provider, is cookie-free by design.
Data is kept for as long as you have an account.
Dear Grove is not intended for use by anyone under 18. We do not knowingly collect information from children. If you believe a child has created an account, write to privacy@deargrove.com and we will delete it promptly.
We take a defensive approach: least privilege, encryption at rest and in transit, signed webhooks, row-level security, and responsible-disclosure contact at security@deargrove.com. A detailed posture is available at /security.
No system is perfect. If a breach ever affects your data, we will notify you within 72 hours of confirming the scope, along with what happened, what data was involved, and what we are doing about it.
If we change this policy in a way that reduces your rights or expands what we collect, we will email every account holder at least 30 days before the change takes effect. Minor clarifications (typos, reformatting, new sub-processors that receive no additional data) will be noted in the “Last updated” date above.
For privacy questions: privacy@deargrove.com.
For security issues: security@deargrove.com.
For anything else: hello@deargrove.com.