Loading…
Loading…
Plain English. No legalese. If anything here is unclear, write to support@deargrove.com and a real person will answer.
Last updated: April 22, 2026
Every sensitive field (SSNs, account numbers, credentials, messages to loved ones) is encrypted with AES-256 before it ever reaches our database. A full database compromise would reveal only ciphertext.
The accounts, passwords, and wishes you write down never leave our systems. We share a hashed email with Meta to measure ads (switchable off), and if you opt in on Find an Advisor we share contact info with a vetted estate planner. Full details and opt-outs below.
One click gives you a complete PDF of everything you've entered. If we ever shut down, you get 60 days' notice and a clean export. You never lose your work.
One click in Settings wipes your account. No exit surveys. No dark patterns. Purged from our backups within 30 days.
DearGrove is a web application that helps you document the accounts, passwords, contacts, and wishes your family would need if something happened to you. The company is a Michigan-registered entity operating the service at deargrove.com. When this policy says “we,” “us,” or “DearGrove,” we mean that entity.
We collect only what the service needs to work, plus a narrow slice of ad-measurement data covered separately under “Advertising measurement” below. We never track you across other sites and we never build a behavioral profile on you.
We do not collect: location beyond the country level inferred from IP, contacts from your address book, social graph data, behavioral fingerprints, or anything about sites you visit outside DearGrove.
The content you enter is encrypted with AES-256-GCM in our application layer before it touches our database. The encryption keys are managed by a key-management service and are never stored in the database alongside the ciphertext. This means:
We use Supabase (PostgreSQL) for the database, hosted on AWS in the United States. Your data stays in the US.
Nobody except a short list of sub-processors needed to run the service. Each one sees only the narrow slice of data required for its job, and each is bound by contractual confidentiality and security obligations.
| Sub-processor | What they do | What they see |
|---|---|---|
| Stripe | Process your one-time payment | Your card details (directly from you), your email, the amount |
| Supabase | Database hosting and authentication | Encrypted ciphertext of your content; your email |
| Vercel | Hosting the app | HTTP requests, IP addresses (ephemeral logs) |
| Resend | Transactional email (sign-in links, receipts, share notifications) | Your email address and the message content we send |
| Sentry | Error diagnostics | Stack traces and scrubbed request metadata; never your content |
| Vercel Web Analytics | Privacy-first page analytics on the platform that hosts the app | Anonymous page-view counts and event names; no cookies; no cross-site tracking |
| Meta (Facebook) | Measure which ads led to sign-ups (Pixel + Conversions API) | Pixel events on our own pages; a SHA-256 hash of your email on purchase; the purchase amount. Never your content, name, or address. |
The contents of your DearGrove document never leave this list of sub-processors. We do not sell, swap, or otherwise share what you wrote down. If a government agency serves a valid legal order, we will notify you unless the order prohibits it, and we will provide only what is legally required.
One narrow exception with your explicit opt-in: if you click "find an advisor" or otherwise ask us to connect you with an estate planning provider, we share contact-onlyinformation (name, email, phone, state, age range, expressed intent, and asset/family signals). See the next section for the full disclosure.
On the “Find an advisor” page (and any other surface where we ask “Do you want help with a will or trust?”), if you tick the explicit consent checkbox we share a contact-and-context profile with a vetted estate planning provider so they can reach out about your needs.
What we share, when you opt in:
What we never share:
Categories of recipients: vetted estate planning attorneys, estate planning service providers, and related professional firms. We may also use this information ourselves to provide estate planning services through our sister product (Bancroft).
This may constitute a “sale” under certain US state privacy laws, including the California Consumer Privacy Act (CCPA / CPRA), the Colorado Privacy Act, the Virginia Consumer Data Protection Act, the Connecticut Data Privacy Act, and the Utah Consumer Privacy Act. We disclose this in plain English here because honest disclosure beats a paragraph of legalese.
You can withdraw consent and opt out at any time by visiting our Do Not Sell or Share My Personal Information page, or by emailing support@deargrove.com. Opt-out is processed within 15 days of receipt; we will notify any provider we already shared your information with and ask them to remove you from their list.
Regardless of where you live, you have these rights with respect to your DearGrove data:
If you live in California, the CCPA gives you the rights above plus the right to know the categories of personal information collected (listed in “What we collect”) and the right not to be discriminated against for exercising these rights.
If you live in the EU, the UK, or another jurisdiction with a GDPR-style law, the rights above apply along with your right to data portability (satisfied by the Export feature) and the right to lodge a complaint with your supervisory authority. Our legal basis for processing is contract performance (to provide the service you purchased) and legitimate interest (abuse prevention and diagnostics).
We run Facebook and Instagram ads to find new customers. To tell which ads actually lead to sign-ups, and therefore which ads are worth keeping and which are waste, we use two Meta measurement tools, the Meta Pixel (runs in your browser) and the Conversions API (runs on our server). Together they do the following and nothing else:
You can turn ad measurement off on this browser with one click. It sets a cookie (dg_ads_opt_out) that stops the Pixel from firing. Server-side measurement on your own purchases still occurs (we can’t suppress the receipt pipeline), but the browser trail stops immediately.
The short list of cookies DearGrove sets. We do not use advertising cookies from any other network.
Vercel Web Analytics, our page analytics, is cookie-free by design.
Data is kept for as long as you have an account.
DearGrove is not intended for use by anyone under 18. We do not knowingly collect information from children. If you believe a child has created an account, write to support@deargrove.com and we will delete it promptly.
We take a defensive approach: least privilege, encryption at rest and in transit, signed webhooks, row-level security, and responsible-disclosure contact at support@deargrove.com. A detailed posture is available at /security.
No system is perfect. If a breach ever affects your data, we will notify you within 72 hours of confirming the scope, along with what happened, what data was involved, and what we are doing about it.
If we change this policy in a way that reduces your rights or expands what we collect, we will email every account holder at least 30 days before the change takes effect. Minor clarifications (typos, reformatting, new sub-processors that receive no additional data) will be noted in the “Last updated” date above.
Privacy questions, security reports, data requests, or anything else, write to support@deargrove.com. A real person reads every email.